Privacy Notice
Effective July 23, 2026.
Swap Assistant stores the minimum product data needed for your swap history, favorites, alerts, and notification preferences.
Who Is Responsible
Swap Assistant's legal operator is responsible for the personal data handled by the service. The operator's identity and privacy contact are provided in the legal disclosure below.
Data We Store
We can store wallet addresses, wallet-auth sessions, swap history, favorite pairs, alert thresholds, notification preferences, Telegram chat identifiers, email settings, push-subscription endpoints and encryption keys, and operational records needed to secure and run the service. If you use the contact form, we store the name you provide, your reply email, selected topic, and message.
We can also receive technical information such as timestamps, request identifiers, IP-derived security information, browser and device characteristics, service logs, and provider responses.
For a limit order, we store the provider-verifiable signed order payload, its signature and hashes, the accepted terms version, and order status. This is necessary to submit, reconcile, and cancel the exact order you authorized.
Why We Use Data
We use this data to authenticate your wallet, provide saved features, request quotes, submit only the limit orders you sign, deliver alerts, respond to contact messages, prevent abuse, investigate incidents, maintain backups, and keep the service reliable. We do not sell personal data or use it for third-party advertising.
Depending on the data and applicable law, processing is based on providing the service you request, your consent, protecting the security and legitimate operation of the service, or complying with legal obligations. You can withdraw optional notification consent without affecting earlier processing.
Data We Do Not Store
We do not store seed phrases, private keys, wallet passwords, or custody credentials. A wallet sign-in signature is verified and is not stored. A limit-order signature is different: it is stored because the selected order protocol needs it to verify and fill the exact order.
Sessions And Device Notifications
Wallet sign-in creates a secure session cookie so saved data can be loaded for that wallet. Enabling push notifications stores a browser-generated subscription for that device. The same wallet can link more than one device, and each linked device can receive enabled alerts until it is disabled or the subscription expires.
The app also uses essential browser storage for sign-in state, installation prompts, and whether the introductory guide has been completed. Production sign-in credentials are kept in a secure, HttpOnly cookie that browser scripts cannot read.
Service Providers And Transfers
The app may interact with wallet connection services, swap routes, blockchain services, price data services, Telegram, email delivery, hosting, and monitoring tools. These services can receive basic request data needed to process quotes, transactions, alerts, or service health checks. Public wallet addresses and transaction details sent to blockchains or swap protocols can be visible to anyone.
These providers and their infrastructure can be located outside your country, including in countries with different data-protection rules. We limit disclosures to what is reasonably needed for the relevant service and use provider terms, access controls, and other appropriate safeguards where applicable.
Retention And Choices
Sign-in requests normally expire after 10 minutes and sessions after 7 days. Dry-run history is normally retained for up to 180 days, alert-delivery records for up to 365 days, and pending or completed notification-delivery records for up to 30 days. Contact messages are normally retained for up to 365 days. Other saved records remain while needed to provide the feature, preserve order evidence, meet security or legal duties, or until they are removed through an available control.
You can disable notification channels, unlink push devices, remove favorites, cancel eligible limit orders, and disconnect your wallet. Public blockchain records and data retained independently by third parties may not be erasable.
Your Choices
Depending on applicable law, you may have rights to ask for access, correction, deletion, restriction, portability, or an objection to certain uses of personal data. Some requests can be limited when records must be retained for security, fraud prevention, legal duties, or an active signed order.
Send a request from an address or authenticated wallet session that allows us to verify it safely. You may also complain to the competent data-protection authority available under the law that applies to you.
Children
Swap Assistant is not intended for anyone under 18, and we do not knowingly collect personal data from children. Contact us if you believe a child has supplied personal data.
Security
We use access controls, encrypted transport, restricted service credentials, request limits, and integrity checks. No internet or blockchain system can be guaranteed completely secure, so protect your wallet and never share a seed phrase or private key.
Changes And Contact
We may update this notice when the service, providers, or legal requirements change. Material changes will be reflected by the effective date above. Questions and privacy requests can be sent using the contact form.