Privacy Policy

Effective date: 2025-12-22
Legal entity: TokenLight Alert
Contact: support@tokenlightalert.com

1) Overview

TokenLight Alert provides crypto price alerts and optional automated trade execution (limit orders). The app includes an AI assistant (TokenLight Sentry) to help you create watches and understand wallet activity.

2) Data We Collect

A. Account and authentication

  • An anonymous account identifier and authentication token for your session.
  • A last-seen timestamp to help manage active/inactive sessions.

B. Wallet and transaction data (custodial)

  • Wallet addresses.
  • Encrypted private keys.
  • Encrypted seed phrases/mnemonics (where applicable).
  • Limit orders, trade records, withdrawals, and transaction hashes.

C. Alerts and monitoring

  • Alerts/watches you create: token address, targets, direction, chain, and status.

D. Recovery and security

  • Recovery email (optional) and verification metadata.
  • OTP challenge metadata for abuse prevention (including IP address and user-agent).
  • Password hash if you set a password (we do not store your plaintext password).

E. Push notifications (optional)

  • Device push tokens and basic device metadata (platform / label).

F. AI assistant (TokenLight Sentry)

  • If enabled, you provide your own Gemini API key. We store it encrypted.
  • Your prompts are sent from your device to Google Gemini using your key.
  • We do not store your AI chat logs/conversations on our servers.

3) How We Use Data

  • Provide app functionality (alerts, limit orders, wallet operations).
  • Deliver notifications when enabled (browser/device push).
  • Security and abuse prevention (OTP tracking and rate limiting).

4) Third Parties

Depending on what features you use, some data may be processed by third parties:

  • Google Firebase Cloud Messaging (push delivery).
  • Email provider (SMTP) to deliver recovery codes.
  • Blockchain RPC providers (Ethereum/Solana) to read chain state and submit transactions.
  • DexScreener API for token/pair data fallbacks and charts.
  • Binance public API for ETH/USD price fallback.
  • Jupiter API for Solana swap execution.
  • Google Gemini (TokenLight Sentry AI requests).

5) Data Retention

We retain data as needed to provide the service, comply with legal obligations, and maintain security. Some operational records (such as orders and transaction history) may be retained for audit/operational integrity. OTP/security logs may be retained for a limited period.

6) Security

We use encryption for sensitive wallet data at rest and store passwords as secure hashes. No method of transmission or storage is 100% secure.

7) Your Choices

  • You can choose not to link a recovery email.
  • You can choose not to enable AI and not provide an API key.
  • You can control notifications via device/browser settings.
  • You can request account/data deletion by contacting tokenlightalert@gmail.com.

8) Children

TokenLight Alert is not intended for children under 13 (or the age required in your jurisdiction).

9) Changes

We may update this policy periodically. We’ll update the effective date when changes are made.