Privacy Policy

Effective date: 12th Sept 2025

This Privacy Policy describes how DopeCards ("we", "our", or "us") collects, uses, and shares information when you use the DOPE mobile and web application (the "App"). By using the App, you agree to the collection and use of information in accordance with this policy.

We do not track you across apps and websites owned by other companies. We do not use your data for targeted advertising, and we do not share data with data brokers. Because the App does not collect data for tracking, we do not present the AppTrackingTransparency (ATT) prompt. See Apple’s definition of tracking for reference.

Information we collect

Information you provide

  • Account identifier used during sign-in (e.g., via Privy, Apple, Google). We receive tokens/identifiers necessary to authenticate you. We do not receive your third‑party account passwords.
  • Wallet information such as a wallet identifier and public addresses (e.g., EVM, Solana, Movement) created or linked through Privy.
  • Referral codes, claim/authorization codes, or other content you submit within the App.

Information collected automatically

  • Device and app information (device model, OS, app version, performance metrics) for diagnostics and to improve the App.
  • Log and crash data (timestamps, request metadata, error and crash reports) to maintain reliability and security.

NFC (Near Field Communication)

When you choose to scan a DOPE card, the App reads the authorization code from the NFC tag to process rewards/claims. We do not continuously scan. We do not store raw NFC payloads beyond what is necessary to complete the action.

Information from third parties

Authentication providers (e.g., Privy and its supported OAuth providers) and blockchain/wallet infrastructure may provide us with identifiers necessary to authenticate, verify wallet ownership, and enable transactions.

Tracking and AppTrackingTransparency (ATT)

The App does not track users as defined by Apple (linking data from the App with third‑party data for targeted advertising, or sharing data with a data broker). Therefore, the App does not display the ATT permission prompt. If we introduce features that use data for tracking in the future, we will first present the ATT prompt and update this Policy accordingly.

How we use information

  • To authenticate you and maintain your session.
  • To register and manage your user profile and linked wallets.
  • To verify wallet ownership with Privy and process referrals, claims, or rewards.
  • To operate, maintain, and improve the App (including debugging, analytics, and security).
  • To communicate with you (service messages, support, policy updates).
  • To detect, prevent, and address fraud, abuse, security risks, or legal violations.

Legal bases for processing (EEA/UK users)

Where applicable, we rely on: (i) performance of a contract, (ii) our legitimate interests in providing and improving the App, (iii) your consent (e.g., optional analytics or marketing), and/or (iv) legal obligations.

Sharing of information

  • Service providers: We share information with vendors who help us operate the App (e.g., hosting, authentication via Privy, error reporting). These providers are bound by confidentiality and data protection obligations. We do not sell your data and do not share it with data brokers.
  • Compliance and safety: We may disclose information if required by law or to protect rights, safety, and property of users, the public, or us.
  • Business transfers: In a merger, acquisition, or asset sale, your information may be transferred subject to this Policy.

We do not sell personal information.

App Store privacy categories snapshot

  • Tracking: Not used. No data used to track users across apps and websites of other companies.
  • Identifiers: Account/User ID (linked to your identity) for App Functionality (authentication and account management). No IDFA is collected or used.
  • Diagnostics: Crash data and performance data (not linked to your identity) for App Functionality.
  • Contact Info, Location, Financial Info, Health, Sensitive Info, Browsing History, Usage Data: Not collected.

Data retention

We retain information only for as long as necessary to provide the App and fulfill the purposes described in this Policy, unless a longer period is required or permitted by law (e.g., tax, accounting, compliance).

Security

We implement administrative, technical, and physical safeguards designed to protect information. No security practice is perfect; we cannot guarantee absolute security.

International transfers

Your information may be transferred to and processed in countries outside your jurisdiction. Where required, we use appropriate safeguards (e.g., standard contractual clauses) to protect personal data.

Your rights

Depending on your location, you may have rights to access, correct, delete, or restrict the processing of your personal information, and to data portability. You may also object to processing in certain cases or withdraw consent where processing is based on consent.

To exercise rights, please contact us using the details below. We may need to verify your identity before fulfilling your request.

Children’s privacy

The App is not directed to children under 13 (or the age of digital consent in your region). If we learn that we have collected personal information from a child without appropriate consent, we will take steps to delete such information.

Third‑party services

The App integrates with third‑party services (e.g., Privy, OAuth identity providers, in‑app browser, or deep linking). These services are governed by their own privacy policies. We encourage you to review their policies to understand their practices.

Cookies and local storage

We may use local storage or similar technologies to maintain sessions and preferences in the App. We do not use cookies or local storage for advertising or cross‑site tracking.

Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated Policy within the App and update the “Effective date” above. Your continued use of the App after the update constitutes acceptance of the changes.

Contact us

Dope.Cards
Email: hello@gasyard.fi
For users in the EEA/UK, you may also contact your local data protection authority.