POPDEX
Documentation

Legal

Privacy Policy

Original Effective Date: May 8, 2026

Last Updated: July 11, 2026

Company: Popdex Inc.

Website: https://popdex.io

Privacy Contact: support@popdex.io

Company Address: 131 Continental Dr., Suite 305, Newark, DE 19713

Popdex Inc. ("Popdex," "we," "us," or "our") provides websites, web applications, wallet-connected interfaces, support tools, and related services for attention markets, swaps, liquidity, Liquidity Splay, Buzz Guard, token and pool pages, USDC-denominated values, and on-chain or blockchain-adjacent market mechanics.

This Privacy Policy explains how we collect, use, disclose, and protect information when you access or use Popdex websites, web applications, support forms, beta products, and related services that link to this Privacy Policy (collectively, the "Service").

Popdex is experimental software under active development. Some features, infrastructure providers, and data practices may change as the product develops. When we make material changes, we will update this Privacy Policy and the "Last Updated" date above.

1. Information We Collect

1.1 Wallet and blockchain information

When you connect a wallet or interact with Popdex market features, we may process blockchain-related information, including your public wallet address, connected wallet status, pool, token mint, market, vault, LP mint, and Buzz Guard addresses, associated token account addresses and readiness status, public token account state, balances, reserves, liquidity-related information, nonce or replay-protection information associated with a pool interaction, transaction signatures, transaction status, confirmation status, and on-chain transaction, event, log, and account data related to Popdex pools or markets.

Popdex does not ask for, need, or intentionally collect private keys, seed phrases, passwords, or wallet recovery secrets. You should never provide them through the Service or support channels. Transactions are approved through your wallet provider, and Popdex cannot access your wallet using private keys or seed phrases.

1.2 Swap, trading, liquidity, Buzz Guard, and attestation information

When you preview or submit a swap, liquidity action, Liquidity Splay interaction, Buzz Guard interaction, or related action, we may process information needed to calculate, validate, attest, submit, and confirm the interaction. This may include the pool or market you interact with, action type, input amounts, minimum output amounts, liquidity amounts, Buzz Guard deposit or withdrawal parameters, route or readiness details, quote token mint information, nonce and timestamp expiry information used for attestation or replay protection, attestation request and response data, transaction signatures, and confirmation status.

Some preview calculations may occur locally in your browser. When you submit an on-chain action, information may be transmitted to wallet providers, Solana RPC providers, attestation infrastructure, and the relevant blockchain network.

1.3 Support information

If you contact us, email us, submit feedback, or open a support ticket, we may collect information you choose to provide. The support form requires a wallet address so Popdex can route, diagnose, and respond to wallet-, transaction-, pool-, chart-, or product-specific support issues. The support form may collect your email address, wallet address, issue category, issue description, optional transaction signature, hidden spam-prevention or honeypot fields, bot-prevention results, rate-limit information, delivery status, and related technical metadata.

Popdex uses Resend for support email delivery, and received support messages may be stored or processed in Google Workspace. Support channels are not intended for seed phrases, private keys, passwords, or other wallet recovery secrets. Never share seed phrases or private keys. If you include wallet recovery secrets in a support message despite these instructions, they may be processed as part of that message, but Popdex does not use them to access wallets and may delete, restrict, or decline to process them where feasible.

1.4 Technical information, logs, and abuse prevention

When you access the Service, Popdex and its hosting providers, infrastructure providers, RPC providers, attestation services, wallet providers, analytics providers, bot-prevention providers, and other service providers may automatically process technical information, such as IP address, browser type and version, device and operating system information, user-agent string, pages or routes requested, referring URLs, timestamps, request metadata, network logs, error logs, security events, and abuse-prevention signals.

Popdex uses Vercel, Vercel logs, Vercel Analytics, BotID, rate limiting, hidden spam-prevention or honeypot fields, and similar safeguards to operate the Service, understand product performance, detect automated abuse, and protect support endpoints and APIs. For support and telemetry rate limiting, Popdex may process IP address or forwarded-IP header values and derive hashed source-IP-derived rate-limit identifiers used to enforce short active quota windows and prevent abuse.

1.5 Product telemetry and analytics

Popdex may collect product telemetry and analytics to understand usage, diagnose errors, improve reliability, and prioritize product work. This may include page views, route transitions, feature usage, client-side error events, wallet connection status, truncated or hashed wallet identifiers, pool identifiers, transaction status events, timing information, browser and device information, and session identifiers such as a browser session value stored in session storage.

Product telemetry is intended for operations, security, debugging, and product improvement, not for selling personal information or cross-context behavioral advertising.

1.6 Cookies, local storage, session storage, and similar technologies

Popdex does not use application cookies, local storage, or session storage for advertising or cross-site behavioral tracking. The Service may use browser storage for operational needs, such as wallet connection state, client-side session identifiers, UI state, analytics events, and error handling.

Browser wallets, wallet-adapter libraries, hosting providers, security services, analytics tools, or future product features may use cookies, local storage, session storage, or similar technologies. If we add non-essential cookies, advertising, or cross-site tracking in the future, we will update this Privacy Policy and, where required, provide appropriate notices and choices.

1.7 Public blockchain and Popdex-indexed data

Blockchain networks are public by design. Wallet addresses, transaction signatures, account addresses, transaction metadata, token transfers, program interactions, and related on-chain activity may be publicly visible, indexed by third parties, and retained indefinitely by blockchain networks and independent infrastructure providers.

Popdex may index, cache, or store public blockchain and pool data in operational databases, including Neon, and may retrieve public chain data through providers such as Helius or other Solana RPC providers. Popdex generally cannot delete, modify, or hide information that has been written to a public blockchain.

Where Popdex controls an off-chain indexed copy, Popdex may delete, suppress, correct, or retain that copy according to operational, legal, security, and product needs, but doing so does not affect the public blockchain or copies held by third parties.

2. How We Use Information

We use information to operate, maintain, secure, and improve the Service; let users connect wallets and view wallet-specific readiness information; display pool, market, reserve, liquidity, Buzz Guard, and token information; calculate previews for swaps, trades, Liquidity Splay, Buzz Guard, and liquidity actions; request and verify attestations for supported transactions; build, submit, and confirm blockchain transactions; prevent replay, invalid, expired, automated, abusive, or unsupported transactions; troubleshoot bugs, errors, failed transactions, support issues, or degraded performance; secure the Service and prevent abuse, fraud, sanctions evasion, or misuse; respond to legal, support, feedback, or business inquiries; comply with applicable laws, regulations, legal processes, and enforceable governmental requests; and evaluate and develop product functionality.

Popdex does not use private keys or seed phrases to operate the Service and cannot use them to access your wallet.

3. How We Share Information

3.1 Blockchain networks and validators

When you submit a blockchain transaction, transaction data is broadcast to the relevant blockchain network and may be processed by validators, RPC providers, indexers, block explorers, analytics providers, and other third parties. This information may become public and permanent.

3.2 Wallet providers

When you connect a wallet or approve a transaction, your wallet provider may receive information about the connected site, requested connection, transaction details, and other wallet-provider-specific data. Your use of a wallet is subject to the wallet provider's own terms and privacy policy.

3.3 Solana RPC providers and blockchain infrastructure

The Service uses configured Solana RPC endpoints to read pool, account, transaction, and wallet-related readiness data and to submit or confirm transactions. RPC providers such as Helius or other configured providers may receive public wallet addresses, pool account addresses, transaction signatures, signed transactions, IP addresses, user-agent information, timestamps, and request metadata, depending on how the Service is deployed and configured.

3.4 Attestation infrastructure

For supported swap, trading, Splay, or Buzz Guard interactions, Popdex may send attestation request data to an attestation signer or upstream attestation service. This data may include public wallet address, pool address, token mint addresses, action type, amounts, minimum outputs, nonce, and related transaction parameters.

3.5 Hosting, cloud, analytics, security, and database providers

We use hosting, cloud, logging, analytics, security, CI/CD, repository, database, and development-service providers to operate and maintain the Service. These providers may process technical information such as IP address, request metadata, logs, device and browser information, analytics events, security events, and operational data. Current providers include Vercel, Vercel Analytics, BotID, Neon, and other infrastructure providers. We may add, remove, or replace providers as the Service changes.

3.6 Support and communications providers

We may share support ticket and communication information with providers that help deliver, receive, store, and manage communications, including Resend and Google Workspace. These providers may process email addresses, message contents, ticket metadata, delivery metadata, and related technical information.

3.7 Legal, compliance, and safety

We may disclose information if we believe it is necessary or appropriate to comply with law, regulation, subpoena, court order, legal process, or governmental request; enforce our terms, policies, or agreements; protect the rights, property, or safety of Popdex, users, or others; or detect, investigate, or prevent fraud, security issues, sanctions evasion, market abuse, or technical issues.

3.8 Business transfers

If Popdex is involved in a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, or similar transaction, information may be disclosed or transferred as part of that transaction, subject to appropriate confidentiality or legal protections.

4. Third-Party Services and Providers

The Service may interact with third parties and decentralized infrastructure, including the Solana network, validators, wallet providers including Phantom or other wallets supported by Solana wallet-adapter, Solana RPC providers such as Helius, attestation signer or attestation infrastructure configured by Popdex, hosting, deployment, security, analytics, and cloud infrastructure providers such as Vercel, Vercel Analytics, and BotID, database providers such as Neon, support delivery providers such as Resend, business email providers such as Google Workspace, and development and CI/CD providers used to build and maintain the Service.

Third-party services are governed by their own privacy policies and terms. Popdex does not control public blockchain networks, independent validators, wallets, RPC providers, block explorers, third-party indexers, email providers, analytics providers, or bot-prevention providers.

5. Data Retention

We retain information for as long as reasonably necessary for the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.

Retention periods vary by category. Wallet connection and transaction status information may be handled in browser UI state and through wallet/RPC interactions. Support messages and related delivery records are retained as needed to respond to the request, maintain business records, resolve disputes, and comply with legal obligations. Product telemetry and error records are retained as needed for debugging, security, abuse prevention, reliability, and product operations. Support quota data is designed for short active rate-limit windows, while related provider logs and security records may persist longer.

Public blockchain data may remain available indefinitely and cannot generally be deleted by Popdex. Popdex-indexed public blockchain data may be retained for market displays, charts, activity history, debugging, auditability, and product operation. Neon database records, Vercel logs, Vercel Analytics events, support tickets, Resend delivery records, Google Workspace messages, BotID or abuse-prevention records, provider logs, analytics records, backups, mailbox records, and other provider records are retained according to Popdex's operational needs and the relevant provider's retention practices. We do not promise that all copies of information can be deleted from backups, public blockchains, third-party systems, logs, or records that we are required or permitted to retain.

6. Security

We use reasonable administrative, technical, and organizational measures designed to protect information we process. However, no method of transmission, storage, blockchain interaction, wallet interaction, email delivery, or internet-based service is completely secure.

You are responsible for maintaining the security of your wallet, private keys, seed phrases, devices, and wallet approvals. Popdex will never ask for your seed phrase or private key.

7. Your Choices

Depending on how you use the Service, you may disconnect your wallet through the Service or your wallet provider, decline wallet connection requests, decline transaction-signing requests, avoid submitting transactions to public blockchain networks, avoid submitting support tickets, contact us with privacy requests, and use browser or wallet settings to manage storage, permissions, and connections.

Some information, including public blockchain data and independently indexed blockchain data, cannot be deleted or modified by Popdex after it has been submitted to a blockchain network or copied by third parties.

8. Privacy Rights

Depending on where you live, you may have rights regarding personal information, such as the right to request access, correction, deletion, portability, restriction, objection, or withdrawal of consent where applicable.

To exercise privacy rights, contact us through the contact information below. We may need to verify your request before responding. We may also deny or limit requests where permitted by law, including where the request relates to public blockchain data that Popdex does not control, data that cannot reasonably be linked to you, records we must retain, or records retained by independent third parties.

If California or other U.S. state privacy laws apply to Popdex, eligible users may have additional rights, including rights to know, access, correct, delete, or opt out of certain uses of personal information. Popdex does not sell personal information or share personal information for cross-context behavioral advertising.

If EU or UK data protection laws apply, users may have rights such as access, rectification, erasure, restriction of processing, portability, objection, and rights related to consent, depending on the context and applicable law.

9. International Users

Popdex is based in Delaware, United States. If you access the Service from outside the United States, your information may be processed in countries where Popdex or its service providers operate. These countries may have privacy laws that differ from those in your location.

10. Children's Privacy

The Service is not intended for children. Popdex does not knowingly collect personal information from children under 13. If you believe a child has provided personal information to Popdex, contact us through the contact information below and we will take appropriate steps to delete the information where required.

Because Popdex involves blockchain, crypto, token, and market-related functionality, the Service is intended for users who are at least 18 years old or the age of majority in their jurisdiction.

11. Sale or Sharing of Personal Information

Popdex does not sell personal information or share personal information for cross-context behavioral advertising. If Popdex adds advertising, retargeting, referral, data-enrichment, or analytics partners that would change this statement, we will update this Privacy Policy as appropriate.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we make changes, we will update the "Last Updated" date above. If changes are material, we may provide additional notice as appropriate, such as through the Service or by other reasonable means.

13. Contact Us

For privacy questions or requests, contact:

  • Popdex Inc.
  • 131 Continental Dr., Suite 305
  • Newark, DE 19713
  • Email: support@popdex.io
  • Website: https://popdex.io

Popdex, Inc.

© 2026 Popdex, Inc.

Terms of ServicePrivacy Policy
Contact