Legal

Privacy policy

Bumpd is built on the principle that your onchain identity is yours. Here is exactly what we handle.

What we collect

Bumpd does not collect, store, or transmit any personal data to servers controlled by the developer. The only data that leaves your device is:

  • Wallet addresses sent to our proxy server solely to fetch portfolio data from the Zerion API. Not stored.
  • Solana Name Service lookups routed through the same proxy to resolve .sol names. Not logged.

What stays on your device

  • Your profile wallet address, X handle, Telegram handle, interests
  • Your bump deck compatibility records with matched wallets
  • Location data (if you opt in) stored locally, never transmitted
  • Attestation signatures from both Seed Vaults

All of the above is stored in your device's local storage and is deleted when you log out.

Third-party services

Portfolio data is fetched via the Zerion API through a proxy server that holds only an API key no user data is stored on that server.

Reverse geocoding (when location is enabled) uses Nominatim / OpenStreetMap with coarse coordinates only (city-level, ±11 km). No other third-party services receive user data.

NFC data

During a bump, your payload (wallet, handles, interests, SGT status) is broadcast via NFC directly to the phone you tap. This is a device-to-device exchange nothing is routed through a server. The payload does not include private keys; your Seed Vault never exposes those.

No monetary data

Bumpd never displays, stores, or transmits portfolio values, balances, or any dollar amounts. Compatibility is computed from token symbols and protocol names only.

Data retention

No data is retained on any server. All profile and deck data lives on your device and is fully erased when you use the log out function.