Privacy Policy for Supdrop
Last Updated: 5/18/2025
1. Introduction
Welcome to Supdrop ("we", "us", or "our"). We are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform and services (collectively, the "Services"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the Services.
2. Information We Collect
We may collect information about you in a variety of ways. The information we may collect via the Services includes:
2.1. Personal Data
- Account Information: When you register an account, we may collect your name, email address, and chosen role (Project Owner or Contributor).
- Wallet Information: We collect your public wallet address (e.g., via WalletConnect or StarKey) to interact with our Services and for processing transactions on the blockchain.
- Twitter Information: If you connect your Twitter account, we collect your Twitter handle, public profile information (such as name, profile image URL, bio, follower count, post count), and whether your account is Twitter-verified. We use this information to verify your identity, assess eligibility for campaigns, and display your profile on our platform.
2.2. Project and Campaign Data
- For Project Owners: If you apply as a project owner, we may collect information about your project, including company name, website, project bio, logo URL, social media links (Twitter, Discord, Telegram, GitHub), project type, and the blockchain it operates on (defaulting to Supra).
- Campaign Details: We collect information related to campaigns you create or participate in, such as campaign title, description, images, follower requirements, required tags and hashtags, budget, reward details, and status.
- Submission Data: For contributors, we collect the URL of your social media post (e.g., tweet) submitted for a campaign, its status (pending, approved, rejected), and any rejection reason.
2.3. Technical and Usage Data
- Blockchain Data: Certain information, such as your wallet address, campaign funding transaction hashes, and reward transactions, will be recorded on the Supra blockchain and will be public and immutable.
- Log and Usage Data: Like many platforms, we may automatically collect information when you access or use our Services, such as your IP address, browser type, operating system, access times, pages viewed, and the referring URL.
- Cookies and Similar Technologies: We may use cookies and similar tracking technologies to collect information about your interaction with our Services. You can control the use of cookies at the individual browser level.
2.4. NextAuth Authentication Data
We use NextAuth for authentication. When you sign in, NextAuth may manage and store authentication-related data such as provider (e.g., Twitter, Starkey), provider account ID, access tokens, and session information. This data is handled as per NextAuth's security practices and is essential for secure login and session management.
3. How We Use Your Information
We use the information we collect in the following ways:
- To Provide and Manage the Services: To operate and maintain Supdrop, create and manage your account, facilitate campaign creation and participation, and process submissions and rewards.
- To Verify Identity and Eligibility: To verify your Twitter account and ensure compliance with campaign requirements (e.g., minimum follower counts).
- To Facilitate Transactions: To process campaign funding and reward payouts on the Supra blockchain.
- To Communicate With You: To send you updates, security alerts, support messages, and information about your campaigns or submissions.
- To Improve Our Services: To understand how users interact with Supdrop, gather feedback, and enhance the user experience and functionality.
- For Security and Fraud Prevention: To monitor for and prevent fraudulent or unauthorized activity.
- To Comply with Legal Obligations: To meet legal and regulatory requirements.
4. How We Share Your Information
We may share your information in the following situations:
- With Other Users: Certain information is public by nature or shared between users. For example, campaign details are visible to potential contributors, and project owners can see submissions made to their campaigns. Your public wallet address and Twitter handle may be visible in connection with your activities on the platform.
- On the Blockchain: Information related to blockchain transactions (wallet addresses, transaction IDs for funding and payouts) is publicly accessible and immutable on the Supra blockchain.
- With Service Providers: We may share your information with third-party vendors, consultants, and other service providers who perform services on our behalf (e.g., hosting, data analytics, customer support). These providers are obligated to protect your data and use it only for the purposes for which it was disclosed.
- For Legal Reasons: We may disclose your information if required by law, subpoena, or other legal process, or if we believe in good faith that disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a government request.
- Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred as part of that transaction.
5. Data Security
We implement reasonable administrative, technical, and physical security measures to protect your personal information from unauthorized access, use, or disclosure. However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security. You are responsible for maintaining the security of your wallet and authentication credentials.
6. Data Retention
We will retain your personal information for as long as your account is active or as needed to provide you with the Services and to comply with our legal obligations, resolve disputes, and enforce our agreements. Information stored on the blockchain (e.g., transaction data) is immutable and cannot be deleted.
7. Your Rights and Choices
Depending on your jurisdiction, you may have certain rights regarding your personal information, including:
- The right to access, correct, or update your personal information.
- The right to request the deletion of your personal information, subject to legal and contractual restrictions (and the immutability of blockchain data).
- The right to object to or restrict the processing of your personal information.
- The right to data portability.
You can typically manage your account information through your Supdrop dashboard. For other requests or if you have questions about your rights, please contact us using the information below.
8. Third-Party Links and Services
Our Services may contain links to third-party websites or services (e.g., Twitter, project websites). We are not responsible for the privacy practices of these third parties. We encourage you to read their privacy policies before providing any personal information.
9. Children's Privacy
Our Services are not intended for individuals under the age of 18 (or the age of legal majority in your jurisdiction). We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected personal information from a child, we will take steps to delete such information.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at: contact@supdrop.co
