Privacy Policy
Effective 2026-09-20
This policy explains what JoltAlert collects, why, and what you can do about it. The short version: we store what is needed to sign you in, run your watches, deliver alerts and verify payments, and nothing else. We do not sell data, and we run no analytics or advertising scripts.
1. What we collect
- Sign-in identities. With Google: your Google account ID, email address, name and avatar. With a wallet: your wallet address. With Telegram: your Telegram user ID, username, name and avatar.
- Preferences: your language and time zone.
- Watches and channels: the trading pairs, windows and thresholds you set, and the Telegram chat that receives the alerts.
- Billing: your credit balance and ledger, your orders, and for each payment the network and the on-chain transaction hash (which is public blockchain data).
- Technical: your IP address is used only to rate-limit sign-ups and to verify the Cloudflare Turnstile challenge on the login page; we do not store it. Cloudflare, which hosts the service, keeps its own edge logs under its policy.
2. Cookies
We set only functional cookies: a session cookie that keeps you signed in, short-lived cookies for the sign-in flow and the human check, and a referral cookie if you arrived through an invite link. There are no analytics, advertising or third-party tracking cookies. Your theme choice and the language hint are kept in your browser's local storage.
3. How we use it
To sign you in, run your watches, deliver alerts, verify payments and credit your account, prevent abuse, and answer you when you write to us. We do not send marketing email. The legal basis is performing the service you asked for and our legitimate interest in keeping it running and abuse-free.
4. Who else sees it
We use the following providers to run the service. Each one receives only what its job needs:
- Cloudflare hosts the service and stores its data (Workers, D1, KV) and runs the Turnstile human check.
- Binance: we fetch public market data from its API. Nothing about you is sent to Binance.
- Telegram: we send your alerts to the chat you linked, so Telegram sees your chat ID and the alert text.
- Google: handles sign-in if you choose Google, and tells us your account ID, email, name and avatar.
- Public blockchain nodes and explorers (for example TronGrid and public Base and BSC RPC endpoints): we look up the transaction hashes you give us to verify payments.
We do not sell your data or share it for advertising. We disclose it only if the law requires us to.
5. Retention and deletion
We keep your data while your account exists. You can delete watches and channels, and unlink sign-in methods, in the app at any time.
To delete your account, write to support@joltalert.com. We delete your identities, sessions, watches, channels and preferences. Payment and credit ledger records are kept for bookkeeping, but no longer linked to any sign-in identity.
6. Your rights
You can ask to see, correct, export or delete the data we hold about you at any time by writing to support@joltalert.com. We answer within 30 days.
7. Security
Data is stored on Cloudflare's infrastructure and transferred over HTTPS only. Sessions are signed and expire. No system is perfectly secure; if a breach affects your data we will tell you.
8. Children
JoltAlert is not intended for anyone under 18. If you believe a minor has an account, write to us and we will delete it.
9. Changes to this policy
We may update this policy. The effective date at the top changes when we do; material changes are also announced on the site.
Contact
Questions about these terms or your data: support@joltalert.com