| Data | Why | Kept |
|---|---|---|
| Username and password hash | To give you an account. Passwords are stored only as a bcrypt hash and cannot be read back by anyone, including us. | Until you delete the account |
| Plan, expiry, daily usage time | To enforce what you paid for | Until you delete the account |
| Wallet address you pay from | To verify your payment and stop someone else claiming it | Until you delete the account |
| Transaction signatures | Proof of payment, and to stop the same payment being used twice | Retained as financial records |
| Consent record (version, time, hashed IP, browser string) | To show what you agreed to and when | Retained as a legal record |
| Hashed IP for reactions | To stop one person voting repeatedly. Salted hash only — we do not store the address | Until the token is removed |
| Session cookie | To keep you signed in. Essential; no advertising cookie is set by us | Until you sign out |
We do not collect your name, postal address, phone number, date of birth, or any government identity document. We never ask for and never store your private keys or seed phrase. Nobody legitimate will ever ask you for those.
Using the Service causes your browser or our servers to contact:
Where a third party is used, the request necessarily reveals your IP address to them. We do not send them your account details.
Wherever you are, you may ask us to: give you a copy of your data; correct it; delete your account and its data; or stop processing it. Write to support@cryptlistingtoday.com and we will respond within 30 days. We verify the request comes from the account holder before acting.
Some records — payment signatures and consent records — are kept after account deletion because we need them as financial and legal records. Those are not used for anything else.
If you are in the UK, EU or EEA, our lawful bases are: contract (running your account and plan), legal obligation (financial records), and legitimate interests (keeping the Service secure and preventing abuse). You may complain to your local data protection authority.
If you are in California, we do not sell or share personal information as those terms are defined by the CCPA/CPRA, and we will not discriminate against you for exercising your rights.
We use HTTPS throughout, store passwords only as bcrypt hashes, lock accounts after repeated failed logins, and restrict administrative functions. No system is perfectly secure. Use a strong, unique password. If we become aware of a breach affecting your data, we will notify affected users and any regulator we are required to inform, without undue delay.
We set one essential cookie — your session — which keeps you signed in and cannot be turned off without breaking sign-in. We set no analytics or advertising cookies of our own. Third-party advertising code we publish may set its own; you can block those in your browser.
The Service is not for anyone under 18 and we do not knowingly collect their data. If you believe a child has given us data, contact support@cryptlistingtoday.com and we will delete it.
If this policy changes materially, the version identifier changes and we ask you to accept the new version before your next purchase.
This is not legal advice. These documents were drafted to reflect common practice for services of this kind. They have not been reviewed by a lawyer, and no document can guarantee that a claim will never be brought or never succeed. Consumer-protection, financial-promotion and data protection rules differ sharply between countries and some cannot be excluded by agreement. Have a qualified lawyer in your jurisdiction review this before relying on it.
Version 2026-08-02 · Contact support@cryptlistingtoday.com