Privacy Policy
This page says what we keep about you, what we deliberately do not keep, and what is out of our hands entirely.
What we collect
- Account information: name, email, and your phone number if you provide one.
- Verification documents: document images and identity details, if you complete verification.
- Country and proof of residence: for customers who live outside Iran.
- Financial records: transactions, deposits, withdrawals and ledger entries.
- Technical information: IP address and sign-in times, for account security and attack prevention.
What we deliberately do not keep
We collect usage analytics ourselves, on our own server, and none of the following is stored in them: IP address, browser, user id, or referring page. An event says only "this kind of thing happened, at this time, to an account roughly this old". That is enough to find where people get stuck and useless for identifying anyone.
There is no third-party tracking on this site — no Google Analytics, no advertising pixel, nothing of the kind.
Information that is public on the blockchain
This matters, and it is not our policy — it is how the technology works:
- Your deposit address, and every transaction to or from it, is public and permanent on the Tron blockchain. Anyone in the world can see it.
- We cannot delete, hide or change it. Nobody can.
- If you give your deposit address to someone, they can see that address's entire history.
How we use it
- To provide and improve the service.
- To protect your account and prevent fraud and money laundering.
- To contact you about your account — transactional and security email.
Third parties
We do not sell your personal information. For the site to work, these outside services are in the path:
- TronGrid — to read the Tron network and broadcast transactions. Your deposit address is sent to them (it is public anyway).
- CoinGecko, Yahoo Finance, Nobitex — market prices only. Nothing about you is sent to them.
- Our email host — to send account email. Your email address passes through it.
- Enamad trust seal — the seal in the footer is an image served from their server, so your IP address and browser are visible to them whenever you open a page.
Beyond these, information is processed only within the law and to provide the service.
Cookies
Essential cookies only: one to keep you signed in, one for your chosen language. There are no advertising or tracking cookies.
How long we keep it
- Financial, identity and review records: ten years. These are not deleted on request, because there is an obligation to keep them.
- Verification documents are stored encrypted and outside public reach. Images you upload are re-encoded so that hidden data inside them — including the GPS coordinates a phone camera writes into a photo — is stripped.
- Transient data (one-time codes, rate limits) is deleted automatically after 30 days.
Closing your account
When an account closes, your identity details are anonymised but the financial records stay. Details in Terms of Service, section 13.
Your rights
You can ask what information we hold about you, or ask us to correct it. For information we are obliged to keep, deletion is not possible, and we will tell you so plainly.