Privacy policy
This policy explains what information poolcod processes, why it is used, and what choices users have.
1. Data controller
poolcod is responsible for the processing related to the application. Questions about privacy, personal data, or the exercise of rights may be submitted through the official Discord support channel.
2. Data we process
- Account: name, email, user identifier, confirmation status, and session information.
- Subscription: plan, status, validity dates, transaction references, and latest payment statuses.
- Use and security: selected market, local preferences, IP address, browser, technical logs, errors, and events required to prevent abuse.
- Communications: support, cancellation, privacy, or refund requests.
poolcod does not store the full card number, CVC, or expiration date. These fields are tokenized directly by Wompi.
3. Purposes and legal bases
- Create, authenticate, and protect the account.
- Provide the contracted service and manage the subscription.
- Process payments, renewals, retries, cancellations, and refunds.
- Prevent fraud, unauthorized access, and abusive use.
- Resolve support requests and comply with legal, accounting, and tax obligations.
- Improve stability and experience through aggregated technical metrics.
Where applicable law requires consent, it will be requested in advance and with clear information. Users may withdraw consent without affecting legitimate processing already performed.
4. Payment information
Wompi receives card data and returns a token or payment source identifier to poolcod. We retain references, amounts, currency, statuses, and dates needed to manage the subscription. Prices may be displayed in USD for reference; Wompi Colombia processes the charge indicated in COP before confirming the purchase.
5. Providers and transfers
| Provider | Purpose | Main data |
|---|---|---|
| Supabase | Authentication, database, and functions | Account, session, subscription, and technical logs |
| Wompi | Tokenization and payment processing | Payment data, email, and transaction references |
| Binance, Bybit, and Gate | Public market data | No account data is sent to query public streams |
| Hosting provider | Application publication and delivery | IP address and standard technical logs |
Some providers may process information outside your country. We will seek appropriate contractual and technical mechanisms in accordance with applicable regulations.
6. Retention
Account data is retained while the user relationship exists. Billing information is retained for applicable accounting, tax, anti-fraud, and dispute-resolution periods. Technical logs are deleted or anonymized when they are no longer necessary.
7. User rights
Users may request access, update, rectification, deletion, portability where applicable, objection, consent withdrawal, and proof of authorization. To exercise these rights, contact official poolcod support on Discord and provide the account email and request. We may verify identity before responding.
8. Security, minors, and changes
We use access controls, Row Level Security, server functions, encryption in transit, and secret separation. No system is infallible. The service is intended for users over 18 and does not seek to collect data from minors.
We may update this policy due to operational or legal changes. Material changes will be communicated through reasonable means and will show a new effective date.