Privacy Policy
Last updated: December 2024
1. Introduction
PayGate ("we", "our", or "us") operates the USDT Payment Gateway service. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.
By using our service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Account Information
When you register for an account, we collect:
- Email address
- Password (stored as bcrypt hash)
- Company name (optional)
- USDT wallet addresses you provide
2.2 Invoice and Transaction Data
When you use our service, we store:
- Invoice details (reference, amount, status, expiry)
- Transaction records (blockchain transaction hashes, amounts, timestamps)
- Webhook logs (delivery status, response codes)
- Metadata you include in invoices
2.3 Automatically Collected Information
We may automatically collect:
- IP addresses
- Browser type and version
- Access times and dates
- API request logs
3. How We Use Your Information
We use the information we collect to:
- Provide and maintain our service
- Process and verify payments
- Send webhook notifications to your specified URLs
- Communicate with you about your account
- Improve our service
- Comply with legal obligations
- Detect and prevent fraud
4. Information We Do NOT Collect
As a non-custodial service, we emphasize that we never collect or store:
- Private keys or seed phrases
- Customer funds (payments go directly to your wallets)
- Credit card or bank account information
- Personal information about your customers (unless you include it in invoice metadata)
5. Data Sharing and Disclosure
We do not sell your personal information. We may share information only in these circumstances:
- Service Providers: With third-party vendors who assist in operating our service (hosting, analytics)
- Legal Requirements: If required by law or to respond to legal process
- Protection: To protect our rights, privacy, safety, or property
- Business Transfers: In connection with a merger, acquisition, or sale of assets
6. Data Security
We implement appropriate security measures including:
- Encryption of data in transit (TLS/HTTPS)
- Encryption of sensitive data at rest
- bcrypt hashing for passwords
- SHA-256 hashing for API keys after initial display
- httpOnly cookies for session management
- Regular security audits
However, no method of transmission over the Internet is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.
7. Data Retention
We retain your account information for as long as your account is active. Invoice and transaction data is retained for a minimum of 7 years to comply with financial record-keeping requirements.
You may request deletion of your account by contacting us. Note that we may retain certain information as required by law or for legitimate business purposes.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your information
- Object to processing of your information
- Request data portability
- Withdraw consent
To exercise these rights, contact us at privacy@example.com.
9. Cookies
We use essential cookies for authentication (httpOnly session cookies). We do not use tracking cookies or third-party advertising cookies.
10. International Transfers
Your information may be transferred to and maintained on servers located outside of your country. By using our service, you consent to this transfer.
11. Children's Privacy
Our service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
13. Contact Us
If you have questions about this Privacy Policy, please contact us at:
- Email: privacy@example.com
- Contact form: /contact