Privacy
Most of what tax launch holds is already public, and almost none of it was collected from the people it names. This policy sets out what there is, where it came from and what happens to it.
Effective date: to be published. Version 1.0. Applies to the tax launch site and the ledger behind it.
Scope
This policy covers the tax launch site and its ledger. The operator, and the controller of everything described here, is to be published. It does not cover X, X Money, pons, Robinhood, any exchange or any other service tax launch reads from or pays through; those have their own policies.
What we hold
Registered tokens and their on-chain metadata; the fees claimed against them; the X handle each token names, with the public profile fields the X API returns for it, meaning the display name, the avatar url, the numeric user id and the verification type; the ledger of what is owed and to whom; and every payment attempt with its X transaction id and receipt url.
We also keep ordinary server logs of requests to this site, including the address they came from, for a short period.
Where it comes from
Token data comes from the public chain. Handle data comes from the token's own description and from the public X API. Payment data comes from our own payout process. Nothing is collected from the recipient, because the recipient is never asked for anything.
Why we hold it
To determine who a token's fees belong to, to compute what is owed, to make and prove payments, and to publish an honest record of both.
What we never hold
We do not hold passwords, private keys of visitors, email addresses, phone numbers, government identifiers, X direct messages or anything behind an X account's privacy settings. We do not set advertising or analytics cookies. Connecting a wallet to launch a token exposes its public address to us, nothing more.
Who else sees it
The ledger and the payment record are public on this site. Our infrastructure providers see what passes through them. X sees the payments we send through X Money. We do not sell anything to anyone.
What is public by design
Tokens, the handle each one names, amounts owed and paid, and the receipt of every payment are published. That is the point of the service: a payment nobody can check is a claim, not a record.
How long we keep it
Ledger entries and payment records are kept indefinitely, because they are the accounting record of money that moved. Cached X profile data is refreshed at least daily and is dropped when a handle is removed. Server logs are kept for up to 60 days.
Security
The treasury key sits in an encrypted keystore on the server that signs with it. Payout credentials live only on the payout worker. Access to those machines is limited to the operator.
Your choices
Ask to be put on the do-not-pay list and payments stop and your handle stops appearing in new listings. Ask for your cached profile data to be deleted and it is dropped; it will be fetched again if a new token names you, unless you are on the do-not-pay list. Payment records that describe money that actually moved are not deleted.
Children
The service is not for anyone under 18 and we do not knowingly hold data about anyone under 18.
Changes to this policy
We may change this policy; the version and effective date at the top change with it.
Contact
to be published, or @xmoneyfees on X.