Privacy Policy
Your privacy is important to us. This policy explains how we collect, use, and protect your information.
Privacy Contact
Email: privacy@yindao.io
Platform: https://www.communityhub.yindao.io
We respond to privacy inquiries within 30 days.
1. Introduction
Welcome to the Yin DAO Quest Platform ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our decentralized application (dApp) and related services.
By using our platform, you agree to the collection and use of information in accordance with this Privacy Policy.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: Username, email address (when provided via OAuth)
- Profile Information: Profile pictures, display names, and other profile details
- Wallet Information: Public wallet addresses (no private keys are ever collected)
- Quest and Campaign Data: Your participation in quests, achievements, and campaign activities
2.2 Information Collected via Third-Party Services
- Google OAuth: Email address, name, profile picture, and Google ID
- Discord OAuth: Discord username, user ID, email address (if provided), and avatar
- Social Media Verification: Usernames and public profile information for verification purposes
2.3 Automatically Collected Information
- Usage Data: How you interact with our platform, features used, and time spent
- Technical Data: IP address, browser type, device information, and access times
- Blockchain Data: Public transaction data associated with your wallet address
3. How We Use Your Information
We use the collected information for the following purposes:
- Service Provision: To provide, maintain, and improve our dApp services
- Authentication: To verify your identity and manage your account
- Quest Management: To track your progress in quests and campaigns
- Social Verification: To verify your social media accounts for quest completion
- Communication: To send you updates, announcements, and support responses
- Analytics: To understand usage patterns and improve our services
- Compliance: To comply with legal obligations and prevent fraud
4. Information Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
4.1 Service Providers
We may share information with third-party service providers who assist us in operating our platform:
- Convex: Database and backend services
- Discord: Authentication and user management
- Vercel: Hosting and deployment services
4.2 Public Information
Certain information may be publicly visible, including:
- Your username and public profile information
- Quest completions and achievements
- Leaderboard positions
- Public wallet addresses
5. OAuth and Third-Party Authentication
5.1 Google OAuth
When you connect your Google account:
- We only request minimal necessary permissions
- You can revoke access at any time through your Google Account settings
- We comply with Google's OAuth policies and API Terms of Service
- We do not store your Google credentials
5.2 Discord OAuth
When you connect your Discord account:
- We only access basic profile information and server membership
- You can disconnect your Discord account at any time
- We comply with Discord's Terms of Service and Developer Policy
6. Data Security
We implement appropriate technical and organizational security measures to protect your information:
- Encryption: Data is encrypted in transit and at rest
- Access Controls: Limited access to personal information
- Regular Security Audits: Ongoing security assessments
- No Private Key Storage: We never store or have access to your private keys
7. Web3 and Blockchain Considerations
Please note that blockchain transactions are public and immutable:
- Your wallet address and transaction history are publicly visible on the blockchain
- We cannot modify or delete blockchain data
- You are responsible for the security of your private keys
- We never request or store your private keys or seed phrases
8. Your Rights and Choices
Depending on your location, you may have the following rights:
- Access: Request access to your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request a copy of your data in a portable format
- Opt-out: Unsubscribe from communications
- OAuth Revocation: Disconnect third-party accounts at any time
9. Data Retention
We retain your information for as long as necessary to provide our services:
- Account Data: Retained while your account is active
- Quest Data: Retained for historical tracking and verification
- OAuth Data: Retained as long as OAuth connection is active
- Technical Logs: Typically retained for 90 days
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on our platform
- Updating the "Last Updated" date
- Sending notifications for significant changes
11. Children's Privacy
Our platform is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will delete such information.
This Privacy Policy is designed to comply with major privacy regulations including GDPR, CCPA, and Google's OAuth policies. For questions, contact us at contact@yindao.io