NONCE TECHNOLOGY PTE. LTD. ("Nonce," "we," "us," or "our") is committed to protecting the privacy of our customers and users. This Privacy Policy describes how we collect, use, disclose, and safeguard personal data when you access or use the Nonce platform and related services (collectively, the "Service").
This Privacy Policy applies to all users of the Service, including visitors to our website at nonce.app. It is incorporated by reference into our Terms of Service. By accessing or using the Service, you acknowledge that you have read and understood this Privacy Policy.
Nonce is incorporated in Singapore and complies with the Singapore Personal Data Protection Act 2012 ("PDPA") and other applicable data protection laws.
1. Information We Collect
1.1 Information You Provide
- Account Information — When you register for an account, we collect your name, email address, company name, and job title.
- Billing Information — Payment details such as billing address and payment method information. Payment processing is handled by our third-party payment processors; we do not store full credit card numbers on our servers.
- Communications — Information you provide when contacting our support team, submitting feedback, or participating in surveys, including the content of your messages.
- Mining Operational Data — Data you upload to or generate through the Service, including hashrate metrics, device configurations, performance data, energy consumption records, and other operational information related to your mining activities.
1.2 Information Collected Automatically
- Usage Data — Information about how you interact with the Service, including features accessed, pages viewed, actions taken, and session duration.
- Device Information — Browser type and version, operating system, device identifiers, screen resolution, and language preferences.
- Log Data — Server logs that record your IP address, access times, referring URLs, and error logs.
- Cookies and Similar Technologies — We use cookies and similar tracking technologies as described in Section 8 below.
1.3 Information from Third Parties
- Authentication Providers — If you sign in using a third-party authentication service, we may receive your profile information (name, email, profile image) from that provider.
- Analytics Services — We may receive aggregated or anonymized data from analytics providers to help us understand usage patterns.
2. How We Use Information
We use the information we collect for the following purposes:
2.1 Provide and Maintain the Service
To operate, deliver, and maintain the Cloud Service, including processing your mining data, generating analytics and reports, and providing access to dashboards and monitoring tools.
2.2 Improve and Develop Features
To analyze usage patterns, diagnose technical issues, and develop new features and improvements to the Service. We may use anonymized and aggregated data for benchmarking and product development.
2.3 Communications
To respond to your support requests, send service-related announcements (such as maintenance notifications, security alerts, and account updates), and provide information about new features or changes to the Service.
2.4 Security and Fraud Prevention
To detect, prevent, and respond to security incidents, fraud, abuse, and other harmful activities, and to protect the rights and safety of Nonce, our users, and third parties.
2.5 Legal Compliance
To comply with applicable laws, regulations, legal processes, or enforceable governmental requests, and to enforce our Terms of Service and other agreements.
2.6 Aggregated Analytics
To generate anonymized, aggregated insights about industry trends and service performance.
3. Data Sharing & Disclosure
We do not sell, rent, or trade your personal data to third parties. We may share your information only in the following circumstances:
3.1 Service Providers
We engage trusted third-party service providers to assist in operating and delivering the Service, including cloud hosting, payment processing, analytics, customer support tools, and email delivery. These providers are contractually obligated to use your data only as necessary to perform services on our behalf and to maintain appropriate security measures.
3.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid legal process, including court orders, subpoenas, or regulatory requests. We will endeavor to notify you of such requests where legally permitted.
3.3 Business Transfers
In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred as part of the transaction. We will notify you via email or prominent notice on the Service before your information is transferred and becomes subject to a different privacy policy.
3.4 With Your Consent
We may share your information with third parties when you have given us your explicit consent to do so.
3.5 Aggregated Data
We may share anonymized, aggregated data that cannot reasonably be used to identify you. This data may be used for industry analysis, benchmarking, and research purposes.
4. Data Security
We implement and maintain administrative, technical, and physical safeguards designed to protect your data against unauthorized access, alteration, disclosure, or destruction. These measures include encryption in transit and at rest, role-based access controls, and continuous security monitoring.
In the event of a data breach affecting your personal data, we will notify you within seventy-two (72) hours and provide information about the nature, scope, and recommended protective measures.
For full details on our security practices, please refer to the Security Policy in our Terms of Service.
5. Data Retention
5.1 Active Account Data
We retain your personal data and Customer Content for as long as your account is active and the Subscription Period is in effect, or as needed to provide the Service.
5.2 Post-Termination
Following termination or expiration of your account, we will retain your Customer Content for thirty (30) days to allow for data export. After this period, Customer Content will be securely deleted from our active systems. Residual copies in backup systems may persist for a limited period in accordance with our backup retention schedule.
5.3 Legal Retention Requirements
We may retain certain data for longer periods as required by applicable laws, regulations, or legal obligations, including tax, accounting, and audit requirements.
5.4 Anonymized Data
Anonymized and aggregated data that cannot be used to identify you may be retained indefinitely for statistical analysis, benchmarking, and service improvement purposes.
6. International Data Transfers
6.1 Primary Jurisdiction
Nonce is based in Singapore, and the Service is primarily hosted and operated from Singapore. Your data may be processed and stored in Singapore and other jurisdictions where our service providers operate.
6.2 Transfer Safeguards
When we transfer personal data outside of Singapore, we ensure that appropriate safeguards are in place in accordance with the PDPA. We require third-party service providers to maintain comparable security and data protection standards, and we enter into data processing agreements that include appropriate obligations regarding the handling of personal data.
7. Your Rights
Under the PDPA and other applicable data protection laws, you have the following rights with respect to your personal data:
7.1 Access
You have the right to request a copy of the personal data we hold about you and information about how it is being used and disclosed.
7.2 Correction
You have the right to request correction of any inaccurate or incomplete personal data we hold about you.
7.3 Deletion
You may request deletion of your personal data, subject to our legal obligations and legitimate business needs for retaining certain data (such as billing records and legal compliance).
7.4 Data Portability
You may request a copy of your data in a structured, commonly used, and machine-readable format. The Service provides built-in data export functionality for Customer Content.
7.5 Withdrawal of Consent
Where we rely on consent as the legal basis for processing your personal data, you may withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.
7.6 How to Exercise Your Rights
To exercise any of the above rights, please contact us at support@nonce.app. We will respond to your request within thirty (30) days in accordance with the PDPA. We may request additional information to verify your identity before processing your request.
9. Children's Privacy
The Service is designed for business use and is not directed at individuals under the age of eighteen (18). We do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child without appropriate consent, we will take steps to delete such data promptly. If you believe that we have inadvertently collected data from a minor, please contact us at support@nonce.app.
10. Changes to This Privacy Policy
10.1 Right to Update
We may update this Privacy Policy from time to time to reflect changes in our practices, the Service, or applicable laws. The "Effective" date at the top of this page indicates when the Privacy Policy was last revised.
10.2 Notification
For material changes, we will provide at least thirty (30) days advance notice via email to the address associated with your account or through a prominent notification within the Service.
10.3 Acceptance
Your continued use of the Service after the effective date of any changes constitutes acceptance of the updated Privacy Policy. If you do not agree with the changes, you should discontinue use of the Service before the changes take effect.
11. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us:
General Inquiries & Support: support@nonce.app
Legal & Privacy Notices: notices@nonce.app
Entity: NONCE TECHNOLOGY PTE. LTD.
Jurisdiction: Singapore
If you are not satisfied with our response to your inquiry, you may lodge a complaint with the Personal Data Protection Commission of Singapore (PDPC) at www.pdpc.gov.sg.