Privacy Policy
Last updated: June 16, 2026
1. About PolyWatch
PolyWatch (“we”, “us”, “our”) is a mobile application that displays publicly available prediction market data from Polymarket and sends push notifications when significant market events occur. PolyWatch does not facilitate trading, gambling, or any financial transactions.
2. Data We Collect
- Email address — collected at registration, used to identify your account and send transactional emails.
- Password (hashed) — stored as a bcrypt hash; we never store your plaintext password.
- Device push token — your iOS (APNs) or Android (FCM) token, used solely to deliver push notifications you have requested.
- Watched markets — the list of prediction markets you choose to follow, stored to personalise your alerts.
- Subscription status — whether your account is on the Free or Pro tier, and the expiry date supplied by the App Store or Google Play.
We do not collect location data, contacts, browsing history, biometric data, financial account information, or any health data.
3. How We Use Your Data
- To authenticate you and maintain your session.
- To send push notifications for market events you have subscribed to.
- To enforce subscription tier limits (Free vs. Pro).
- To process and verify in-app purchases via Apple or Google.
We do not sell your data. We do not use your data for advertising.
4. Third-Party Processors
- Hetzner Online GmbH — cloud hosting for our backend and database (USA servers).
- Google Firebase (FCM) — Android push notification delivery.
- Apple Inc. (APNs) — iOS push notification delivery.
- Apple / Google Play — in-app purchase verification. Receipt data is shared only for subscription validation.
5. Data Security
All data is transmitted over HTTPS/TLS. Passwords are hashed with bcrypt. The database is hosted on an encrypted volume. Push tokens are stored only while your account is active.
6. Data Retention
Your account data (email, password hash, watched markets, device token) is retained for as long as your account exists. Market snapshot data is retained for 15 days and then automatically deleted. Alert history is retained for analytical purposes in anonymised form after account deletion.
7. Account Deletion
You can delete your PolyWatch account at any time. Deletion is permanent and cannot be undone.
How to delete your account
- Open the PolyWatch app.
- Tap Profile (bottom-right tab).
- Scroll to the bottom and tap Delete Account.
- Confirm the deletion when prompted.
What gets deleted
- Deleted immediately: your email address, password hash, device push token, watched markets list, and subscription record.
- Retained (anonymised): alert events are kept for aggregate analytics but are no longer linked to your identity after your account is deleted.
If you are unable to access the app, you may also request deletion by emailing privacy@polywatch.org from the address associated with your account. We will process your request within 30 days.
8. Your Rights
Depending on your jurisdiction you may have rights to access, correct, or delete the personal data we hold about you. To exercise any of these rights, contact us at privacy@polywatch.org.
9. Contact
Questions about this policy: privacy@polywatch.org