Privacy Policy
Last updated: February 20, 2026
1. Who We Are
PolyMonit is operated by Qoreon Labs Ltd. ("we", "us", or "our"). We provide a real-time wallet monitoring dashboard for public Polymarket activity. This Privacy Policy explains how we collect, use, and protect your information when you use our website and services (collectively, the "Service").
If you have questions, contact us at: privacy@qoreonlabs.com
2. Information We Collect
Account information. When you register, we collect your email address and a hashed password (managed by Firebase Authentication). If you sign in with Google, we receive your name, email, and profile photo from Google.
Payment information. Subscription payments are processed by Stripe. We do not store your card number, CVV, or full payment details. We receive a Stripe customer ID and subscription status from Stripe's servers.
Usage data. We may collect information about how you use the Service, such as pages visited, features used, and error events (via Sentry). This data is used for debugging and improving the Service.
Wallet addresses. Wallet addresses you choose to monitor are stored in your browser's local storage and, where applicable, in your account record in Firestore. These are public blockchain addresses — we do not link them to your personal identity.
Alert configuration. If you enable Telegram alerts, we store your Telegram chat ID in Firestore so our background worker can deliver notifications on your behalf.
Analytics. We use Google Analytics (GA4) to understand aggregate usage patterns. This involves cookies and IP address processing by Google. You can opt out via your browser settings or a GA opt-out extension.
3. How We Use Your Information
- To create and manage your account and subscription.
- To deliver the core Service — real-time wallet monitoring and alerts.
- To send Telegram notifications you have explicitly configured.
- To process payments and verify subscription status via Stripe.
- To detect and fix bugs and errors (Sentry error tracking).
- To understand aggregate usage patterns and improve the Service (Google Analytics).
- To comply with legal obligations.
We do not sell your personal data to third parties. We do not use your data for advertising profiling.
4. Data Storage and Retention
Account data is stored in Google Firebase / Firestore, hosted in the United States. By using the Service, you consent to your data being transferred to and processed in the US.
We retain your account data for as long as your account is active. If you delete your account, we delete your Firestore record and associated alert configuration within 30 days. Local storage data (wallets, plan state) is controlled entirely by your browser and can be cleared at any time.
Stripe retains payment records per its own data retention policy and applicable financial regulations.
5. Third-Party Services
We use the following third-party services, each governed by their own privacy policies:
- Firebase / Google Cloud — authentication and database
- Stripe — payment processing
- Telegram Bot API — delivery of alert notifications you opt into
- Netlify — serverless function hosting
- Google Analytics (GA4) — aggregate usage analytics
- Sentry — error monitoring
- Polymarket public API — read-only public market data (no personal data sent)
6. Cookies
We use cookies and similar technologies for:
- Authentication — Firebase uses cookies/tokens to keep you signed in.
- Analytics — Google Analytics sets cookies to distinguish users and sessions.
We do not use advertising cookies. You can disable cookies in your browser settings; some features (such as staying signed in) may not work if you do.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your account and associated data.
- Withdraw consent for optional processing (e.g., Telegram alerts) at any time via the Alerts page.
- Lodge a complaint with your local data protection authority.
To exercise any of these rights, email us at privacy@qoreonlabs.com. We will respond within 30 days.
You can also delete your account directly from your Profile page, which will immediately clear your data from our systems.
8. Security
We implement reasonable technical and organizational measures to protect your data, including encrypted connections (HTTPS), Firebase security rules, and server-side token verification for all sensitive operations. No method of transmission over the internet is 100% secure; we cannot guarantee absolute security.
9. Children's Privacy
The Service is not directed to individuals under the age of 13 (or 16 in the EEA). We do not knowingly collect personal data from children. If you believe a child has provided us personal data, contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. Continued use of the Service after changes constitutes acceptance of the revised policy. For material changes, we will notify registered users by email.
11. Contact
Qoreon Labs Ltd.
Email: privacy@qoreonlabs.com
Website: qoreonlabs.com