Privacy Policy
This Privacy Policy ("Policy") outlines the data collected by webdom, how it is used, and how it is protected. By using webdom, you confirm your acceptance of this Policy.
1. Data Collection
1.1. Data Provided by the User
We collect the following data that you provide to us, including:
TON wallet address for performing transactions
Contact information (email, Telegram) when reaching out to support
Data provided during registration and verification (if applicable), such as username and links to social media accounts
1.2. Automatically Collected Data
Technical data: IP address, device type, operating system version, and browser information.
System activity data: Transaction history, viewed pages, clicks, timestamps.
Cookies and analytics: Data collected via Google Analytics, Cloudflare.
Public blockchain information: Transfers, addresses, NFTs, transaction history.
Location data: If provided by the user or enabled in device settings.
Some data, such as public blockchain information (addresses, transactions, NFTs), cannot be modified or deleted as it is stored in a decentralized network beyond the control of webdom.
1.3. Cookies and Similar Technologies
We use cookies to personalize the interface, analyze user activity, and ensure security. Upon your first visit to webdom, you will be given the option to manage cookie settings. You can update your preferences at any time through the [cookie management interface] (insert link). Some cookies (such as functional and security-related cookies) are essential for platform functionality and cannot be disabled.
1.4. Data from Third Parties
In some cases, we may receive data from third parties (e.g., social networks, partner services) to support platform functionality. We do not receive passwords, private keys, or other confidential user data.
1.5. Legal Basis for Data Processing
We process data based on the following legal grounds:
User consent – for marketing communications and analytics
Contract performance – processing data to fulfill obligations to users
Legitimate interest – analyzing service performance, fraud prevention
Legal compliance – fulfilling obligations to government authorities
2. Use of Data
2.1. We use the collected data for:
Processing domain transactions, including purchasing, selling, and leasing
Sending notifications about transactions, lease expirations, and auctions
Analyzing user activity to improve platform performance
Developing new features and enhancing user experience
Ensuring security and preventing fraud
Meeting legal obligations
2.2. Marketing Communications
webdom may use user contact details to send notifications and offers only with user consent. We may also apply automated decision-making algorithms (e.g., content personalization). However, decisions affecting user rights (such as account suspension or access restrictions) will always be reviewed by a human moderator. Users have the right to dispute such decisions and request a manual review.
3. Data Sharing with Third Parties
3.1. We share data with third parties only in the following cases:
To process transactions and fulfill contractual obligations
To protect the legal interests of webdom and its users
To comply with legal requirements (e.g., responding to official government requests)
In case of a merger, acquisition, or business sale, we will notify users at least 14 days in advance of data transfer. If the new owner changes the data processing policy, users will be given the opportunity to withdraw consent and request data deletion before the changes take effect.
3.2. Categories of Third Parties Processing Data
Payment providers
Analytics services (Google Analytics, Cloudflare)
Government authorities (upon official request)
Cross-Border Data Transfer
Some third-party services (e.g., Google Analytics, Cloudflare) process data outside the European Economic Area (EEA), including the United States. In such cases, data transfers are based on Standard Contractual Clauses (SCCs) approved by the European Commission or another legal mechanism ensuring adequate data protection.
3.3. Right to Opt-Out
Users can withdraw their consent for marketing communications at any time through account settings or by contacting us via email.
To opt-out of data processing entirely, users can submit a request through webdom’s interface or via email.
Users can request complete removal of their personal data, including account deletion, through webdom’s support service.
4. Data Protection
4.1. Technical Measures
We use encryption technologies, secure servers, and other security measures to protect your data.
4.2. Limited Access
Only authorized employees have access to personal data when necessary for their job responsibilities.
4.3. Wallet Security
webdom does not request or store private keys or wallet passwords. Users are fully responsible for their security.
4.4. Data Retention Periods
IP addresses – stored for 30 days
Transaction history – stored for 12 months
Personal data – retained only as long as necessary for processing purposes but no longer than 3 years after the user's last activity (unless required by law).
After the retention period expires, data is automatically deleted or anonymized.
webdom will notify users at least 30 days in advance before deleting their data.
Some data, such as public blockchain information (addresses, transactions, NFTs), cannot be altered or deleted as it is stored in a decentralized network beyond webdom’s control. However, data stored in webdom’s centralized databases can be deleted upon user request.
4.5. Data Deletion Process
Users can request data deletion via email or the platform interface. We will review and confirm the deletion within 30 days, unless legal obligations require data retention (e.g., financial transaction records for fraud prevention and tax compliance). Backup copies are automatically deleted 30 days after a deletion request.
4.6. Security Breach Notification
In case of a data breach, webdom will notify the data protection authority within 72 hours, as required by GDPR (Article 33). If the breach poses a high risk to users, they will also be notified as soon as possible via email and/or push notifications.
5. User Rights
5.1. You have the right to:
Request information about the data we collect
Correct, update, or delete your data
Restrict data processing or object to its use
Receive a copy of your data in a structured format (data portability right)
Withdraw consent for personal data processing (if processing is based on consent)
Receive a response within 30 days (as per GDPR)
Request an explanation of how automated decision-making algorithms work
File a complaint with a data protection authority if you believe your rights have been violated
For EU residents: A list of national authorities is available on the European Commission website.
For California residents: You can request information on what data is collected and how it is used under CCPA via the California Attorney General’s website.
5.2. Exercising Your Rights
To exercise your rights, contact us through Support or via email. Responses will be provided within 30 days. In complex cases, the response time may be extended to 60 days, with prior notice.
6. Changes to the Policy
We reserve the right to modify this Privacy Policy at any time.
In case of significant changes, users will be notified at least 14 days in advance.
Continued use of the platform after changes implies acceptance of the updated Policy.
7. Contact Information
For any questions regarding this Privacy Policy, you can contact us via:
Last updated