cachet.

LEGAL

PRIVACY POLICY

LAST UPDATED: FEBRUARY 21, 2026

1. INTRODUCTION

Cachet ("we", "our", "us") operates the usecachet.com website and Discord bot. This Privacy Policy describes how we collect, use, and protect your information when you use our Service.

2. INFORMATION WE COLLECT

2.1 INFORMATION FROM DISCORD

When you log in via Discord OAuth, we receive your Discord user ID, username, and avatar. We do not receive or store your Discord password.

2.2 WALLET ADDRESSES

When you verify NFT ownership, you connect your Ethereum-compatible wallet and sign a message. We store your public wallet address to perform on-chain verification checks. We never have access to your private keys.

2.3 PROJECT CONFIGURATION DATA

Project owners provide Discord server IDs, contract addresses, role mapping configurations, and project names. This data is stored to operate the verification service.

2.4 BILLING INFORMATION

Payment processing is handled entirely by Paddle (our Merchant of Record). We do not store credit card numbers, bank details, or other payment credentials. Paddle may share your email, transaction ID, and subscription status with us.

2.5 TECHNICAL DATA

We collect IP addresses, browser user agents, and request timestamps for rate limiting, security, and abuse prevention. Server logs are retained for up to 30 days.

3. HOW WE USE YOUR INFORMATION

  • To authenticate your identity via Discord.
  • To verify on-chain NFT ownership and assign Discord roles.
  • To manage subscriptions and billing through Paddle.
  • To enforce rate limits and prevent abuse.
  • To send transactional communications (billing receipts, plan changes).
  • To improve and maintain the Service.

4. DATA SHARING

We do not sell your personal data. We share data only with:

  • Paddle — Payment processing and tax compliance.
  • Discord — Role assignments via the Discord API.
  • MegaETH RPC Providers — On-chain data queries (public blockchain data only).
  • Sentry — Error monitoring (anonymized technical data).

5. DATA RETENTION

  • Account data is retained while your account is active.
  • Verification records are retained for the lifetime of the project.
  • Deleted projects and associated data are purged after 30 days.
  • Server logs are retained for up to 30 days.

6. DATA SECURITY

We employ industry-standard security measures including encrypted connections (TLS), hashed tokens, rate limiting, and secure credential management. Database access is restricted and encrypted at rest.

7. YOUR RIGHTS

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data.
  • Object to processing of your data.
  • Data portability.

To exercise these rights, contact us at privacy@usecachet.com.

8. COOKIES

Cachet uses essential cookies and local storage for authentication (JWT tokens). We do not use tracking cookies, advertising cookies, or third-party analytics trackers.

9. CHILDREN'S PRIVACY

The Service is not intended for individuals under the age of 18. We do not knowingly collect data from minors. If we learn that we have collected data from a child, we will delete it promptly.

10. CHANGES TO THIS POLICY

We may update this Privacy Policy at any time. Changes will be posted on this page with an updated "Last Updated" date. Continued use of the Service after changes constitutes acceptance.

11. CONTACT

For privacy-related questions or requests, contact us at privacy@usecachet.com.