1. Scope and contact
Tri-Proof Guard is operated by Tri-Proof Protocol. For privacy requests or questions, email info@triproofprotocol.com. This policy applies to the public website, authenticated product areas, browser extension, Telegram bot and Guardian, and API services that link to it.
2. Information we process
- Account information: name, email address, password hash, session details, subscription state, and account settings.
- Analysis inputs and results: wallet addresses, chains, campaign names, CSV filenames, uploaded or submitted analysis data, risk signals, graph evidence, feedback, and reports.
- ScamGuard and extension activity: URLs of supported pages opened while ScamGuard is active, user-triggered page links, domains, public wallet addresses when available, token or contract identifiers, and wallet-request data supplied by a dApp for decoding. We process this information to identify phishing, impersonation, approval, and transaction risks. The extension stores its recent decision history, settings, and observed approval-request ledger locally in the browser unless you explicitly use a server-backed product feature.
- Extension account connection: a short-lived browser pairing request, device-access token metadata, connected account identifier, and plan entitlement. The extension never receives or stores your Tri-Proof password, wallet private key, seed phrase, or recovery phrase.
- Telegram Guardian data: group and user identifiers supplied by Telegram, group metadata, scanned message targets, safety alerts, and group management settings.
- API and operational data: API-key metadata such as a hash, prefix, last four characters, usage counters, request metadata, webhook endpoint configuration, delivery records, and security logs.
- Payment references: selected plan, network, transaction hash, amount, confirmation state, and related product credits. Tri-Proof Guard does not take custody of assets.
3. Information we do not request
Do not send us seed phrases, private keys, wallet passwords, recovery phrases, or account credentials. Tri-Proof Guard does not require them, does not provide a field for them, and never asks for them through support, Telegram, the extension, or the API.
4. Why we use information
We use information to operate and secure accounts, run the requested analysis, present reports, maintain scan limits and subscriptions, prevent abuse, investigate feedback, operate Telegram Guardian, provide support, and improve risk-detection quality. We do not use extension data to build advertising profiles or sell user data. We may use de-identified or aggregated operational observations to improve rules, reliability, and product performance.
5. Service providers and disclosures
We use infrastructure and specialist providers to host the product, store data, deliver email or support, access blockchain/RPC data, and run optional AI-assisted explanations. Providers may process data only to provide their service to us. We do not sell personal information. We may disclose information where necessary to comply with law, protect users or the service, investigate abuse, or complete a corporate transaction.
6. International processing
Our infrastructure and providers may process information in countries other than your own. Where required, we use appropriate contractual, technical, and organizational safeguards. You should not submit data that you are not authorized to share or that is subject to restrictions incompatible with this processing.
7. Your choices and rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or receive a copy of certain personal data. You may also revoke an API key, disable a webhook, leave a Telegram group, or close an account through the product where available. To make a request, email us from the address associated with your account. We may need to verify your identity and may retain limited data when required for security, fraud prevention, accounting, or law.
8. Security
We use access controls, hashed credentials and API-key material, transport security, and operational monitoring designed to protect data. No online service is completely secure; use strong credentials, protect your wallet, and report suspected compromise promptly.
9. Changes
We may update this policy as the product evolves. Material changes will be posted on this page with a revised effective date. Continued use after an update means you acknowledge the revised policy to the extent permitted by applicable law.
This policy is a product-facing notice, not a substitute for a jurisdiction-specific legal review before regulated or enterprise deployment.