naanayam.online
Privacy policy
1. Who we are
This Privacy Policy explains how the public website https://naanayam.online (the “Website”, “we”, “us”) treats information when you visit naanayam.online. The Website is operated under the name NAANAYAM. No company or organisation name is published on the Website at this time. This Policy applies to the Website as an internet property, not to public blockchains we do not control.
2. Scope
It covers the pages of naanayam.online, including the landing Desk, the Console, Terms, Risk, Cookies, and this Policy. It does not cover MetaMask, Rabby, Polygon, Uniswap, Circle or the issuer of USDC, block explorers, faucets, banks, UPI apps, card networks, or other sites you open. Those parties have their own policies.
Where a data-protection law applies to you — including the EU GDPR, UK GDPR, California CCPA/CPRA, other US state laws, India’s Digital Personal Data Protection Act, 2023, or similar rules — we describe our practices so you can exercise rights the law actually gives you against a website that does not open user accounts. This Policy is not a representation that any particular statute applies, or that we have an establishment in any country.
3. What we do not collect
The Website does not ask you to create an account. We do not request, store, or process:
- your legal name, government ID, PAN, Aadhaar, or biometric data;
- your seed phrase, private key, wallet password, or recovery file;
- bank details, IFSC, account numbers, or net-banking credentials;
- credit-card, debit-card, or prepaid-card numbers, CVV, or expiry;
- UPI IDs, VPAs, or mobile numbers for a rupee payment;
- a payment-gateway session, charge, or settlement file;
- a completed identity questionnaire or source-of-funds form.
The Desk and Console only compose crypto-asset calls (NAYAM and Native Polygon USDC) that you sign in your Wallet. We never run a card, UPI, or net-banking checkout, so we never receive the personal data those rails collect.
Do not send those materials to the Website. If you paste a key, card number, or UPI PIN into a form on a page that is not naanayam.online, that is outside this Policy and outside our control.
4. Information that may be processed
Depending on how you use the internet, the following may be processed by us or by infrastructure we use:
- Technical data: IP address, approximate location derived from IP, browser type and version, device type, language, referring URL, pages viewed, date and time, and diagnostic error data.
- Wallet address: if you connect, your public address may be handled in your browser and sent to an RPC you or the page uses, in order to read balances and send transactions you approve.
- Local device storage: small data in cookies or local storage so a connection or a theme preference can persist. See the Cookie notice.
- Communications: if we later publish a contact method and you write to it, the content of that message and your return address.
We do not use the Website to sell advertising profiles. We do not currently run a marketing pixel on naanayam.online. If that changes, the Cookie notice and this Policy will be updated first.
5. Public blockchains are not private
Transactions you confirm are broadcast to a Network. Wallet addresses, amounts, contract calls, and timestamps are public or widely visible. We cannot delete a confirmed on-chain record. Treat every on-chain action as public. The Website is not the data controller of the Polygon ledger.
If you later cash Native Polygon USDC out to legal tender on an exchange or with a bank, that party may collect KYC that this Website never sees. Their privacy notice governs that.
6. Wallets, RPCs, and explorers
When you connect, your Wallet extension and any RPC (including public Polygon endpoints) may see your address, IP, and request contents. Those processors are independent. We do not control MetaMask, Rabby, Infura, PublicNode, or similar services. Your Wallet’s privacy settings are your responsibility.
7. Hosting and server logs
The Website may be hosted on third-party static hosting (including Firebase Hosting or a successor). The host may log requests automatically (IP, user agent, path, status code) for security, abuse detection, and reliability. Those logs are processed on the host’s infrastructure and under the host’s terms, in locations the host chooses.
8. Cookies and similar tools
Details are in the Cookie notice at https://naanayam.online/cookies. In short: we use what is needed to serve the site, to remember a Wallet connection in your browser, and to remember a display theme if you set one. You can clear storage in your browser. The Desk may then ask you to connect again.
9. Fonts and other third parties
The Website may load typefaces from Google Fonts or a similar provider. That provider may see your IP and user agent. Content delivery networks used to serve the site may process the same technical data.
10. Purposes and legal bases
Where a “legal basis” is required, we rely on:
- Providing the interface you request — loading pages, connecting a Wallet you choose, showing balances, composing a NAYAM/USDC transaction (steps needed for a service you ask for).
- Legitimate interests — keeping the site up, diagnosing faults, preventing abuse of the host, improving clarity of the interface, in a way we believe is proportionate because we do not build a marketing dossier on you and we do not process payment-rail data.
- Legal obligation — only if a law that actually applies to the operator of naanayam.online requires a limited disclosure (for example a binding order). We do not volunteer user dossiers we do not have.
- Consent — only for optional cookies if we introduce them and the law requires consent; you may refuse those.
11. Sharing, sale, and no advertising use
We do not sell your personal information. We do not share it for cross-context behavioural advertising. We do not send card, UPI, or banking data to anyone because we do not collect it. We may disclose technical data to a host, CDN, or counsel if needed to operate or defend the Website, or if required by a valid legal process we must obey. A public blockchain “share” is a broadcast you cause, not a sale by us.
California residents: we do not sell or share personal information as those words are used in the CCPA/CPRA for advertising. We do not use or disclose sensitive personal information for purposes that require a right to limit, because we do not collect it. You may still send a request as described below.
12. Retention
Browser storage lasts until you clear it or the browser expires it. Host logs last for the host’s default period (often weeks to months) unless a security incident requires longer. We cannot retain, and cannot erase, ledger data. Message records, if any exist later, last only as long as needed to respond and then a short archive unless law requires more.
13. Your rights
Depending on your place, you may have rights to access, correct, delete, restrict, object, port, withdraw consent, and complain to a supervisory authority. You may also have a right not to be discriminated against for exercising a consumer privacy right.
How to use them: because we do not run accounts, we may be able to do very little with a ledger address we never indexed. We can describe our practices, and we can point you to clearing your own browser. We will not pretend to erase Polygon. For a request about host logs, we may need you to provide enough technical detail to locate a record, and we may refuse a request that is unfounded, excessive, or would harm others. If a contact method is published onnaanayam.online, use that. Until then, a request can be noted only if the Website later provides a channel.
We will not fulfil a request that requires you to send a seed phrase, card number, or UPI PIN. We will never ask for those.
India: if the DPDP Act applies to a particular processing, you may have rights of access, correction, erasure, and grievance redressal as that Act and its rules provide. EU/UK: you may complain to your lead supervisory authority. California: you may appoint an authorised agent as the CPRA allows, with proof of authority.
14. Children
The Website is not directed at children. We do not knowingly collect personal information from children. If you believe a child provided data to us, stop their use of the site. We do not want that data.
15. Security
We use HTTPS for the Website when the host provides it. No method of transmission is perfectly secure. You must secure your own Wallet and device. A breach of your machine or extension is your incident, not a Website account breach, because we do not hold your keys and we do not hold a payment-rail vault.
16. International access
naanayam.online is reachable from many countries. Hosts, CDNs, and font providers may process technical data outside your country. Public ledgers are global. If you do not want that, do not use the Website and do not broadcast transactions.
17. Changes
We may update this Policy. The date at the top will change. Continued use means you accept the updated Policy. Material changes will be posted on this page.