1. Scope
This Privacy Policy applies to the Different Pay (∂pay) non-custodial wallet for Android (package org.kalaj.dpay), the website at dpay.kalaj.org, the Different Pay relay service, and the web merchant terminal.
Third-party wallets, networks, websites, and services have their own privacy practices. This policy describes Different Pay's practices, not theirs.
2. Information Different Pay handles
Information stored on your device
The app stores a randomly generated private key and public wallet address, your chosen display name, your selected relay address, and app settings on your device. If you fund supported assets from an external wallet, the app may also temporarily store the external account address, amount, transaction hashes, and funding progress so it can resume status checks after a restart.
Wallet and transaction information
To provide balances, deposits, withdrawals, payments, receipts, and transaction history, the app and merchant terminal process and transmit information such as:
- public wallet addresses and public deposit addresses;
- transaction amounts, assets, payment or request identifiers, expiration times, signatures, settlement status, block references, and timestamps;
- optional display names and memos included in a payment;
- withdrawal destination addresses, deposit status, external wallet addresses, and public blockchain transaction hashes; and
- signed payment authorizations submitted by you or by a merchant at your direction.
This information is used to execute the features you request. Public addresses, transaction details, display names, and memos written to a distributed ledger may be visible to other network users. Do not put confidential information in a display name or memo.
Camera and NFC data
Camera access is optional and used only when you scan a QR code. Camera frames are processed locally and are not uploaded. NFC is optional and transfers payment requests, authorizations, and receipts directly between nearby devices. The app does not request access to your contacts, precise location, microphone, or advertising ID.
Website and technical information
The public website uses no analytics, advertising trackers, or cookies. When you connect to the website or relay, our infrastructure and hosting provider may process standard network information such as IP address, browser or device headers, request time, requested URL, and security or error events. We use this information only to deliver, secure, troubleshoot, and maintain the service.
The merchant terminal processes camera frames in your browser. Only a decoded payment request or signed authorization is submitted to the relay when you choose to create or settle a payment. Its recent-payment list remains in that browser session.
3. How we use information
We use the information described above only to:
- create and display wallet addresses, balances, deposit instructions, and transaction history;
- authorize, submit, settle, reconcile, and display payments and withdrawals;
- connect to an external wallet when you request a supported funding transaction;
- prevent duplicate payments, detect invalid requests, and protect service integrity;
- operate, secure, debug, and improve reliability of the app, website, and relay; and
- comply with applicable law and valid legal requests.
We do not sell personal or sensitive information. We do not use it for behavioral advertising, targeted advertising, cross-app tracking, or advertising measurement.
5. Security
Different Pay is non-custodial. Payment and withdrawal authorizations are signed on your device, and the service uses cryptographic verification before settlement. Network traffic to the public service is protected with HTTPS, and access to operational systems is restricted.
No system is completely secure. You are responsible for protecting your device. Anyone who obtains your private key may be able to control funds associated with it, and we cannot restore a lost key.
6. Retention and deletion
No server account
Different Pay does not create a server account with an email address, password, or verified identity. Your wallet identity is created and operated locally on your device.
Data on your device
The app keeps local information until you remove it. Reset wallet deletes the wallet identity from the app on that device. Clearing the app's storage or uninstalling the app removes its other local app data according to Android's behavior.
Service and ledger records
The relay may retain temporary payment receipt data in process memory and limited operational or security records for as long as reasonably needed to settle requests, prevent duplicate actions, troubleshoot failures, secure the service, and meet legal obligations.
Distributed ledger and blockchain transaction records are maintained by their networks. They are generally permanent and cannot be changed or deleted by us. Copies already submitted to merchants, external wallets, providers, or network participants are also outside our control.
You may contact us to request access to or deletion of personal information controlled by us. We will verify and respond to the request as required by applicable law, but we cannot delete distributed-ledger records or data controlled independently by a third party.
7. Children
Different Pay is not directed to children under 13, or a higher minimum age where local law requires it. We do not knowingly collect personal information from children. If you believe a child has provided information to dpay, contact us so we can review and take appropriate action for information we control.
8. International and distributed processing
Different Pay's providers and distributed networks may process information in countries other than yours. Data recorded on a decentralized or distributed network may be replicated across nodes in multiple jurisdictions. Where required, we apply appropriate protections to information under our control.
9. Changes to this policy
We may update this policy when Different Pay's features, providers, or legal obligations change. We will post the revised policy here and update the date above. Material changes will be communicated in the app or website when appropriate.
10. Contact
App and developer: Different Pay
Android package: org.kalaj.dpay
For privacy questions or requests, email [email protected].