Privacy notice
KushBitx collects only the data needed to operate, protect and improve the service. It does not ask for private keys or seed phrases.
Anonymous product measurement
The site may store random event and session identifiers plus allowlisted source and campaign labels for up to 30 days. These events do not contain wallet addresses, policy contents, spend amounts or full URLs. Do Not Track is respected.
API reliability measurement
We retain bounded server observations for up to 30 days: route, HTTP status, policy decision, response duration, retry guidance and test/canary/automation labels. Optional random client and flow IDs are hashed; these are caller-declared identifiers, not verified customers. Completed report IDs are hashed to deduplicate delivered receipts. No request body, wallet address, payment signature or recovery key is copied into this measurement. Do Not Track disables optional client and flow linkage. Reliability counts still operate without identifiers.
Reports and payments
Paid requests store the submitted check input, result, service, payment evidence and recovery record for 30 days so the original report can be restored. Payment authorization and settlement use public Base transaction data. Never place a private key, seed phrase or recovery phrase in a request.
Evidence Chain release candidate
When you explicitly create an Evidence Chain, we store its payment intent (including recipient, amount and optional sender), protected-policy decision and any requested evidence events. Access requires the policy agent key and expires with its 30-day pilot. Evidence is append-only and this release has no automatic purge; use non-sensitive pilot data only. No signing keys or payment signatures are requested by these routes. Direct preflight and settlement checks require separate pilot activation.
SpendGuard
The stateless preview is evaluated without saving the proposed recipient, amount, policy or decision. If you explicitly create a protected policy, its rules and decisions are stored for the 30-day pilot. Only credential hashes are stored; one-time admin and agent keys cannot be recovered.
Feedback and pilot requests
Feedback is stored for the project team. A company-pilot request stores the contact email, company or project, expected decision range and workflow description for 90 days so KushBitx can respond. Do not include wallet secrets, signatures or recovery material.
Service providers and protection
KushBitx uses hosting infrastructure, public Base RPC services, an x402 facilitator and market or security-data providers to answer requests. Only the request data needed for the selected check is sent. Per-source abuse controls retain bucket-specific hashed identifiers rather than raw source addresses in the application database.
Contact
For a privacy question or a request concerning submitted contact data, email admin@kushbitx.com.