What we store, and why
Short version: public blockchain data, the name you pick, and — only if you type it — one contact handle so a prize can reach you. Last updated 24 August 2026.
What we collect
- Public chain data. Wallet addresses, swap and liquidity events, and the amounts in them, read from Chiliz Chain — and, for claimed wallets only, position data from vibe.trading's public HyperEVM records. This is already public and we do not make it more public than it is — the board shows unclaimed addresses truncated (0x12…abcd).
- Your display name. The handle you choose. It replaces your truncated address on the board. Choosing one is what makes you eligible for a prize.
- A contact handle, only if you provide it. A WhatsApp number or Telegram username, so we can reach you about a prize. It is optional, it is never shown on the board, and leaving it blank does not affect your score.
- A signature record. The one-time challenge you signed to prove the wallet is yours. It proves ownership; it cannot move funds.
- A read-only exchange API key, only if you connect one. Optional. Before storing it we ask the exchange itself what the key can do and refuse anything beyond "read"; we re-check on every collection run and disconnect the key automatically if its permissions ever widen. It is stored encrypted (AES-256-GCM), never logged, and used for exactly one thing: reading your own fan-token trades during match windows. Disconnecting on the join page deletes the key immediately; the aggregated match-window volume it already produced stays on the board, credential-free.
What we never collect
No private keys. No seed phrases. No withdrawal or spending permissions. No exchange credentials with trading rights — the exchange link accepts read-only API keys only, the exchange's own permission endpoint is the judge, and a key that gains trading rights later is dropped automatically. No documents, no selfies, no background tracking or advertising profiles across other sites.
What we do with it
Compute the leaderboard, show it, and pay prizes. That is the whole purpose. We do not sell personal data, and we do not share it for anyone else's marketing.
Who can see what
Public: your chosen handle, your points, your swap count, your net flow, and your estimated share. Not public: your contact handle and your full wallet address once you have claimed it — the public API truncates addresses.
How long we keep it
Scores and match records are kept as the league's competitive record. Contact details are kept while you take part and for as long as needed to settle prizes and meet accounting obligations, then deleted. A rejected claim's contact details are deleted when it is rejected.
Your rights
You can ask for a copy of what we hold about you, ask for it to be corrected, ask for your contact details to be deleted, or ask to be removed from the board. Removing your handle returns you to a truncated public address — it cannot erase the underlying blockchain activity, which is not ours to delete. Ask via the operator contact published with the current matchday announcement.
Where it lives
On a single server the operator controls, in one database, backed up daily. Third parties involved: the public Chiliz Chain RPC, public market-data endpoints for prices and venue volume, WalletConnect for the Socios.com sign-in flow, and — only if you connected a read-only key — signed read requests to your own account on the exchange you connected. None of them receive your contact details.
Cookies
The site sets no advertising or analytics cookies. Sign-in state is held in your own browser.