Last updated August 8, 2026

Privacy Policy

This policy describes the information NFTProwl stores to provide watchlists, wallet-linked price targets, notifications, support, and service health.

What we collect

  • Anonymous watchlists: an opaque session-cookie ID, watched collection slugs, timestamps, optional notes, and floor-price snapshots. They are retained for up to 90 days after the last visit unless migrated to a wallet account.
  • Wallet watchlists: your public WAX account name, watched slugs, timestamps, optional notes, and floor-at-add snapshots. These sync across devices after you connect the same wallet.
  • Price targets: WAX account, collection slug, threshold and direction, optional template ID, expiration, notes, status, and check timestamps.
  • Notification preferences: a verified email address if you opt in, a Discord webhook URL if supplied, and a push-subscription endpoint if enabled. Delivery logs are limited to the latest 50 entries per channel.
  • Support tickets: submitted content, contact email, affected URL, and browser user agent. Tickets are retained until resolved plus 90 days.
  • Session state: an opaque UUID cookie and, after connection, its association with your public WAX account.

What we do not collect

NFTProwl does not persist IP addresses or browsing history. Health samples and cache-warmup timestamps are operational and are not tied to users. We do not store on-chain balances, wallet private keys, seed phrases, payment-card details, or government identifiers. Connecting a wallet is view-only unless you explicitly approve a signed transaction.

How we use and protect data

We use this data only to deliver the features you request, investigate support issues, prevent abuse, and monitor service reliability. We do not sell personal data. Public blockchain account names and NFT metadata remain public independently of NFTProwl.

Your export and deletion rights

Connected wallet users can download their wallet-scoped data from /api/data-export and permanently delete it through /api/data-deletion with explicit confirmation. Disconnect your wallet afterward to remove the local association. Anonymous users can remove their local identity by clearing browser cookies.

You may also request deletion through the support-ticket reply flow or contact support with your WAX account. Support-ticket deletion can be requested in the ticket thread or by emailing support@nftprowl.com.

Cookies and retention

The nftprowl_session cookie is an HttpOnly, same-site identifier with a one-year expiry. Clearing it prevents access to anonymous data associated with that identifier. Operational provider logs may be retained under the hosting provider's own security and retention rules.