Skip to content
WAR4.WORLD
Legal

Privacy Policy

Last updated: March 2026

1. Information We Collect

We collect information you provide directly, including:

  • Email address and name during registration
  • Phone number for account verification and 2FA
  • Account credentials (encrypted password hashes only; we never store plaintext passwords)
  • Transaction history, balance information, and wallet ledger records
  • Tile content you create (titles, descriptions, links, images)
  • IP addresses and browser information for security and rate limiting
  • Blockchain deposit address assigned to your account

2. Blockchain and On-Chain Data

WAR4.WORLD operates on BNB Smart Chain (BSC). The following information may be recorded on the public blockchain:

  • Your assigned deposit address (a unique BSC address generated for your account)
  • USDT deposit transaction hashes and amounts
  • Withdrawal transaction hashes, destination addresses, and amounts
  • Tile ownership records and sale events on the War4Core smart contract

Important: Blockchain transactions are permanent and public by nature. Once a transaction is confirmed on BSC, it cannot be deleted, modified, or made private. Transaction hashes and wallet addresses are visible to anyone using a blockchain explorer.

We use HD (Hierarchical Deterministic) wallet technology to generate deposit addresses. The master key used to derive these addresses is stored securely as an environment variable and is never logged, stored in the database, or exposed to any user interface.

3. How We Use Information

We use your information to:

  • Provide and maintain the WAR4.WORLD platform
  • Process USDT deposits, credit allocations, and withdrawals
  • Display your public tile content to other users
  • Send important account notifications and verification codes
  • Prevent fraud and ensure platform security (rate limiting, audit logs)
  • Monitor blockchain for deposit transactions
  • Comply with legal obligations

4. Information Sharing

We do not sell your personal information. We may share data with:

  • Service providers who assist our operations (hosting, email delivery, SMS delivery, blockchain RPC nodes)
  • Law enforcement when required by law or to protect rights
  • Other users (your public profile and tile content only)

Note that blockchain transaction data is inherently public and visible to anyone. We do not control access to on-chain data.

5. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • Passwords hashed using bcrypt with salt rounds
  • JWT-based session tokens with 24-hour expiration
  • CSRF protection on all mutating API requests
  • Security headers (CSP, HSTS, X-Frame-Options)
  • Rate limiting on authentication and sensitive endpoints
  • HMAC-SHA256 hashed verification codes
  • Audit logging for security-relevant actions

However, no internet transmission is 100% secure. We cannot guarantee absolute security.

6. Cookies and Tracking

We use essential cookies for authentication (session cookie), CSRF protection (CSRF token cookie), and pending verification state. We do not use third-party tracking cookies or advertising cookies.

7. Your Rights

Depending on your jurisdiction, you may have rights to:

  • Access your personal information
  • Correct inaccurate data
  • Request deletion of your account and off-chain data
  • Export your data
  • Object to certain processing activities

Note that on-chain data (blockchain transactions, smart contract records) cannot be deleted due to the immutable nature of blockchain technology.

8. Data Retention

We retain your information as long as your account is active or as needed to provide services. Transaction records and audit logs may be kept longer for legal compliance and security purposes. Tile transaction history is preserved indefinitely as part of the platform's public record. Blockchain data is permanent by design.

9. Children's Privacy

WAR4.WORLD is not intended for users under 18 years of age. We do not knowingly collect information from minors. If you are under 18, do not use this platform.

10. Future Compliance

As the platform grows, we may implement additional identity verification (KYC/AML) procedures as required by applicable regulations. Users will be notified of any such requirements in advance.

11. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes via email or platform notification.

12. Contact Us

For privacy-related questions, contact privacy@war4.world.