1. Scope and introduction
This Privacy Policy ("Policy") describes how Robeon Wallet ("Robeon," "we," "us," or "our") handles information in connection with robeon.com, the Robeon browser extension, the Robeon mobile application, developer documentation, support channels, and related services (collectively, the "Services").
Robeon provides self-custody wallet software for Robinhood Chain and compatible networks. We are not a custodian, broker, exchange, or money transmitter. This Policy applies to visitors, wallet users, and anyone who interacts with our Services.
2. Definitions
For purposes of this Policy, the following terms have the meanings set forth below.
- "Personal Data" means information that identifies, relates to, or could reasonably be linked with a particular individual or household.
- "Wallet Data" means recovery phrases, private keys, passwords, PINs, and other credentials used to access or control a wallet.
- "On-Chain Data" means publicly available blockchain information such as wallet addresses, transaction hashes, token balances, and smart contract interactions.
- "Device Data" means technical information about the device and software you use to access the Services.
- "Third-Party Services" means external providers we or you may use, including RPC nodes, indexers, analytics tools, swap aggregators, and dApps.
3. Information we do not collect
Robeon is designed so that the most sensitive wallet information never leaves your device and is never transmitted to us. We do not collect, store, or have access to:
- Recovery phrases, seed phrases, or mnemonic backups
- Private keys, key shares, or cryptographic signing material
- Wallet passwords, PINs, or biometric unlock templates
- Locally generated transaction signatures before broadcast
- Your complete portfolio or holdings linked to your identity on our servers
4. Local processing and on-device storage
Wallet creation, key derivation, encryption, transaction construction, and transaction signing occur locally on your device. Robeon stores encrypted wallet vault data, account labels, connected dApp permissions, and cached transaction history on your device to provide core functionality.
You are solely responsible for securing your device, operating system, browser profile, recovery phrase, and any backups you create. If you lose access to your recovery phrase or device, Robeon cannot restore your wallet.
5. Website and application data
When you visit our website or use our applications, we may automatically or voluntarily receive certain information, including:
- Pages viewed, navigation paths, referral URLs, and session duration
- Browser type, operating system, device model, language, and time zone
- Extension or app version, crash reports, and performance diagnostics you choose to submit
- IP address and approximate geographic region derived from network routing
- Information you provide through feedback forms, support requests, or surveys
6. Analytics and product improvement
We may use analytics tools to understand aggregate usage patterns, diagnose errors, and improve reliability and user experience. Analytics data is generally collected in pseudonymous or aggregated form and is not used to access your wallet or signing keys.
Where supported, you may limit analytics through browser privacy settings, extension permissions, or device-level controls. Disabling certain diagnostics may reduce our ability to troubleshoot issues you report.
8. Third-party services
Robeon relies on third-party infrastructure and integrations to operate the Services. These providers process data according to their own privacy policies and contractual terms. Categories of third parties may include:
- Cloud hosting and content delivery providers
- Analytics, error monitoring, and performance measurement vendors
- Customer support and communication tools
- Security and abuse-prevention services
9. RPC nodes, indexers, and price feeds
To display balances, transaction history, token metadata, gas estimates, and market prices, Robeon may query public or third-party RPC endpoints, blockchain indexers, and market data providers. When you use these features, your wallet address and requested on-chain data may be visible to those providers.
You may configure custom RPC endpoints in wallet settings where supported. Use of third-party endpoints is at your discretion and subject to those providers' policies.
10. Swaps, bridges, and DeFi integrations
When you initiate swaps, bridge transfers, staking deposits, or other DeFi interactions through Robeon, transaction data is broadcast to public blockchain networks and may be routed through third-party liquidity providers, aggregators, or smart contracts.
Robeon does not control how third-party protocols handle data. Quote requests, routing metadata, and transaction calldata may be processed by external services to fulfill your request.
11. Data retention
We retain information only as long as reasonably necessary for the purposes described in this Policy, unless a longer retention period is required or permitted by law.
- Support correspondence and voluntarily submitted diagnostics are retained for operational and dispute-resolution purposes
- Aggregated analytics may be retained in de-identified form for product analysis
- Wallet credentials and recovery phrases are never retained by Robeon
- Public on-chain data persists on blockchain networks independently of Robeon
12. Security measures
We implement administrative, technical, and organizational measures designed to protect information we process, including access controls, encryption in transit where applicable, and monitoring for unauthorized activity on our systems.
No method of transmission or storage is completely secure. You should maintain strong device security, keep software updated, and never share your recovery phrase with anyone: including Robeon support personnel.
13. International data transfers
Robeon may process information in countries other than your country of residence. Where required, we take steps designed to ensure appropriate safeguards for cross-border transfers consistent with applicable data protection laws.
By using the Services, you acknowledge that information may be transferred to and processed in jurisdictions that may have different data protection standards than your home jurisdiction.
14. Your privacy rights
Depending on your location, you may have rights regarding Personal Data we process, subject to applicable law and exceptions. These rights may include:
- Access to Personal Data we hold about you
- Correction of inaccurate or incomplete Personal Data
- Deletion of Personal Data, where applicable and technically feasible
- Restriction or objection to certain processing activities
- Data portability for information you provided in structured form
- Withdrawal of consent where processing is based on consent
- Lodge a complaint with a supervisory authority in your jurisdiction
15. California privacy notice
If you are a California resident, you may have additional rights under the California Consumer Privacy Act, as amended by the California Privacy Rights Act ("CCPA/CPRA"), including the right to know categories of Personal Data collected, the right to delete certain Personal Data, and the right to opt out of "sale" or "sharing" of Personal Data as defined under California law.
Robeon does not sell Personal Data for monetary consideration. We do not use or disclose sensitive personal information for purposes other than those permitted by applicable law. To exercise California privacy rights, contact us through the Feedback page at /feedback.
16. European Economic Area, United Kingdom, and Switzerland
Where the General Data Protection Regulation ("GDPR") or equivalent UK/Swiss laws apply, our legal bases for processing may include performance of a contract, legitimate interests in operating and improving the Services, compliance with legal obligations, and consent where required.
You may contact us to exercise GDPR-related rights. We will respond within timeframes required by applicable law.
17. Children's privacy
The Services are not directed to individuals under 18 years of age. We do not knowingly collect Personal Data from children. If you believe a child has provided Personal Data to us, please contact us through the Feedback page so we can take appropriate steps to delete such information.
18. Changes to this Policy
We may update this Privacy Policy from time to time to reflect changes in our Services, legal requirements, or data practices. Material changes will be posted on this page with an updated "Last updated" date. Your continued use of the Services after changes become effective constitutes acceptance of the revised Policy, except where applicable law requires additional notice or consent.
19. Contact us
Questions, requests, or concerns regarding this Privacy Policy or our data practices may be submitted through the Feedback page at /feedback. Please include sufficient detail for us to identify and respond to your inquiry.