PRIVACY
Only what is necessary should be recorded.
Application data
The whitelist stores the connected public X identity, automatically verified task evidence, application state and one submitted EVM address. X access and refresh tokens are encrypted at rest, remain server-side and are never included in public application cards.
Wallet record
The EVM address is submitted as text without connecting or signing with a wallet. This records the selected destination but does not prove ownership. One address may be assigned to only one connected X identity.
Public records
A shared application card may display the public X profile image, display name, handle, public record identifier and application state. It will not display wallet addresses, private contact information, OAuth tokens or internal review notes.
Control
Applicants can disconnect their X session. Final retention and deletion procedures and contact details will be published before applications open.