Platform Privacy Policy
Effective Date: August 2026 ยท AdMyChat Network (admychat.com)
๐ The Zero-Code Privacy Guarantee
AdMyChat is engineered specifically for software engineers and extension creators. Our developer tools and browser rails never read, inspect, store, or transmit your code, prompt text, file names, or repository contents. Telemetry is strictly limited to anonymous, periodic active-session heartbeats.
1. Information We Collect
We strictly apply data minimization principles, collecting only what is essential for platform operation and payout distribution:
- Account Identification: Email address provided during OAuth login (Google/GitHub).
- Active Session Signals: Periodic 5-second heartbeats indicating that a supported developer surface is actively open, along with campaign impression counters. No code or workspace text is ever transmitted.
- Payout Destinations: Developer payout destination email (e.g. PayPal address or Stripe recipient) for cash-out fulfillment.
- Security & Abuse Prevention: Hashed machine-scoped API keys (SHA-256) and network verification indicators (residential vs. automated datacenter ranges) to prevent click-fraud and Sybil attacks.
- Coarse Geolocation: When an account is created, we derive a two-letter country code solely to understand international reach and comply with jurisdictional tax/privacy regulations. We do not track precision GPS, street addresses, or active travel history.
2. Purpose, Lawful Processing & Automated Anti-Cheat Gates
Personal data is processed exclusively for the following legitimate purposes:
- Calculating developer earnings ($0.000100 / 100 ยต$ per 5s tick) and disbursing automated cash payouts.
- Detecting automated abuse, click-farms, and artificial activity.
- Providing aggregated, anonymized campaign reach analytics to platform sponsors.
- Maintaining regulatory financial and tax ledgers under statutory legal requirements.
๐ก๏ธ Automated Fraud Detection & Anti-Cheat Logic (GDPR Article 22)
To protect advertiser budgets from automated bots, our telemetry ingestion pipeline employs automated rule-based filters:
- Datacenter IP Filtering: Autonomous heartbeats originating from known cloud hosting/datacenter ranges (e.g. AWS, GCP, DigitalOcean, Hetzner) are automatically blocked (HTTP 403) from earning.
- Atomic Frequency Limiting: Incoming ticks spaced under 4.8 seconds apart are rejected (HTTP 429) to prevent artificial speed-up scripts.
- Daily Activity Tapering: Daily tick totals are capped at standard daily limits with progressive rate tapering to disincentivize 24/7 automated farm scripts.
3. Third-Party Disclosures & Subprocessors
We never sell, rent, or monetize your personal data. Data is shared strictly with vetted operational subprocessors bound by Data Processing Agreements (DPAs) and encryption standards:
- Cloud Infrastructure: Hardened EU Cloud Infrastructure & Global Edge Network Compute.
- Payment Gateways: Global payment and merchant processors (payout disbursements and advertiser billing).
- Transactional Messaging: Secure transactional delivery services (security codes and payout notifications).
4. European & International Compliance (GDPR & UK GDPR)
For residents of the European Economic Area (EEA), United Kingdom, and jurisdictions with equivalent data privacy regimes:
We provide full transparency under Articles 13 & 14 of the GDPR, comprehensive data subject rights (Articles 15โ22), and clear legal bases for all processing activities. For complete legal disclosures, retention schedules, and international transfer mechanisms (including EU-U.S. Data Privacy Framework and Standard Contractual Clauses), please review our dedicated compliance policy:
โ View the Full GDPR & UK GDPR Compliance Statement
5. Data Retention & Human Review Request Protocol
You maintain full sovereignty over your data and rights under GDPR Article 22(3):
- Right to Request Human Review: If your developer account or a pending payout is flagged, held, or denied by automated anti-cheat filters, you have the express right to obtain human intervention from an administrator, express your point of view, and contest the automated finding.
- Data Rights Execution: To request account data access, export (JSON/CSV), rectification, or permanent erasure, submit a verified request to our compliance desk:
๐ง [email protected] ยท Data Protection & Appeals Desk