Introducing the Pocketsflow startup program: Win $100K if you are a startupWin $100K if you are a startup

LegalLast updated

Pocketsflow Wallet Privacy Policy

What the Pocketsflow Wallet browser extension keeps on your device, what reaches our servers, and what never does.

This policy covers the Pocketsflow Wallet browser extension (“the Wallet”), made by Pocketsflow, Inc. The Pocketsflow Privacy Policy covers the rest of Pocketsflow.

1. Summary

The Wallet is self-custody. Your recovery phrase, private keys and password are created and kept on your device and never sent to Pocketsflow or anyone else in a form anyone but you can read. (With email backup, your phrase is stored with us encrypted by your passkey.) We can’t see them, recover them for you or move your funds. To show balances and send transactions, the Wallet asks our servers for public blockchain data using your public addresses.

2. What stays on your device

  • Your recovery phrase, encrypted with your password (scrypt and AES-GCM) in the extension’s local storage. While the Wallet is unlocked, it is also held in the browser’s session memory, which is cleared when you lock the Wallet, when it locks itself after the time you chose, and when the browser closes.
  • Your settings: account names, the active account, the auto-lock time.
  • Your public addresses, so websites you connected can see them even while the Wallet is locked.
  • Websites you connected: their address, title and icon link, when you connected, and which network each one uses.

3. What reaches our servers

The Wallet sends these to Pocketsflow’s servers:

  • Your public addresses, to look up balances, prices and activity.
  • Transactions you signed, to broadcast them to the network, and unsigned transactions, to estimate fees or check whether they would succeed before you approve them.
  • Swap requests: the tokens, the amount and your address, to get a quote and the transaction to sign.
  • Read-only requests from websites you connected, forwarded to the network on their behalf.
  • If you use email backup: your email address (to send you sign-in codes and find your backup) and your recovery phrase encrypted on your device with your passkey. We can’t decrypt it: the key never leaves your passkey, and we never receive your passkey, password or phrase.

Like any website, our servers see your IP address. We use it to limit how many requests one address can make, and it may appear in short-lived operational logs. Public addresses and transactions are public on their blockchains by nature.

4. Service providers

Our servers pass requests on to these providers. They receive the request, not your identity; they may see our servers’ IP address, not yours.

  • Blockchain node providers (such as Alchemy): for balances, activity, fees, simulation and broadcasting.
  • Jupiter (Solana) and LI.FI (EVM networks): swap quotes and swap transactions, with your address.
  • CoinGecko: token prices. It receives only which tokens, never an address.
  • Amazon Web Services (SES): delivers the codes we email for email backup.

5. Websites you connect

A website sees your public address only after you approve a connection. It can ask you to sign messages or transactions; nothing is signed without your approval in the Wallet’s own window. You can disconnect a website at any time in Settings. Each website’s own privacy policy covers what it does with your address.

6. What we don’t do

  • We don’t collect your recovery phrase, keys or password in any form we can read.
  • We don’t track the websites you visit. The Wallet runs on web pages only so that websites can find it; it doesn’t read or record their content.
  • We don’t use analytics, advertising or tracking in the Wallet.
  • We don’t sell or share your data for advertising.

7. Retention and deletion

Removing the Wallet (Settings, or uninstalling the extension) deletes everything it stored on your device, including the encrypted phrase: keep your recovery phrase somewhere safe first. Our servers don’t keep an account for the Wallet; request logs are kept only as long as needed to run and secure the service. An email backup stays until you remove it (Settings → Email backup, after confirming your email); sign-in codes expire after 10 minutes.

8. Changes and contact

We’ll update the date above when this policy changes. Questions: contact us.