KNeoPrivacy

Privacy Policy

Last updated: March 24, 2026

1. Who we are

KNeo is a self-custodial digital wallet software, published by SECRETLINX, a company registered in France under SIREN 923 425 961. KNeo is not a financial institution or financial services provider. We do not collect personal data for commercial purposes.

This Policy describes how KNeo software handles information when you use it. SECRETLINX (SIREN 923 425 961) is the entity responsible for this software and acts as data controller for the limited information it handles.

2. Core principle

KNeo is designed to operate with the minimum data possible. The architecture is self-custodial: your private keys, Recovery Phrase, and digital assets remain exclusively on your device. We do not have access to them and we do not want access.

If you opt into encrypted backup (optional), your email is collected for OTP verification. Your Recovery Phrase is encrypted on your device with a password only you know (AES-256-GCM), and the encrypted blob is stored on the server. KNeo cannot decrypt your backup — only you have the password.

3. What we do NOT collect

To be clear, KNeo never collects:

  • Private keys, Recovery Phrases, or wallet passwords (even with backup enabled — the backup is encrypted on your device before leaving);
  • Identity documents, social security numbers, selfies, or any KYC data;
  • Your wallet balances or transaction history;
  • Precise location (GPS);
  • Contacts, photos, files, or data from other apps;
  • Biometric data (fingerprint and Face ID are processed locally by your device — never transmitted).

4. What we collect

The software may collect or process the following data, depending on the features you use:

4.1 Waitlist

If you sign up for the waitlist, we collect your email address and, optionally, your name. This data is stored in Supabase (hosted database) and used exclusively to communicate project updates.

4.2 Encrypted backup (optional)

If you opt into encrypted backup, we collect your email address for OTP verification. Your Recovery Phrase is encrypted locally on your device (AES-256-GCM with a password you set) before being sent to the server. The stored blob is unreadable without your password — KNeo cannot access your keys.

4.3 Local fiat access (licensed providers)

To access local fiat rails you may optionally complete a KYC verification with a licensed provider operating in your country. KYC data collection (identity, documents) is performed directly by that provider, under its own privacy policy, and the provider holds the applicable license in its market. KNeo does not collect, store, or have access to that data. Activating a provider is optional and at your own discretion.

4.4 Diagnostic logs

To investigate failures in critical operations (blockchain transactions, escrow interactions), the software may send technical logs to a diagnostic server. These logs contain:

  • Operation identifiers (listing IDs, trade IDs);
  • Transaction signatures (public blockchain data);
  • Technical error messages;
  • The step at which the operation failed.

Logs never contain private keys, passwords, balances, or personally identifiable data.

4.5 Web browsing data

The web interfaces (website and PWA) are hosted on Vercel, which may automatically collect IP address, browser type, and access data per its own privacy policy. KNeo does not use tracking cookies, conversion pixels, or third-party analytics tools.

5. Blockchain data

Blockchain transactions are public and permanent. Wallet addresses, transferred amounts, and transaction signatures are recorded forever on decentralized networks — beyond the control of anyone, including KNeo contributors.

The software cannot erase, modify, or hide data already recorded on a blockchain. If you made a transaction, that transaction data is permanent. This is an inherent characteristic of blockchain networks, not a design choice.

6. Local storage (your device)

The software stores locally on your device:

  • Private keys and Recovery Phrase — in your device's secure storage (Keychain/SecureStore), encrypted by the device;
  • Preferences — language, selected network, interface settings;
  • Cache — temporary data to improve performance.

This data remains exclusively on your device. If you uninstall the app, all local data is erased. If you do not have a copy of your Recovery Phrase or an active encrypted backup, your assets will be permanently and irreversibly lost.

7. Data sharing

KNeo does not sell, rent, or trade user data. Data may be shared only in the following circumstances:

  • With infrastructure providers — Supabase (database), Vercel (hosting), Helius (Solana RPC node) process technical data necessary for operation;
  • With a licensed fiat provider — if you choose to activate local fiat access, your KYC data is submitted directly to the licensed provider under its own privacy policy, and is never stored by KNeo;
  • On the blockchain — transactions are public by nature.

We do not use data for advertising, profiling, or any purpose beyond the operation of the software.

8. Your rights

SECRETLINX (SIREN 923 425 961) acts as data controller. You may exercise the rights provided by data protection laws (LGPD, GDPR) by contacting support@kneoapp.com. In practice:

  • Access and portability — your assets and keys are on your device. You already have full access;
  • Deletion — if you signed up for the waitlist, you can request email removal at support@kneoapp.com. Blockchain data cannot be erased;
  • Minimization — the software already collects the minimum necessary by design;
  • Uninstall — uninstalling the app erases all local data. If you do not have a copy of your Recovery Phrase or an active encrypted backup, your assets will be permanently and irreversibly lost.

9. Security

The project contributors adopt reasonable security practices, including encryption in transit (HTTPS/TLS), secure storage of sensitive credentials, and code review. However, no system is infallible.

The escrow smart contract runs on the public Solana blockchain, where its on-chain transactions are publicly verifiable. Security vulnerabilities can be reported at support@kneoapp.com.

10. Minors

The software is not intended for anyone under 18 years of age. We do not intentionally collect data from minors. If you believe a minor has provided data through the software, please contact us so we can remove it.

11. Changes to this Policy

This Policy may be updated at any time. The current version will always be available on this page with the date of the last update. Continued use of the software after changes indicates acceptance of the updated Policy.

12. Contact

For privacy questions, data removal requests, or vulnerability reports: support@kneoapp.com

This channel is maintained by voluntary contributors. Responses are not guaranteed.