Trover
trover
Trover / legal

Privacy policy

Last updated: July 19, 2026

1. Scope

This policy explains how Trover processes information when you use trover.tech, connect through Privy, link an X account or wallet, send commands to the agent, or interact with Robinhood Chain services. Public blockchain records are outside our control and generally cannot be deleted.

2. Information we process

Never send a seed phrase, private key, password, or wallet recovery secret. Trover does not need them.

  • Privy user ID, session identifiers, linked-account type, X user ID, and username.
  • Public wallet addresses, wallet type, delegation status, chain activity, transaction hashes, receipts, balances, and settings you choose.
  • Public X mentions, replies, quote posts, attached media, and the minimum DM content needed to interpret commands.
  • Device, request, security, audit, and diagnostic data such as timestamps, IP-derived abuse signals, error codes, and idempotency keys.

3. Cookies and authentication

Privy may set first-party HttpOnly cookies on the configured base domain to maintain your session. Trover verifies access tokens on the server before linking identities, wallets, or changing agent settings. Essential authentication and security cookies are required for signed-in features.

4. How information is used

We use data to authenticate you, associate your X account with the wallet you select, interpret and execute requested actions, prevent duplicate transactions, show account settings, reconcile uncertain transactions, detect abuse, comply with law, and improve reliability.

5. Optional analytics

With your consent, Trover loads Google Analytics using measurement ID G-KFXD307XB2. It may receive page views, browser/device information, and approximate network-derived location. Analytics stays disabled until you accept. Your choice is stored in a first-party consent cookie and can be changed by clearing site cookies.

6. Providers and public destinations

Data may be processed by Privy, X, hosting and database providers, blockchain RPC and explorer services, OpenAI, configured DEX and bridge services, Pons, IPFS providers, and security or observability vendors. Onchain transactions, wallet addresses, deployments, and transaction data are public. Uploaded launch artwork may become permanently available on public IPFS.

7. Retention

Raw X and provider payloads are scheduled for deletion after 30 days unless a shorter period is configured or retention is required for security, disputes, or law. Normalized transaction evidence, settings, decisions, and audit records may be retained for operational integrity. Unlinking an account cannot erase public blockchain records.

8. Your choices

You can sign out, disable X actions or individual channels, unlink accounts, reject optional analytics, and contact the official support channel about access or deletion rights where applicable. Privy and X provide their own privacy controls.

9. Security and international processing

We use access-token verification, HttpOnly cookies, scoped credentials, encrypted secrets, audit logs, and transaction idempotency. No service is perfectly secure. Providers may process information in other countries subject to their terms and safeguards.

10. Children and changes

Trover is not intended for children or anyone unable to enter a binding agreement. We may update this policy as integrations and legal requirements change; the updated date will appear here.