1.Our principles
- Collect only what delivery needs. A buyer gives us an email. A seller gives us an email, a password and a payout address. That is the core of it.
- No trackers from Hidden. We load no tracking pixels, third-party analytics, ad networks, fingerprinting or session replay on the marketing site, the dashboard or, by default, on storefronts and checkout pages. A seller may optionally enable Google Analytics, Meta Pixel, Crisp or Tawk.to on their own storefront (including its checkout and account pages); when they do, that store's footer and Policies page list the active services, and those providers' privacy policies apply to what they collect. See Seller-enabled analytics and chat.
- No data for sale. We never sell, rent or trade personal data, and we never use buyer data to advertise anything.
- Short retention. We keep what receipts, delivery, dispute handling, fraud prevention and the law require, then delete or anonymise.
- Privacy-respecting, not anonymous. We verify sellers, keep audit logs and answer lawful requests. See the Terms.
2.What we store, and why
Sellers and team members
- Email, password hash (bcrypt), optional name, role and the time you signed up: to run your account.
- Store settings, products, files you upload, key pools, coupons, policies and branding: to run your store.
- Payout address, balance, withdrawal history and transaction hashes: to pay you and to keep accurate financial records.
- Security and audit logs (action, member, time, IP address): so you can see what happened in your account and store, and so we can investigate abuse.
- Notification preferences, Discord webhook URLs, Telegram chat IDs, webhook endpoints and API key hashes: only if you configure them.
- If you enable two-factor authentication: your authenticator secret and hashed recovery codes.
Buyers
- Email address: to send the receipt and order link, and to show you your orders.
- Order contents, amount, coin, payment track ID, payment status and delivered items: to deliver your purchase and to prove what was delivered if a dispute arises.
- IP address and derived country at checkout: for fraud prevention, sellers' blacklist rules and legal compliance. Not used for advertising.
- Answers to a seller's custom checkout fields: passed to that seller for fulfilment.
- Discord user ID, if you buy a Discord role: to grant and revoke the role.
- Support tickets and reviews you write.
- If you sign in on a storefront: a per-store session cookie, the one-time codes we email you (they expire in 10 minutes) and your store balance and top-up history.
Everyone
- Server logs (request path, status, timestamp, IP) kept briefly for security and reliability.
- A signed session cookie for signed-in sellers, a per-store session cookie for buyers who sign in on a storefront, and a small set of functional cookies. No advertising cookies. Cart contents live in your browser's local storage, not on our servers.
3.What we never do
- Load third-party tracking scripts, pixels or ad tags for our own purposes on any page. The only third-party scripts that can appear are the ones a seller switches on for their own storefront, and only on that storefront.
- Sell, rent or share personal data with advertisers or data brokers.
- Build cross-site profiles or fingerprint devices.
- Read your delivered files or credentials except where needed to deliver them, investigate a report or comply with the law.
- Ask buyers for a password, card number or government ID at checkout.
4.Seller-enabled analytics and chat
Hidden itself runs no analytics on storefronts. Sellers can, however, connect their own Google Analytics 4, Meta Pixel, Crisp or Tawk.to account from their dashboard. When a seller does this, that provider's script is loaded on every page of that seller's storefront, including its checkout and account pages, and it may receive your IP address, user agent and the pages you view. The seller is the controller for that data and the provider's own privacy policy applies; Hidden does not receive it.
Every storefront discloses which of these services are active in its footer and on its Policies page, so you can decide before you check out. Sellers agree in the Terms to obtain any consent their law requires.
5.Processors we rely on
To run the Service we share the minimum necessary data with a small number of providers acting on our instructions:
- Our crypto payment processor (payment processing): order amount, an order reference and the buyer's email for invoices; payout address and amount for withdrawals.
- Email delivery provider: recipient address and message content for receipts, verification codes and notifications.
- Hosting and storage providers: the infrastructure that runs Hidden and stores uploaded files, encrypted at rest.
- Discord and Telegram: only when a seller or buyer connects them.
Blockchain transactions are public by design; Hidden does not control what is visible on-chain.
6.What sellers see about buyers
Sellers see the email, order history, country, review, ticket messages and custom-field answers of buyers who purchased from their store, so they can deliver, support and refund. Sellers are independent controllers of that data and must use it only to fulfil and support orders. They may not export it for marketing without the buyer's consent or use it in ways that break the Terms.
7.Retention
- Orders and financial records: kept for as long as the law requires for accounting and dispute purposes, then deleted or anonymised.
- Delivered payloads (signed links, keys, text): retained with the order so buyers can retrieve them; sellers can trigger redelivery, and buyers can ask the seller to purge them after fulfilment.
- Webhook delivery logs: 7 to 90 days depending on plan.
- Server and security logs: a short rolling window, typically 30 days.
- Fraud logs and blacklist matches: 12 months.
- Deleted stores and closed accounts: personal data is deleted when the store is deleted or the account closure is confirmed, except records we must keep by law or for open disputes.
8.Your rights
Depending on where you live, you may have the right to access, correct, export, restrict or delete your personal data, to object to certain processing and to complain to a supervisory authority. Sellers can delete a store without orders from the dashboard at any time and can request an export of their orders and customers from support@sellhidden.com. Buyers can request a copy or deletion of their data by emailing support@sellhidden.com from the address used at checkout; where the request concerns a specific store, we will involve the seller. We answer within 30 days. Sellers can also delete their account themselves from Account settings; deletion is scheduled after a 14-day cooling-off period and can be cancelled from the same page until then.
9.Security
Passwords are hashed with bcrypt, sessions are signed and expire, and changing your password signs out every other session. Secrets such as API keys are stored hashed, uploads are served through signed short-lived links, webhooks are HMAC-signed and traffic is encrypted in transit. Sign-ins and sensitive changes are recorded in an audit log you can review. No system is perfectly secure; if we learn of a breach affecting you we will notify you without undue delay.
10.Children
The Service is not directed at children under 16, and we do not knowingly collect their data. If you believe a child has provided us with personal data, contact us and we will delete it.
11.International transfers
Our providers may process data in countries other than yours. Where required we rely on recognised safeguards such as standard contractual clauses and choose providers that commit to equivalent protection.
12.Changes to this policy
We will post updates here and, for material changes, notify sellers by email at least 14 days before they take effect. The effective date at the top of this page tells you which version applies.
13.Contact
- Privacy requests and questions: support@sellhidden.com
- Legal and law-enforcement requests: legal@sellhidden.com
- Abuse and content reports: sellhidden.com/report
Data controller: Hidden, the operator of sellhidden.com. Reach it at support@sellhidden.com.