Privacy Policy

Last Updated: May 21, 2026

1. Introduction

This Privacy Policy explains how Coinsnap and its affiliated services (“Coinsnap”, “we”, “our”, or “us”) collect, use, process, store, and protect personal data when you use our websites, applications, plugins, APIs, payment tools, and related services.

This Privacy Policy applies to:

  • the Coinsnap website at https://coinsnap.io
  • the Coinsnap Merchant Dashboard
  • the Coinsnap POS Wallet App for iOS and Android
  • Coinsnap WordPress plugins and e-commerce integrations
  • Coinsnap APIs and developer tools
  • referral and partner programs
  • customer support and communications
  • all related online services operated by Coinsnap

By using our services, you acknowledge this Privacy Policy.

2. Data Controller

Coinsnap

Operated by:

Onlineshop24 DOO

Ljubimira Ivkovica Suce 75

11453 Sopot (Ducina)

Serbia

Registration Number / Matični broj: 21579041

Tax ID / PIB: 111945856

D-U-N-S® Number: 679972520

Email: support@coinsnap.io

Website: https://coinsnap.io

3. Applicability of GDPR

Although Serbia is not a member of the European Union (EU) or the European Economic Area (EEA), Coinsnap voluntarily applies the principles of the General Data Protection Regulation (GDPR) for users located in the EEA wherever applicable.

4. Services Covered

This Privacy Policy applies to all Coinsnap services, including but not limited to:

  • Coinsnap website
  • Coinsnap Merchant Dashboard
  • Coinsnap POS Wallet App
  • Bitcoin and Lightning payment processing tools
  • WordPress plugins
  • WooCommerce integrations
  • Shopify integrations
  • BTCPay integrations
  • APIs and webhooks
  • referral and affiliate programs
  • support services
  • merchant onboarding
  • settlement and payout integrations

5. Principles of Coinsnap

Coinsnap is designed around the principles of:

  • privacy
  • self-custody
  • data minimization
  • security
  • transparency

Coinsnap generally operates as a self-custodial Bitcoin and Lightning payment infrastructure provider.

Coinsnap does not hold, own, or control users’ private wallet keys or Bitcoin funds.

All cryptographic keys used within the Coinsnap POS Wallet App are generated and stored locally on the user’s device.

6. Information We Collect

6.1 Information You Provide

We may collect:

  • name
  • company name
  • business address
  • VAT ID
  • email address
  • phone number
  • billing information
  • support requests
  • communication content
  • account credentials

6.2 Merchant Information

For merchants using Coinsnap services:

  • store information
  • website URLs
  • API credentials
  • wallet configuration data
  • payout preferences
  • settlement preferences
  • plugin configuration settings

6.3 Bitcoin and Lightning Related Data

To operate payment services, we may process:

  • Bitcoin wallet addresses
  • Lightning invoices
  • payment hashes
  • transaction IDs
  • payment status information
  • invoice amounts
  • exchange rate information
  • payment metadata

Important Notice

Coinsnap does not collect or store:

  • Bitcoin private keys
  • Lightning seed phrases
  • wallet recovery phrases

unless explicitly stated for a specific optional backup or recovery feature.

6.4 Technical Information

We may automatically collect:

  • IP addresses
  • browser type
  • operating system
  • app version
  • device identifiers
  • language settings
  • referral URLs
  • crash reports
  • access timestamps
  • security logs

6.5 App-Specific Information

For the Coinsnap POS Wallet App, we may process:

  • mobile device information
  • app diagnostics
  • push notification tokens
  • app performance data
  • security event logs

Depending on device settings and permissions, the app may also access:

  • camera access for QR code scanning
  • notification permissions
  • encrypted local storage

Coinsnap does not access unrelated personal content stored on users’ devices.

7. Non-Custodial Wallet Notice

Coinsnap services and the Coinsnap POS Wallet App are designed as self-custodial systems.

This means:

  • users control their own wallets and private keys
  • Coinsnap cannot access users’ Bitcoin funds
  • Coinsnap cannot recover lost wallets or seed phrases
  • Coinsnap cannot reverse blockchain transactions

Users are solely responsible for:

  • wallet backups
  • seed phrase storage
  • device security
  • transaction verification

8. Blockchain Transparency Notice

Bitcoin and Lightning Network transactions may be publicly visible on distributed blockchain infrastructure.

Blockchain data may include:

  • wallet addresses
  • transaction amounts
  • timestamps
  • transaction hashes

Coinsnap cannot alter, delete, or anonymize public blockchain records.

Users should understand that blockchain transactions may be traceable by third parties.

9. How We Use Information

We use personal data to:

  • provide Coinsnap services
  • process Bitcoin and Lightning payments
  • operate merchant infrastructure
  • authenticate users
  • manage accounts
  • provide customer support
  • improve platform functionality
  • maintain security
  • prevent fraud and abuse
  • comply with legal obligations
  • send service-related communications
  • process referral and affiliate programs
  • manage merchant onboarding
  • generate invoices and accounting records

10. Legal Basis for Processing (GDPR)

We process personal data based on:

Contractual Necessity

Processing required to provide our services.

Legitimate Interests

Including:

  • platform security
  • fraud prevention
  • service optimization
  • customer support
  • infrastructure monitoring

Consent

For example:

  • analytics
  • newsletters
  • marketing communications
  • non-essential cookies

Legal Obligations

Including:

  • accounting obligations
  • anti-fraud requirements
  • legal compliance requests

11. Cookies and Tracking Technologies

Coinsnap uses cookies and similar technologies for:

  • website functionality
  • login sessions
  • security
  • analytics
  • language settings
  • fraud prevention

Types of Cookies

Essential Cookies

Required for platform operation.

Functional Cookies

Remember user preferences.

Analytics Cookies

Help us improve services and understand usage patterns.

Users may manage cookies through browser settings or through our cookie consent banner.

12. Analytics and SEO Services

Google Analytics

Coinsnap uses Google Analytics, a web analytics service provided by Google Ireland Limited.

Google Analytics helps us understand website usage, visitor behavior, and service performance.

Google Analytics may collect:

  • IP addresses
  • browser information
  • device information
  • pages visited
  • session duration
  • interactions with the website

Where required by law, Google Analytics is only activated after obtaining user consent through our cookie consent banner.

Google may process information on servers located outside the European Union, including in the United States.

For more information:

https://policies.google.com/privacy

Users may opt out using:

https://tools.google.com/dlpage/gaoptout

Rank Math SEO

Coinsnap uses Rank Math Pro for search engine optimization (SEO) functionality.

Rank Math is used solely for website optimization and metadata management and does not process sensitive payment or wallet information.

13. Third-Party Service Providers

Coinsnap may use third-party providers for:

  • Lightning infrastructure
  • payment synchronization
  • blockchain information services
  • settlement services
  • cloud infrastructure
  • analytics
  • app distribution

The following providers may process limited personal or technical data as part of their services:

Breez SDK (Spark)

Provider: Breez Technology Ltd

Website: https://breez.technology

The Breez SDK provides self-custodial Lightning wallet infrastructure within the Coinsnap POS Wallet App.

Users remain in full control of their Bitcoin and private keys at all times.

BTCPay Server

Provider: BTCPay Server Open Source Project

Website: https://btcpayserver.org

BTCPay Server may be used for Bitcoin invoice generation and payment processing infrastructure.

mempool.space

Provider: Mempool Open Source Project

Website: https://mempool.space

Coinsnap may use public blockchain API endpoints provided by mempool.space for:

  • fee estimation
  • transaction confirmation status
  • blockchain synchronization

No sensitive wallet credentials or private keys are shared.

Google Analytics

Provider: Google Ireland Limited

Website: https://analytics.google.com

Used for website analytics and service improvement.

Apple App Store and Google Play

The Coinsnap POS Wallet App may be distributed through Apple App Store and Google Play Store.

These platform providers may independently collect device and usage information according to their own privacy policies.

14. Settlement and Financial Service Providers

Coinsnap itself does not provide:

  • fiat exchange services
  • brokerage services
  • banking services
  • custodial wallet services

Users who wish to convert Bitcoin into fiat currency or receive payouts to bank accounts may use independent third-party settlement providers.

DFX Swiss AG

Provider: DFX Swiss AG

Website: https://dfx.swiss

DFX independently provides:

  • Bitcoin settlement services
  • fiat conversion
  • banking payout services
  • regulatory compliance procedures

DFX may independently process personal data required for:

  • KYC/KYB verification
  • AML compliance
  • settlement processing
  • banking compliance

Coinsnap does not control the privacy practices of independent financial providers.

15. Referral and Partner Program

Coinsnap operates a referral and partner program.

Each merchant may receive a unique referral code.

When a new merchant registers using a referral code:

  • Coinsnap records the referral relationship
  • referral commissions may be credited
  • the referring merchant does not receive personal details about the referred merchant
  • only commission-related information is shared

Referral tracking may use cookies or referral identifiers.

16. International Data Transfers

Personal data may be transferred to countries outside the European Economic Area (EEA), including Serbia and the United States.

Where required, Coinsnap uses appropriate safeguards, including:

  • Standard Contractual Clauses (SCCs)
  • adequacy decisions
  • contractual data protection agreements

17. Data Retention

Coinsnap retains personal data only as long as necessary for operational, contractual, and legal purposes.

Typical retention periods include:

  • Support Requests: 24 months
  • Invoices and accounting records: 10 years
  • Server Logs: 30 days
  • Analytics Data: 14 months

Longer retention may apply where required by law or for legal defense purposes.

18. Security Measures

Coinsnap implements technical and organizational measures including:

  • TLS/HTTPS encryption
  • encrypted storage
  • access controls
  • firewall protection
  • infrastructure monitoring
  • authentication controls
  • backup procedures
  • least-privilege access policies

No system can guarantee absolute security.

Users are responsible for securing their own devices and credentials.

19. Security Incidents and Legal Requests

Coinsnap may disclose personal data where required by:

  • law
  • court order
  • regulatory obligation
  • lawful government request

In the event of a security incident or personal data breach, Coinsnap may notify affected users and relevant authorities where required by applicable law.

20. Your Rights Under GDPR

Depending on applicable law, users may have the right to:

  • access personal data
  • correct inaccurate data
  • request deletion
  • restrict processing
  • object to processing
  • withdraw consent
  • request data portability
  • lodge complaints with supervisory authorities

Requests may be sent to:

support@coinsnap.io

21. Marketing Communications

Users may receive service-related emails necessary for platform operation.

Marketing communications are only sent where permitted by law or based on consent.

Users may unsubscribe at any time.

22. Children’s Privacy

Coinsnap services are not intended for individuals under 18 years of age.

We do not knowingly collect personal data from children.

23. Self-Hosted and Open Source Software

Some Coinsnap plugins and integrations may be installed and operated on infrastructure controlled by the merchant.

In self-hosted scenarios:

  • merchants control their own data processing
  • Coinsnap may not have access to transaction data
  • merchants remain responsible for their own GDPR compliance

24. Changes to This Privacy Policy

We may update this Privacy Policy from time to time.

Updated versions will be published at:

Privacy policy

Continued use of the services after updates constitutes acknowledgment of the revised policy.

25. Contact

For privacy-related inquiries, contact:

Coinsnap / Onlineshop24 DOO

Ljubimira Ivkovica Suce 75

11453 Sopot (Ducina)

Serbia

Email: support@coinsnap.io

Website: https://coinsnap.io

26. Supervisory Authority

Users located in the European Union may contact their local data protection authority if they believe their rights have been violated.