Skip to content
NyxGo

Privacy Policy

Last updated

This Privacy Policy explains how NyxGo (“NyxGo”, “we”, “us” or “our”) collects, uses, shares and keeps personal data when you use the NyxGo website, trading interface and trader community (together, the “Interface”). For the purposes of applicable data protection laws, NyxGo is the controller of this data. NyxGo is built to work with very little personal data: you sign in with a crypto wallet, not with a name, email address or password. Your activity on the exchange protocol NyxGo connects to is public by nature, and some of what you do on NyxGo is public too, so please read Section 5 carefully. If you do not agree with this policy, do not use the Interface.

1. Contact

Questions and requests about your personal data: [email protected]. You can also download your data and delete your account yourself, in Settings (Section 10).

2. The short version

  • You sign in with your wallet, and your wallet address identifies your NyxGo account. We do not ask for your name, email address or phone number.
  • Other traders never see your wallet address on NyxGo, and nobody can look up a NyxGo profile by wallet address.
  • Your activity on the decentralized exchange protocol NyxGo connects to (the “Exchange Protocol”) is public: anyone who knows your wallet address can see your balances, positions and trade history there. NyxGo cannot change that.
  • On NyxGo, your profile and your community posts are public. Your live account (balance and positions) is shown only to you. Your trading performance and a place on the leaderboard are private unless you choose to share them in Settings.
  • Your trading key is created and stored in your browser. It is never sent to our servers.
  • If you use Agents, our servers hold a separate, encrypted Agents key that cannot withdraw or transfer your funds, and use it to place orders on your behalf within the limits you sign. We store those limits and your Agents’ settings, orders and activity.
  • If you use Moon AI, the AI assistant in the Interface, we process your questions, the page and market you are viewing and a rounded snapshot of your account to answer them. We remove wallet addresses from your messages, and send them only to AI model providers that neither store them nor use them to train models. We keep your conversations until you delete them, and delete them automatically 90 days after you last use them.
  • If you buy AI credits for Moon AI, you pay with a USDC transfer from your account on the Exchange Protocol, which is public there with your wallet address, like any transfer. We keep a record of each purchase with your account, and keep the paying wallet address only until the payment is confirmed.
  • We record your IP address and browser details when you sign in, for security, and delete them 7 days later.
  • You can download your data, or permanently delete your account, at any time in Settings.
  • NyxGo’s sites and apps use no analytics, advertising trackers or third-party scripts, and we do not sell your personal data.

3. Personal data we collect

3.1 Wallet and account information

When you sign in, you sign a one-time message with your wallet (“Sign-In with Ethereum”). We check the signature to confirm you control the wallet address, then create or update your account. Your account record contains your wallet address, the date you joined, when you were last active, your privacy choices (whether your trading performance is shown on your profile and whether you appear on the leaderboard), and your account status (active, suspended or banned), together with any reason a moderator recorded for a status change. Our community service (posts, comments, follows and notifications) does not store your wallet address.

3.2 Profile information you choose to add

You can add a handle, display name and bio. All of these are optional and public. Your avatar is generated automatically for your account. If you add neither a handle nor a display name, other traders see a generic name such as “Trader 3F9A”, never your wallet address.

3.3 Session and device information

Each time you sign in, we create a session and record your IP address, your browser’s user-agent string, and when the session was created, last used, expires and was ended. We delete the IP address and user-agent 7 days after you sign in. The session cookie contains a random token; we store only a cryptographic hash of it, not the token itself.

3.4 Trading and transfer data

NyxGo never holds your funds. Orders you place yourself are sent by your browser directly to the Exchange Protocol, and your browser reads your positions, orders and balances directly from it. If you use Agents, our servers place orders on your behalf, within the limits you sign, as described in Section 3.5. Deposits and withdrawals made from the Interface are signed in your own wallet and sent from it, and they are public on the blockchains involved. Before a deposit, your browser asks Circle’s public API for the current transfer fee; that request contains no personal data. To show the progress of a deposit or withdrawal, your browser keeps a short record of it (amount, status and transaction hash) in local storage on your device.

To show you your trading performance, to show it on your profile and rank you on the leaderboard if you choose to share it (Section 5), and for our internal reporting, our servers copy the fills (executed trades) of your wallet address from the Exchange Protocol’s public data, starting from your first sign-in, and refresh them while you have been active on NyxGo within the last 24 hours. This includes fills on your account even when the order was not placed through NyxGo. For each fill we store the market, side, price, size, direction, realised profit or loss, trading fee and fee token, any NyxGo platform fee, the order ID, the transaction hash, the time, whether the order took liquidity, and whether the fill was a liquidation.

For risk monitoring, our servers also keep a snapshot of your account from the Exchange Protocol: account value, margin used, maintenance margin, withdrawable balance and your open positions (market, size, entry price, value, unrealised profit or loss, liquidation price and leverage). We refresh it about once a minute while you have been active on NyxGo within the last 24 hours or have open positions.

3.5 Agents

If you use Agents (automated trading tools described in our Terms of Use), our servers store and process the following to run them:

  • The Agents key. Our signer creates the Agents key, a separate API wallet that you approve on the Exchange Protocol, and stores its private key encrypted (AES-256-GCM). The encrypted key is deleted as soon as the key is revoked, expires or is replaced, or your account is suspended, banned or deleted. We also keep a record of each Agents key: its public address, when you requested and approved it, until when it is valid, and its status (for example active, expired, revoked or replaced) with the reason for any change.
  • Your Agents. For each Agent: its type, market and settings; the limits you signed (the signed message) and your wallet’s signature; its status, including the reason for any pause; and its progress, such as the amount spent and the number of runs.
  • Orders and activity. Each run, and each order an Agent places, modifies or cancels, including its market, side, size, price and type, its status, the Exchange Protocol’s order ID, the size and average price filled, and the trading fee and any NyxGo platform fee. We also keep each Agent’s activity feed (for example, that an order was placed or filled, or that the Agent was paused and why), and our signer keeps its own record of every order it signs, which it uses to enforce your limits.
  • Account status. A copy of your wallet address and account status, so that your Agents stop if your account is restricted, and whether Agents have been disabled on your account, by which administrator and why.

To run your Agents, our servers also read your positions, open orders and fills from the Exchange Protocol.

3.6 Moon AI

If you use Moon AI, the AI assistant in the Interface described in our Terms of Use, we process the following to answer your questions and to provide any AI credits you buy:

  • Your conversations. The questions you ask and Moon AI’s answers, including any order drafts it shows you and a short description of what it looked up (for example, which market or chart it checked), and when each message was sent.
  • Context sent with each question. The page and market you are viewing and, while your wallet is connected, a snapshot of your positions, open orders, margin and account value as the Interface shows them to you, with its figures rounded. We use this snapshot to answer that question and do not store it.
  • Public data Moon AI reads. Market data, and public community posts, sentiment and trade calls about the market you ask about.
  • Usage records. How many questions you asked and how much processing they needed each day, to apply your free daily questions and your AI credits and keep the service within its limits, and, for a question Moon AI declined, the category of the refusal (for example, off-topic, or an attempt to misuse Moon AI).
  • AI credit purchases. If you buy AI credits (described in our Terms of Use), a record of each purchase: the amount paid, the date, the number of credits bought and how many remain. You pay with a USDC transfer from your account on the Exchange Protocol to NyxGo, which you sign with your main wallet and our servers submit to the Exchange Protocol. We keep the wallet address that paid only until the Exchange Protocol confirms the payment. The transfer itself is recorded on the Exchange Protocol, and is public there (Section 5).

Before a question leaves your browser, and again on our servers, Moon AI checks it for a wallet recovery phrase or private key; a question that contains one is not sent to anyone or stored. We also remove any wallet address from your messages before they are sent to an AI model provider or stored. Please do not include other sensitive personal data in your questions.

3.7 Community activity

If you use the community, we store your posts (including the tickers mentioned, any bullish or bearish tag and any trade call, with the entry price and the side of your position in that market when you posted it, as described in Section 5) and comments; the posts you like and the traders you follow; reports you submit and reports others submit about you or your content (the target, a reason and any details); and your notifications (for example, that someone followed you, liked your post or commented on it, with a short excerpt of the comment) and whether you have read them.

3.8 Moderation and administration records

When our administrators act on content or accounts, including pausing an Agent or disabling Agents on an account, we record the action, its target, any reason given and which administrator took it. We also log staff access to personal and trading data. These audit logs can include IP addresses. Staff may also add internal notes and tags to an account.

3.9 Technical logs

Our APIs log basic request information (such as the request method, path, response status and duration) to run and troubleshoot the Interface. Our web servers and hosting infrastructure keep standard access logs, which can include your IP address, user-agent, the page requested and the time. To prevent abuse, we use your account ID or IP address to apply rate limits, and our realtime service uses your IP address to limit connections from one address; these counters are held in memory only.

3.10 Communications

If you contact us, we keep your message, your email address and any personal data you include, so we can respond.

3.11 What we do not collect

We do not collect your name, phone number, government ID or payment card details. We never receive your wallet’s recovery phrase or private key, or your NyxGo trading key. The Agents key is not collected from you: our signer creates and holds it, as described in Section 3.5. NyxGo’s sites and apps use no analytics, advertising trackers or third-party scripts.

Purpose Legal basis
Signing you in, keeping your session secure and operating the Interface, including showing your account on the Exchange Protocol and tracking your transfers Performance of our contract with you (our Terms of Use)
Running the Agents you set up: holding the Agents key, checking and placing orders within the limits you sign, and showing their orders and activity Performance of our contract with you (our Terms of Use)
Answering your questions in Moon AI, keeping your conversations so you can return to them, applying its free daily allowance and preventing its misuse Performance of our contract with you, and our legitimate interest in keeping Moon AI safe, accurate and within its limits
Selling you AI credits: submitting the transfer you sign, confirming your payment, adding your credits and applying them to your questions Performance of our contract with you
Keeping records of AI credit purchases for accounting Compliance with legal obligations, and our legitimate interest in keeping accurate accounts
Running community features and public profiles, showing you your performance statistics, and showing them on your profile and ranking you on the leaderboard when you choose to share them Performance of our contract with you, and our legitimate interest in operating a trader community
Reviewing reports, moderating content, and suspending or banning accounts that break our Terms Our legitimate interest in keeping the community safe, and performance of our contract
Detecting and preventing fraud, abuse, market manipulation and security incidents, logging staff access to personal data, and keeping the Interface stable Our legitimate interest in protecting the Interface, our users and others
Identifying whether a user is likely to be a Restricted Person under our Terms, and meeting sanctions and other legal requirements Compliance with legal obligations, and our legitimate interest in enforcing our Terms
Internal reporting on trading volume, platform fees and account risk, troubleshooting and improving the Interface, including using aggregated or de-identified data Our legitimate interest in running and improving the Interface
Responding to your messages and requests, including giving you a copy of your data and deleting your account Performance of our contract, or steps you ask us to take, and compliance with legal obligations
Complying with the law, responding to lawful requests, and establishing, exercising or defending legal claims Compliance with legal obligations, and our legitimate interests

Where the law requires your consent for a particular use, we will ask for it, and you can withdraw it at any time without affecting earlier processing.

5. What is public

Please assume the following can be seen by anyone, including people who are not signed in:

  • Blockchain and Exchange Protocol data. Your activity on the Exchange Protocol (balances, positions, orders, trades and transfers) is public on the Exchange Protocol and on the blockchains involved, independently of NyxGo: anyone who knows your wallet address can see it there. NyxGo cannot change this. This includes a payment for AI credits: like any transfer, it is recorded on the Exchange Protocol’s public ledger with your wallet address, and shows that your wallet paid NyxGo.
  • Your profile. Your display name and handle (or, if you have neither, a generic name such as “Trader 3F9A”), bio, avatar, join date, and follower, following and post counts. Your profile never shows your wallet address, and nobody can look up a NyxGo profile by wallet address.
  • Your performance, if you share it. Statistics calculated from your copied fills: realised profit and loss (net of fees), volume, fees, number of trades, win rate, best and worst trade, top markets and daily profit and loss. They are private by default: other people see them on your profile only if you turn this on in Settings, and you can turn it off at any time.
  • The leaderboard, if you join it. If you choose in Settings to appear on the leaderboard, your name and rank for the selected period, with realised profit and loss, volume, trade count and win rate. This is off by default. You can turn it off at any time, and the leaderboard updates within about a minute.
  • Community content. Your posts, comments and like counts. Recent posts may also appear on the NyxGo website. A trade call also shows the side of your position in its market when you posted it (long, short or none), which NyxGo reads from the Exchange Protocol, but never the size of that position.
  • Interactions. When you follow a trader, like their post or comment on it, that trader is notified and can see it was you.

Your live account on the Exchange Protocol (account value, balance and open positions) is shown only to you, on your own profile. NyxGo does not show your wallet address to other traders, but anyone who learns it some other way, for example because you shared it or used it elsewhere, can see your balances, positions and trade history on the Exchange Protocol. Be careful about sharing your wallet address, or anything that reveals it, together with your NyxGo handle or name. You can stop sharing your performance or leave the leaderboard in Settings at any time, and download your data or delete your account there too (Section 10).

6. How we share personal data

We share personal data only as described here, and we do not sell it or share it for advertising.

  • The Exchange Protocol. Your browser communicates directly with the Exchange Protocol to place orders and load market and account data, so it receives your wallet address, your signatures and technical data such as your IP address. Our servers also query its public data with your wallet address to copy your fills and account snapshot. If you use Agents, our servers send the orders your Agents place, signed with your Agents key, to the Exchange Protocol, and read your positions, orders and fills from it to run them. If you buy AI credits, our servers submit the transfer you signed to the Exchange Protocol and check that it was accepted. The Exchange Protocol’s own terms and privacy practices apply.
  • Circle and blockchains. Deposits use Circle’s transfer infrastructure, and withdrawals are paid out on Arbitrum. These transactions, and the addresses and amounts in them, are public on the blockchains involved.
  • Your wallet provider. The browser wallet you connect handles your signatures under its own privacy policy.
  • AI model providers. When you use Moon AI, your question, the recent messages of that conversation and the context described in Section 3.6 are sent to providers of AI models that generate Moon AI’s answers on our behalf, through a service that routes each request to one of them. We only route requests to providers that neither store this data nor use it to train models (zero data retention). Wallet addresses are removed from your messages before they are sent, and the provider receives a keyed pseudonymous identifier, not your NyxGo account ID.
  • Service providers. We use providers that process data on our behalf to run the Interface, such as hosting, infrastructure, database, content-delivery and blockchain-data providers. They may only use the data to provide their services to us.
  • Our staff. Authorised staff access personal data according to their role. Moderators see community content, reports and handles. Only a small set of senior staff roles can see wallet addresses and the IP addresses of sessions. Depending on role, staff can also see other account details, your trading statistics, account snapshot and open positions, your Agents (including their settings, signed limits, orders and activity), and internal notes and tags. Staff access to personal and trading data is logged.
  • Professional advisers, such as lawyers and accountants, where needed.
  • Legal and safety. We may disclose personal data where required by law, or where reasonably necessary to protect the rights, property or safety of NyxGo, our users or others, or to enforce our Terms.
  • Business transfers. Personal data may be transferred as part of a merger, acquisition, financing or sale of assets, subject to this policy.

7. Cookies and browser storage

The Interface uses one strictly necessary cookie and a few items in your browser’s local storage. None are used for advertising or analytics, and the NyxGo website sets no cookies.

Name Type Purpose How long it lasts
nyx_sid Cookie (HttpOnly) Keeps you signed in Until you sign out or the session expires (30 days by default)
nyx:agent:<network>:<address> Local storage Your trading key (the private key of the API wallet created in your browser; not the Agents key, which is never stored in your browser) Until you remove it in Settings or clear your browser data
nyx:transfers:<network> Local storage Progress of your recent deposits and withdrawals The last ten transfers, until you clear your browser data
nyx:favorites Local storage Your favourite markets Until you clear your browser data
nyx:preferences Local storage Slippage and order-confirmation preferences Until you clear your browser data
wagmi.* Local storage Remembers your wallet connection Until you clear your browser data

Short-lived access tokens used by our community, realtime, Agents and Moon AI services are held in memory only and expire after about 15 minutes. Local storage stays on your device and is not sent to our servers, but anyone with access to your browser profile can read it, so protect your device.

8. International transfers

Your personal data may be transferred to, stored and processed in countries other than the one you live in, including outside the European Economic Area and the United Kingdom, by us and by our service providers. Where the law requires it, we put appropriate safeguards in place for these transfers, such as the standard contractual clauses approved by the European Commission and the UK addendum to them, unless the destination has been recognised as providing adequate protection.

9. How long we keep personal data

We keep personal data only for as long as we need it for the purposes described in this policy, including to meet legal, accounting and reporting requirements and to resolve disputes. How long depends on the type of data and why we hold it. In particular:

  • one-time sign-in codes are deleted automatically after they expire;
  • the IP address and user-agent recorded when you sign in are deleted 7 days later; sessions expire, and other session records are kept only as long as needed for security;
  • your trading history copied from the Exchange Protocol (fills, positions and account snapshots) is kept while your account exists; the account snapshot is replaced on every refresh, and closed positions are removed from it;
  • posts and comments that you delete are removed from public view immediately and permanently deleted 30 days later; posts and comments that moderators remove are kept as evidence of the moderation decision;
  • notifications are deleted after 180 days;
  • the encrypted Agents key is deleted as soon as the key is revoked, expires or is replaced, or your account is suspended, banned or deleted;
  • Moon AI conversations are kept until you delete them in the Interface, and are deleted automatically 90 days after you last used them; the account snapshot sent with a question is not stored, and Moon AI’s daily usage records are deleted after 90 days;
  • the wallet address that paid for AI credits is kept only until the payment is confirmed; records of your AI credit purchases (the amount, date, credits bought and credits remaining) are kept with your account while it exists, and for as long as we need them for accounting;
  • IP addresses in our staff audit logs are deleted after one year;
  • records of your Agents (their settings, signed limits and signatures, runs, orders and activity) and of your Agents keys are kept while your account exists, and afterwards as described in the next point, except that we keep the public address of every Agents key so that an address is never reused;
  • when you delete your account (Section 10), we permanently delete your account and profile, your posts, comments, likes and follows, your notifications, the reports you filed, your Moon AI conversations, your trading history on NyxGo and your sessions. Any unused AI credits are forfeited, and we keep the records of your AI credit purchases for accounting, no longer linked to you. Your Agents stop, and their Agents key is revoked and destroyed. We keep the records of what your Agents did on your behalf, as records of those orders: your wallet address, your Agents’ settings and the limits you signed, the Agents key approvals (the key itself is destroyed), the orders they placed and their activity history, and our signer’s record of the orders it signed. Our staff audit logs keep your account’s internal ID. Orders your Agents already placed on the Exchange Protocol stay open there until they fill or you cancel them from your wallet. We may also keep specific data where we must do so to comply with the law, enforce our Terms or defend legal claims.

Deleting your NyxGo account does not affect your funds or positions on the Exchange Protocol: they stay in your wallet’s account there, and NyxGo never holds them. If you sign in again with the same wallet, a new, empty NyxGo account is created. We cannot change or delete data recorded on the Exchange Protocol or on any blockchain.

10. Your rights and choices

Choices in the Interface. In Settings, you can:

  • change or clear your handle, display name and bio;
  • choose whether your trading performance is shown on your profile, and whether you appear on the leaderboard. Both are off by default, and you can change them at any time; the leaderboard updates within about a minute;
  • download your data with Download your data, which gives you one JSON file containing your account, sessions, trading history, community content and Moon AI conversations; and
  • permanently delete your account with Delete account, as described in Section 9. Deletion cannot be undone.

You can also delete your posts and comments, unlike posts and unfollow traders; sign out, which ends your session on our servers; remove your trading key from your browser in Settings and revoke its approval on the Exchange Protocol; pause or cancel your Agents, and revoke the Agents key in the Interface and on the Exchange Protocol; delete your Moon AI conversations, one at a time or all at once; and clear NyxGo’s cookies and local storage through your browser.

Your rights. Depending on where you live, data protection laws may give you the right to:

  • access the personal data we hold about you and learn how we use and share it;
  • have inaccurate or incomplete data corrected;
  • have your data deleted, in certain circumstances;
  • object to processing based on our legitimate interests, in certain circumstances;
  • restrict our processing, in certain circumstances;
  • receive your data in a structured, commonly used, machine-readable format and have it transferred to another controller;
  • withdraw consent where we rely on it, without affecting earlier processing; and
  • complain to your local data protection authority.

You can use Download your data and Delete account in Settings to exercise your rights of access, portability and deletion yourself. To exercise any of these rights in another way, or to ask about data the download does not include, email [email protected]. We will verify your request before acting on it, for example by asking you to sign a message with your wallet. We respond without undue delay and, where the law requires, within one month, which may be extended by two further months for complex requests. These rights are not absolute and can be limited by law, for example where fulfilling a request would affect other people’s rights or where we must keep data to comply with the law; if we cannot fulfil a request, we will tell you why.

11. Security

We protect personal data with measures that include storing session tokens only as hashes, HttpOnly cookies sent only over HTTPS, short-lived signed access tokens kept in memory, role-based access for staff (with wallet addresses and session IP addresses limited to a small set of senior roles) and logging of staff access to personal and trading data, and rate limiting. No system is completely secure, and data sent over the internet may not be secure in transit. Agents keys are created and held by an isolated signer, stored encrypted (AES-256-GCM) and deleted as soon as they stop being active. Your trading key is stored in your browser’s local storage, so keeping your device, browser and extensions secure is essential.

12. Children

The Interface is not intended for anyone under 18, and we do not knowingly collect their personal data. If we learn that we have, we will delete it. If you believe a child has used NyxGo, contact [email protected].

The Interface relies on third-party wallets and links to third-party websites and platforms, including the Exchange Protocol, block explorers, Circle and social media. We do not control them and are not responsible for their privacy practices or content. Their own terms and privacy policies apply, and following a link or connecting a wallet may let those parties receive information about your visit.

14. Changes to this policy

We may update this policy from time to time. We will update the “last updated” date on this page and may also announce material changes in the Interface. If you keep using the Interface after a change takes effect, the updated policy applies.