Privacy Policy

Effective Date: December 1, 2025

Last Updated: November, 2025

1. Introduction and Scope

This Privacy Policy (“Policy”) explains how Cysic Foundation (“Cysic,” “we,” “us,” or “our”), as the data controller, collects, uses, stores, discloses, and protects information when you participate in the Cysic Airdrop (the “Airdrop”).

We are committed to safeguarding your privacy and handling your information transparently. Participation in the Airdrop is subject to this Policy as well as the Cysic Airdrop Terms of Service (“Terms”). By participating in the Airdrop, you acknowledge that you have read, understood, and agreed to this Policy.

This Policy applies solely to information collected for the Airdrop and does not govern data processing activities in other Cysic products, services, or websites, which may be governed by separate privacy policies.

2. Information We Collect

In connection with your participation in the Airdrop, we may collect and process the following categories of information:

a. Blockchain Information (Pseudonymous Data)

  • Public blockchain wallet address(es) you provide or connect to participate.

  • Public on-chain data and transaction history associated with such addresses, including interactions relevant to eligibility criteria (e.g., protocol usage, token holdings, computing-related actions, provers, or other ecosystem interactions).

  • This information is publicly visible on the blockchain but is specifically processed by us for Airdrop purposes.

b. Voluntarily Provided Information (Potentially Personal Data)

Collected only if you choose to provide it:

  • Social media identifiers (e.g., X/Twitter handle, Discord ID) for verification, community tasks, or referral programs.

  • Centralized exchange (CEX) identifiers or proof-of-transaction screenshots if voluntarily submitted to meet specific verification requirements.

  • Any additional information you submit as part of claim verification steps or dispute resolution processes.

c. Automatically Collected Information (Technical Data)

Collected when you interact with Airdrop-related interfaces:

  • IP address(es)

  • Browser type, device type, operating system

  • Interaction metadata necessary for fraud detection, duplicate prevention, and Airdrop integrity

These are primarily used for security and anti-abuse measures.

3. How We Use Your Information (Purpose of Processing)

We process your data exclusively for legitimate, clearly defined purposes:

a. Airdrop Administration

  • Verifying eligibility based on objective criteria defined in the Terms

  • Calculating allocation amounts

  • Distributing or enabling the claiming of Airdrop tokens to eligible wallet addresses

b. Security and Fraud Prevention

  • Detecting, preventing, and investigating Sybil attacks, bot activity, multi-wallet abuse, or attempts to manipulate the Airdrop

  • Ensuring security and integrity of the Airdrop infrastructure

c. Improvement and Analytics

  • Analyzing participation data to evaluate campaign effectiveness

  • Improving future community programs, reward mechanisms, or ecosystem offerings (Generally using aggregated or anonymized data)

  • Complying with applicable laws and regulations

  • Responding to lawful requests from regulatory or governmental authorities

  • Conducting sanctions or risk screening when required

We use your data solely for the purposes described above unless another legally permissible, compatible purpose arises.

4. Data Sharing and Disclosure

We do not sell your personal data. We may disclose your information only under the following limited circumstances:

a. Service Providers

We may share data with vetted third-party providers assisting with:

  • Data analytics

  • Security, fraud detection, and bot prevention

  • Cloud hosting and infrastructure

  • Verification services (including KYC/AML, if required and subject to notice/consent)

These providers are contractually bound to protect your information and use it exclusively for our specified purposes.

We may disclose information if required by law, regulation, court order, or governmental request, or if such disclosure is necessary to:

  • Comply with legal obligations

  • Protect Cysic’s rights, property, or systems

  • Prevent fraud or investigate violations

  • Protect safety of users or the public

c. Aggregated or Anonymized Information

We may share non-identifiable aggregated data for research, reporting, or ecosystem development.

d. Public Blockchain Data

Information stored on the blockchain (e.g., wallet addresses, transaction history) is inherently public and cannot be modified or removed by us.

5. Data Security

We implement commercially reasonable technical and organizational measures to protect your information, including:

  • Encryption of sensitive data in transit and at rest

  • Strict access controls and authentication requirements

  • Continuous monitoring and scheduled security reviews

  • Secure development and infrastructure practices

However, no method of data transmission or storage is completely secure. You remain responsible for safeguarding your wallet private keys and credentials.

6. Data Retention

We retain your information only as long as necessary to fulfill the purposes described in this Policy, including:

  • The duration of the Airdrop

  • Allocation and distribution phases

  • Any vesting or claim-related periods

  • Legal, regulatory, and accounting obligations

After data is no longer needed, we delete or anonymize it unless further retention is legally required. Blockchain data remains permanently visible on the public ledger.

7. International Data Transfers

Cysic operates globally. Your information may be processed in jurisdictions outside your country of residence, including Singapore, the United States, or others where our service providers operate.

Where legally required, we implement safeguards such as Standard Contractual Clauses or equivalent protective mechanisms to ensure an adequate level of data protection.

8. Your Data Protection Rights

Depending on your jurisdiction (e.g., EU GDPR, Singapore PDPA), you may have rights including:

  • Access — obtain a copy of personal data we hold

  • Correction — request corrections to inaccurate or incomplete data

  • Withdrawal of Consent — withdraw optional data submissions

  • Deletion — request deletion of personal data (subject to legal exceptions)

  • Objection — object to processing under certain grounds

  • Data Portability — request transfer of your personal data

Note:

  • Withdrawing essential data or requesting deletion may affect Airdrop eligibility or result in forfeiture of allocated tokens.

  • Blockchain data cannot be deleted or altered.

To exercise these rights, contact us at the email listed in Section 13. We may need to verify your identity before responding.

9. Cookies and Tracking Technologies

If the Airdrop involves interaction with Cysic web interfaces, we may use cookies or similar technologies to:

  • Ensure functionality and performance

  • Provide a secure user experience

  • Analyze traffic or participation patterns

  • Detect bots or fraudulent activity

You may modify cookie settings in your browser, although disabling certain cookies may impair functionality.

10. Children’s Privacy

The Airdrop is not intended for individuals under 18 or under the age of legal majority in their jurisdiction.

We do not knowingly collect personal data from minors. If such data is discovered, it will be deleted promptly.

11. Changes to This Policy

We may update this Policy to reflect changes in technology, regulatory requirements, or Airdrop mechanics.

Material changes will be indicated by updating the “Last Updated” date and may be communicated via official Cysic channels.

Continued participation in the Airdrop constitutes acceptance of the updated Policy.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at:

[email protected]

Last updated