Effective August 23, 2026; last updated September 1, 2026. MoonTools combines browser-local previews with optional server-side holder verification, holder-gated collection snapshots, a gated valueless devnet console, and opt-in product email.
Ticket plans, receipts, drafts, display settings, and raffle preview changes are stored in local or session storage when available. They are not on-chain records. Settings provides a reset for preview state; site-data controls in your browser can remove all local preferences.
When holder verification is requested, the server receives a public Solana wallet address and queries configured Solana RPC and Helius DAS providers. Structured logs exclude the wallet address. A successful result may be cached for up to one hour; shared-cache keys are hashed. Signed-wallet profiles and HTTP-only sessions are stored in Upstash with separate Preview and Production namespaces.
A signed profile verified at Bronze tier or higher may submit a public Solana collection address, minimum-holdings threshold, and exact trait filters. MoonTools sends that public query to Helius DAS, aggregates indexed ownership in server memory, and returns holder wallets and matching counts. Collection data is cached for up to one minute to reduce repeated provider requests; provider credentials remain server-side.
The separately gated MoonMonth devnet console processes the connected public wallet address, reads public devnet accounts and events, and prepares a valueless devnet transaction for the injected wallet to review and sign. Signed transactions and program events are public blockchain records controlled by the Solana network, not erasable account records controlled by MoonTools. MoonTools never receives the wallet private key or seed phrase.
After signing into a MoonTools wallet profile, you may separately provide and verify an email address for optional product alerts. MoonTools stores the verified address and category choices in Upstash and uses Brevo for delivery. Marketing/newsletter enrollment remains unavailable until a valid physical postal address is configured; campaign messages must identify the sender and provide an unsubscribe mechanism. These messages are not wallet-login emails. All categories default to off, and clearing the address disables them.
Vercel Analytics is disabled unless the deployment explicitly enables it and you opt in under Settings. When enabled, it may process page, referrer, device, and coarse network information under the deployment operator’s Vercel configuration.
Vercel hosts the application, Better Stack receives configured operational telemetry and alerts, Upstash stores shared identity and notification records, Alchemy and Helius perform bounded public-chain reads, and Brevo processes opted-in email delivery. Provider credentials remain server-side.
MoonTools does not sell or rent profile, wallet, snapshot, or notification information and does not use it for cross-context behavioral advertising. Public wallet and blockchain data remains independently available from the Solana network and third-party indexers. If this practice changes, the notice and any legally required choice mechanism must be updated before the change takes effect.
Browser-local data remains until you reset it or the browser evicts it. Email verification links expire after 30 minutes, wallet sessions after seven days, holder-verification results after about one hour, and premium collection snapshots after about one minute. Verified email and notification choices remain until cleared or deleted. Settings provides immediate authenticated JSON export and account deletion. Public Solana records cannot be erased by MoonTools. A minimal suppression, security, fraud, tax, or legal record may remain where required for its stated purpose. Operational and security logs target 30 days except during an active investigation; support correspondence is retained for 24 months after closure; routine backups rotate within 90 days. Contact support@moontools.app for access, correction, portability, objection, or deletion. Provider-controlled records follow provider retention and suppression rules.
The MoonTools deployment operator determines the purposes of the server-side processing described here. Its final legal entity name, postal address, applicable legal bases, international-transfer disclosures, and regulator contact details must be published before regulated production targeting begins. Until then, value-bearing service and marketing enrollment remain disabled. Privacy requests may be sent to support@moontools.app and may require proportionate identity verification.
MoonTools does not ask for a seed phrase or private key. The browser-local demo identity is not authentication; signed holder-wallet verification authenticates the read-only profile, premium snapshot access, and preference features described here. Do not submit sensitive personal information in free-text preview fields.