Binder · Legal

Privacy Policy

Last updated 4 August 2026

This Privacy Policy explains how Near Mint ("we", "us") collects, uses, and protects your personal data when you use Binder (the "Service"). We handle personal data in accordance with the Hong Kong Personal Data (Privacy) Ordinance (PDPO). By using the Service you consent to this Policy.

1. Data we collect

Account data from your sign-in provider (such as your name, email address, and profile photo). Profile data you provide (display name, @handle, bio, avatar). Content you create (listings, card selections, photos, messages, ratings, reports). A push notification token for your device, if you allow notifications. Limited technical data needed to operate the app and keep it reliable, including basic device/log information and crash and performance diagnostics (such as error reports, device model, OS version, and app version). We do not collect payment card details — we do not process payments.

2. How we use your data

To create and operate your account; to display your profile, listings, and messages to other users as part of the Service; to enable trading, chat, and ratings; to maintain safety and prevent abuse; to respond to reports and support requests; and to improve the Service. We use your data only as needed to provide and protect the Service.

3. What others can see

Your @handle, display name, avatar, bio, ratings, and active listings are visible to other users. Messages are visible to the participants of a conversation. Do not share sensitive personal information you do not want others to see.

4. Service providers

We use trusted third-party providers to run the Service. Each one receives only what it needs: • Cloud backend and hosting (Appwrite Cloud, servers in Singapore) — stores your account, profile, listings, photos, messages, ratings and reports on our behalf. • Sign-in providers (Google and Apple) — you authenticate with them and they tell us your name and email address. We do not send them your listings or messages. • Push notifications (Expo, operated by 650 Industries, servers in the United States, and then Apple's Push Notification service) — when another trader messages you or sends you an offer, we send Expo your device's push token, the sender's display name, and a short preview of the notification so it can appear on your lock screen. For a text message that preview contains up to the first 200 characters of the message itself (after our automatic link/contact scrub); for a photo or an offer it is only a placeholder such as "Photo" or "offer". Message content sent this way therefore leaves Hong Kong. If you do not want this, turn Binder notifications off in your device settings — the Service works without them and no preview is sent. • Trading-card data (Scrydex, servers outside Hong Kong) — receives only the search text and card identifiers used to look up card information. It never receives your account, name, listings or messages. • Crash reporting and performance monitoring (Sentry, servers in the United States) — receives diagnostic data such as error reports, device model, OS version and app version when something goes wrong. We keep personal identifiers out of these reports. These providers process data on our instructions and/or under their own privacy terms. We do not sell your personal data.

5. Data retention

We keep your personal data for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements. When you delete your account, we delete or anonymise your personal data within a reasonable period, except where retention is required by law.

6. Your rights

Under the PDPO you may request access to, and correction of, your personal data, and you may withdraw consent or ask us to delete your data. You can edit your profile in-app, delete your account in Settings, or contact us to exercise your rights. We may need to verify your identity before acting on a request.

7. Security

We use reasonable technical and organisational measures to protect your data, including access controls on stored records. No system is perfectly secure; we cannot guarantee absolute security, and you use the Service at your own risk.

8. Children

The Service is for users 13 and older; users under 18 require the consent of a parent or legal guardian. We do not knowingly collect data from anyone under 13. If you believe a child under 13 has provided us data, contact us and we will remove it.

9. International transfers

Your data is stored and processed on servers located outside Hong Kong by the service providers named in section 4. In particular: your account and content (including messages) are stored in Singapore; notification previews — which can include the first part of a message you send or receive — and crash diagnostics are processed in the United States; and card-search terms are sent outside Hong Kong. Where this happens, we take reasonable steps so your data remains protected consistent with this Policy.

10. Changes

We may update this Policy from time to time. Material changes will be notified through the Service or by other reasonable means.

11. Contact

Near Mint — contact@nearmint.tech

Questions? Email contact@nearmint.tech.