CONFIDENTIALITY

Privacy Policy

Last updated: September 2026

1. Data We Collect

  • Email address: For account authentication and transactional notices.
  • Identity document: Processed exclusively through our third-party verification partner (Didit); not stored on TPI servers.
  • Transaction records: For financial reporting, payouts, and dispute resolution.
  • Device Telemetry: IP address and session headers for fraud prevention and security audits.

2. Data We Do Not Collect

  • Real public names (only private pseudonymized display names are visible).
  • Physical residential addresses of sellers (payouts and shipping labels handled through external encrypted channels).
  • Raw biometric scans or raw facial geometry files.

3. Data Sharing & Third Parties

We strictly never sell, trade, or monetize personal member data. Information is exchanged strictly with essential operating vendors:

  • Stripe: Encrypted payment tokenization and card processing.
  • Didit: Age verification and automated KYC validation.
  • Wise: Encrypted treasury and cross-border seller payouts.

4. Retention & Erasure

Active member data is retained for the lifetime of the account plus 30 days post-closure. Financial ledgers are preserved for seven (7) years in accordance with United States federal tax compliance. Under GDPR and CCPA statutes, members may request complete data export or account erasure via platform settings.