> For the complete documentation index, see [llms.txt](https://docs.mybucks.online/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.mybucks.online/p2p.gifts/privacy-policy.md).

# Privacy Policy

**Last updated:** June 2026

#### 1. Scope

This Privacy Policy describes how **p2p.gifts** at <https://p2p.gifts> ("the Service", "we", "us", or "our") handles information when you use the **P2P crypto gifting wizard**.

p2p.gifts is part of the [mybucks.online](https://mybucks.online) project. It does **not** cover:

* **mybucks.online**, **app.mybucks.online**, or **docs.mybucks.online** — see the Mybucks.online Privacy Policy
* Claiming funds on **app.mybucks.online** after you follow a gifting link or QR code

#### 2. Privacy by Design

p2p.gifts is a browser-only **P2P crypto gifting wizard** built on the mybucks.online **digital cash envelope** (**seedless, disposable wallet** framework). It does not require registration, accounts, or email addresses.

Passphrases, PINs, and private keys are **not stored on our servers** and are **not transmitted to p2p.gifts infrastructure** during normal use. Wallet keys are derived **entirely in your browser**. When you close or refresh the tab, session secrets are cleared from memory. We do not operate a backend database of gift wallets or credentials.

#### 3. Information We Do Not Collect

On p2p.gifts, we do **not**:

* Require or store your name, email, phone number, or government ID
* Store passphrase, PIN, private keys, or gift-card content on our servers
* Log wallet credentials or key-generation inputs on p2p.gifts servers
* Track in-wizard wallet activity for advertising

There is no account system and no server-side user profile.

#### 4. Information Processed in Your Browser

While you use the wizard, the following stays on **your device** unless you choose to share it (for example, by sending a gift card or gifting link):

* Passphrase and PIN inputs
* Derived wallet address
* Optional gift note text and custom background images you upload
* Gift card preview and exported PNG (generated locally)

You are responsible for protecting this information, including saved images, clipboard contents, and how you share gifting links.

#### 5. Gifting Links and Gift Cards

The Service generates **gifting links** that open [app.mybucks.online](https://app.mybucks.online) using a token produced by [@mybucks.online/core](https://www.npmjs.com/package/@mybucks.online/core). Link creation happens in your browser.

* Gifting URLs are not sent to p2p.gifts servers when generated
* Gift cards may embed QR codes that encode the claim destination
* Anyone with the gift card image or link may access the gift wallet

See p2p.gifts FAQ — Safety and Transfer via URL.

#### 6. Analytics (Umami)

In production, p2p.gifts may use [**Umami**](https://umami.is) for privacy-focused, aggregated page analytics (for example, page views and referral sources). This is intended for **site traffic only**, not for in-wizard credential or wallet activity.

* Umami is loaded from `cloud.umami.is`; event data may be sent to `gateway.umami.is`
* We do not use Google Analytics or advertising trackers on p2p.gifts
* Analytics may be disabled in local or non-production builds when no website ID is configured

Umami's practices are governed by its own policies. You can limit tracking through browser settings and applicable vendor opt-out tools.

#### 7. Third-Party Services

The Service may contact or link to:

| Provider                 | Purpose                                           | Data typically involved                                   |
| ------------------------ | ------------------------------------------------- | --------------------------------------------------------- |
| **Umami**                | Aggregated page analytics                         | Page URL, referrer, browser/device metadata (per Umami)   |
| **Google Fonts**         | Typography                                        | Standard font CDN requests                                |
| **GitHub Pages**         | Static hosting                                    | Standard web server logs (IP, user agent, requested path) |
| **app.mybucks.online**   | Claiming gifted funds (when user follows link/QR) | Governed by Mybucks.online Privacy Policy                 |
| **Blockchain explorers** | Links you open from fund step                     | Per explorer policies                                     |

p2p.gifts does **not** call RPC providers (Infura, Moralis, etc.) during the gifting wizard. Funding happens by you sending assets to the displayed address on-chain outside the app.

We do not control third-party data practices. Review their policies if you have concerns.

#### 8. Local Storage

p2p.gifts may store **non-sensitive preferences** in your browser's local storage — for example, light/dark theme. This does **not** include passphrases, PINs, or private keys.

#### 9. Hosting and Infrastructure

The Service is a static site hosted on **GitHub Pages** (via GitHub Actions). Hosting providers may process standard access logs. Static hosting does not give us access to wallet secrets generated in your browser.

#### 10. Open Source

p2p.gifts is open-source software. Anyone may review, fork, or self-host it. If you use another operator's copy, their privacy practices may differ.

#### 11. Security

We use a **Content Security Policy** to restrict which third-party domains the wizard may contact. No method of transmission or storage is completely secure. You are responsible for your device, browser, and how you share gift cards and links.

#### 12. Children

The Service is not directed at children under 13 (or the minimum age in your jurisdiction). We do not knowingly collect personal information from children.

#### 13. Your Rights

Depending on where you live, you may have rights regarding personal information held by a data controller.

Because we do not maintain user accounts or store credentials on our servers, we generally **cannot** identify or delete wallet data on your behalf — that data exists in your browser, in files you save, or on public blockchains. For analytics, you may use browser controls and Umami-related opt-out options where available.

Questions: <contact@mybucks.online>.

#### 14. International Users

The Service may be accessed from many countries. Third-party providers (hosting, analytics, fonts) may process data outside your jurisdiction. By using the Service, you understand such transfers may occur.

#### 15. Changes to This Policy

We may update this Privacy Policy from time to time. The "Last updated" date at the top will change when revisions are published. Continued use after updates constitutes acceptance where permitted by law.

#### 16. Related Documents

* [Terms of Use](/p2p.gifts/terms-of-use.md)
* [FAQ](/p2p.gifts/faq-and-safety.md#frequently-asked-questions)
* [License](/p2p.gifts/license.md)
* [Mybucks.online Privacy Policy](/more/privacy-policy.md)
* [Disclaimers](/p2p.gifts/disclaimers.md)

***

**Summary:** p2p.gifts keeps gift-wallet secrets in your browser only. We do not run a custodial backend. Production may use Umami for aggregated page views—not for credentials. Claiming on app.mybucks.online is covered separately.
