memeswap.fun
Privacy · effective September 11, 2026

Privacy Policy

This policy applies now. It covers the app and the website as they are today, including reels, comments, transcripts, invites, connected accounts and creator rewards. We update it and change the effective date whenever the product changes what it processes.

Agentic Labs LLC operates MemeSwap. A public wallet address is pseudonymous, not necessarily anonymous, and on-chain activity is public.

Data processed

When you request data or routes, servers may process IP address, request time, browser and device information, selected network, public wallet address, public-address portfolio holdings, token addresses, route parameters, an already-signed Solana transaction submitted for relay and security logs. If you send feedback or email us, we process the content and contact information you provide. Never send a seed phrase or private key.

Optional iPhone notifications

Received-funds notifications are off by default. If you enable them, MemeSwap receives an Apple Push Notification service (APNs) device token, its delivery environment and your wallet’s public addresses for EVM networks, Solana, Sui and TON. The server stores that association, registration timestamps and delivery-failure counters, together with balance snapshots containing asset identifiers, quantities, symbols and chains. It periodically queries portfolio providers for those public addresses, including while the app is closed, to detect balance increases. Apple receives the device token and notification payload, including the amount, asset, chain and asset identifier. Alert text may be visible according to your iPhone notification settings.

iPhone reliability reports

In the iPhone app, “Share reliability reports” is on by default for real wallets and can be disabled in Settings. No reliability reports are sent in Demo mode. Reports contain a random event identifier, event time, app/build and operating-system versions, network environment, fixed crash, freeze or error categories, coarse durations when available, and app binary identifiers and code offsets used to locate faults. These report bodies do not contain wallet addresses, balances, transaction details, keys or recovery phrases. Reports are sent over HTTPS; the hosting and network providers can process connection metadata such as an IP address.

The app discards queued reports more than seven days old. Turning sharing off stops new reporting and requests clearing of queued reports; reports already received are not recalled. The first-party diagnostics store deletes records more than seven days after receipt, with cleanup at server startup and hourly while running. Cleanup can therefore take up to an additional hour while the service is running, or until it next starts. This period is separate from analytics, notification records, infrastructure logs and backups. The collector uses temporary in-memory rate-limit identifiers and does not write source IP addresses into its diagnostics database. Apple controls when operating-system crash reports become available, so delivery is not necessarily immediate.

Local device data

The iPhone app creates or imports wallet recovery material on your device and stores encrypted wallet material in the iOS Keychain. Recovery phrases entered in the app’s local import flow and private keys used for local signing are not sent to MemeSwap’s servers. Public wallet addresses, app preferences and notification registration state are also stored on the device.

MemeSwap may use browser storage for preferences, onboarding state, connected-wallet records, free Arcade identity or credits and mobile wallet handoffs. Phantom handoffs store the wallet session credential, dapp encryption key material and pending request state in this origin’s IndexedDB so encrypted callbacks can be completed; this data stays on the device unless malicious code or someone with access to the browser obtains it. Necessary storage supports requested functions; we do not describe it as advertising consent. You can clear it in browser settings, which may reset local state.

Why, sharing and retention

We process data to deliver requested features, prevent abuse, debug failures, secure the service and comply with law. MemeSwap records bounded first-party product events such as page views, wallet connection success, quote requests, transaction submission or confirmation, and shortened, redacted client error messages. First-party analytics events are deleted after 90 days. Campaign parameters may be kept for the current browser session. These analytics events do not include wallet addresses, transaction hashes, trade amounts or persistent advertising identifiers. Route, RPC, wallet-connectivity and hosting providers may receive data needed to perform their services. Public wallet addresses and signed transaction bytes may be sent to RPC providers when you use portfolio or relay features. MemeSwap’s servers do not collect recovery phrases or private keys from the wallet flows described here. Production retention periods and vendor agreements must be finalized before launch; security logs should be kept only as long as reasonably needed.

Notification choices and retention

Turning off “Notify me when funds arrive” in the iPhone app, or using its Remove wallet flow, requests removal of the registration and balance snapshots associated with the APNs token currently stored on that device. If the request fails, the app retains that token locally and retries on a later app launch or when the wallet becomes ready. This is not immediate deletion while offline. Changing only iOS notification permissions or uninstalling the app does not itself send this removal request.

The current notification registry has no automatic expiry. Retention periods for notification records, operational logs, backups and provider-held data have not yet been finalized; the first-party analytics period above does not apply to these records. Older registrations following a device-token change may remain and require separate deletion review. Contact [email protected] about data we control. Never send a recovery phrase or private key.

Desktop wallet recovery

On your Mac, the recovery tool processes plaintext wallet credentials from the macOS Keychain only to create or restore an encrypted backup; plaintext credentials are not uploaded. The encrypted .msrb backup is user-controlled storage: you choose where to keep it, including an encrypted cloud folder. Agentic Labs has no escrow and no recovery capability for this backup or its recovery phrase.

The desktop recovery flow sends no analytics, remote recovery requests, phrase, private key, or backup-file contents to Agentic Labs. Recovery session data is held in memory only for the active local flow and is cleared when that flow ends.

Your choices and rights

You may disconnect wallets, clear local storage and request access, correction or deletion of data we control, subject to legal exceptions. Public blockchain records cannot be deleted by MemeSwap. US state rights vary; contact us and we will verify and respond as applicable. Appeals may be sent through the same channel.

Security, children and changes

We use reasonable safeguards, but no system is risk-free. MemeSwap is not directed to children under 18. Material changes will update the effective date.

Reels and what you post

When you post a reel we process the video, its thumbnail, the caption, the token it is about, the time it was recorded and uploaded, and a hash of the file. Reels, captions, comments, likes, follows, shares and view counts are public. Anyone can see them in the app and on the website, and every reel has a public share page. Your public wallet address is shown alongside everything you post.

What is said in your video

Every reel is transcribed so that it can be searched and screened. Transcription runs on our own machine using a local speech-to-text model. The audio is extracted to a temporary file, transcribed, and that file is deleted when the job finishes. No audio and no video is sent to any third party for this. The resulting transcript is stored with the reel, is used for search and safety screening, and part of it may be shown publicly on the reel.

Safety screening

Before a reel is published we screen it. We hash the file to detect re-uploads, sample a small number of frames and score them with a local model for adult content and graphic violence, and check the caption and transcript against the posting rules. The scores are stored with the reel so that a human reviewer can see them. All of this runs on our own machine. A reel that does not clear the screen is held for a person to review and is not published in the meantime.

Contacts

If you use invites, the app reads the address book on your phone so it can show you who to invite. Your contacts are not uploaded, are not sent to our servers, and are not matched against our users. They stay on the device. You can refuse the permission and the rest of the app works normally.

Connected social accounts

If you connect a TikTok or Instagram account we receive an access token from that provider and your handle on it. The token is stored encrypted and is used only for what you connected it for. Disconnecting deletes the token, and so does deleting your MemeSwap account.

Creator rewards

If the creator rewards programme is running and you earn from it, we keep a record of what was earned, for which reel, and when. Payments are made on a public blockchain and are therefore public. Any tax on what you earn is yours to handle; we do not withhold and we do not give tax advice.

Moderation and legal records

When content is reported, removed or restored, we record the decision, who made it and when, in a tamper-evident log. If someone sends us a legal removal request about your content we record that request and what we did about it. Some of these records are kept even if you later delete your account, for the narrow reasons listed below.

Deleting your MemeSwap account

In the app: Settings, then MemeSwap account, then "Delete my MemeSwap account". You are asked to type DELETE, and you are shown a receipt of exactly what was removed.

Your wallet is not your MemeSwap account. The private key is in your phone's Keychain and your balance is on public blockchains. We have never been able to read, move or delete either, and deleting your account does not try to. Removing the wallet from the device is a separate action in the same screen, and only your recovery phrase brings it back.

Deleting the account removes your reels and the stored video files, your comments, likes, follows, blocks, views and shares, other people's likes and comments on your reels, your avatar, your profile and display name, your connected accounts and their tokens, your push registrations and balance snapshots, your invites, and your swipe history. Sessions and delegate keys are revoked first, so nothing already in flight can write afterwards.

Four things are deliberately kept, and the receipt names each one:

A reel that a reviewer merely hid, as adult content or as spam, is not kept, and neither is one still waiting in the review queue. There is no legal duty to keep either, so keeping them would be retaining exactly the data you asked us to erase.

Anonymous product counters, which record only a day, a step and a count and contain no address, device or install identifier, are not affected because there is nothing in them attributable to you.

Contact

Privacy requests: [email protected].