Privacy notice
Last updated 9 October 2026
This notice explains what Realtap processes about you, why, and what you can do about it. It covers the website and the API.
1. In short
- You can use Realtap without an account. An account is a wallet you sign in with; we do not ask for your name or email address.
- Realtap does not use advertising or cross-site tracking, and does not sell personal data.
- Blockchain data is public. Addresses, transactions and handles shown here are on the Cardano blockchain for anyone to read.
2. What is processed when you visit
Requests reach us through Cloudflare, which carries the site and protects it from abuse. Cloudflare processes your IP address, browser details and the pages requested, and may set cookies that are strictly necessary for security.
Our own servers use your IP address in memory to apply request limits, and keep short-lived technical logs of requests (path, response code, duration) to operate and troubleshoot the service. Realtap itself sets no cookies.
Your browser's local storage holds your preferences on this device, such as Simple or Advanced mode, the open sections of the menu and, if you sign in, your session token. You can clear it in your browser at any time.
3. What is processed when you connect a wallet
Connecting a wallet lets the site read your addresses and balances from the wallet in your browser so it can show them and build transactions for you to sign. To look up balances, orders or history, your address is sent to our servers like any other address a visitor looks up. We never receive your keys or your recovery phrase.
4. What is stored if you create an account
Signing in means signing a message with your wallet to prove you control it. We then store:
- the identifier of that wallet (its stake key or address), other wallets you link, and when the account was created and last used;
- what you save: settings, watchlists, alert rules and their history;
- where alerts should be delivered, if you set that up: a Telegram chat, or a Discord or webhook address you provide;
- API keys you create (stored as a hash, not readable by us) and how many requests each key made per day;
- plan and payment records: for card payments, the customer and subscription references from Stripe and the status of the subscription; for blockchain payments, the address, amount and transaction. Card details go to Stripe and never reach us.
5. Why, and on what basis
- To provide the service you ask for: showing data, keeping your account, delivering alerts, running paid plans (performance of a contract, or steps you request).
- To keep the service secure and working: request limits, logs, abuse prevention (our legitimate interest).
- To meet legal obligations, for example keeping payment records.
6. Who else is involved
- Cloudflare carries traffic to the site.
- Stripe processes card payments when you choose to pay by card.
- Trading services: when a swap is routed through a third-party aggregator, your address and the order details are sent to that aggregator to build the transaction. Orders you sign are public on the blockchain.
- Chain data providers: some lookups, such as staking details, are answered by public Cardano data services, which receive the address being looked up.
- Telegram or Discord receive the alert messages you asked us to send there.
- Some token and NFT images are loaded from the hosts where their creators published them, which then see your request.
7. Public blockchain data
Realtap reads the public blockchain and shows what is on it, including any address and its history, and adds labels for known services and contracts. We cannot change or remove what is recorded on the blockchain. If a label on an address is wrong, tell us at the contact address listed at the bottom of this page and we will review it.
8. How long data is kept
Account data is kept until you ask us to delete the account. Payment records are kept as long as the law requires. Technical logs are kept for a short time. Preferences in your browser stay there until you clear them.
9. Your choices and rights
You can remove watchlists, alerts, linked wallets and API keys yourself in your account. To have the whole account deleted, or to ask for a copy of the data held about it, write to the contact address listed at the bottom of this page from a position where you can prove control of the wallet (we will ask you to sign a message).
Depending on where you live you may also have the right to correct data, to object to or restrict processing, and to complain to your data protection authority.
10. Where data is processed, children, and changes
Our servers and the providers named above may process data in countries other than yours. Realtap is not intended for children. We will update this notice when what we do changes; the date at the top shows the latest version.
The operator's name and place of establishment will be listed here.
A contact address for questions and requests will be listed here.