🚀 We've leveled up — 20% off every order with codeShop services
Legal

Privacy Policy

This Privacy Policy explains what information BoostHill ("BoostHill", "we", "us", "our") collects when you visit boosthill.com or use our services, how we use and share it, how long we keep it, and the rights you have. The short version: we collect the minimum we need to deliver your orders, we never ask for your social media passwords, and we never sell your data.

1. Scope

This policy applies to the BoostHill website, dashboard, and related services (together, the "Service"). It does not apply to third-party websites or platforms we link to, which have their own policies. By using the Service you agree to this policy together with our Terms of Service.

2. Information we collect

We collect only what's needed to provide and improve the Service:

  • Account & contact details — your email address, a display name if you set one, and your password (stored only as a salted hash; we can't read it).
  • Order details — the platform and service you order, quantity and delivery speed, and the public profile link, username or post URL you provide as the delivery target.
  • Wallet & transaction records — your balance, top-ups, order charges and invoices.
  • Payment information — processed by our payment provider (Cryptomus). We receive confirmation of payment and an order reference; we do not store your crypto wallet keys, seed phrases or card numbers.
  • Support & contact messages — anything you send us through the contact form, support chat or email.
  • Technical & usage data — IP address, device/browser type, approximate location, and pages visited, collected to keep the Service secure, reliable and working.

We never collect your social media passwords. Delivery only ever requires a public link or username — never your login credentials, and we will never ask for them.

3. How we use your information

  • To create and operate your account, wallet, dashboard, order history and invoices.
  • To process and deliver your orders, and to honour your refill guarantee.
  • To respond to support requests and send you transactional notifications about your orders.
  • To detect, prevent and address fraud, abuse, and security or technical issues.
  • To improve the Service and understand how it's used.
  • To comply with our legal, tax and accounting obligations.

4. Legal bases (EEA / UK users)

Where data-protection law (such as the GDPR or UK GDPR) applies, we process your data on these bases:

  • Performance of a contract — to provide the Service you sign up for and place orders with.
  • Legitimate interests — to secure the Service, prevent fraud and abuse, and improve our product, balanced against your rights.
  • Legal obligation — to meet accounting, tax and lawful-request requirements.
  • Consent — for any optional communications, which you can withdraw at any time.

5. Cookies & local storage

We use essential cookies and browser local storage to keep you signed in, remember preferences (such as your display currency, theme and cart), and secure the Service. We do not use these for cross-site advertising or sell behavioural profiles. You can clear or block them in your browser, though some features may stop working if you do.

6. Communications

We send transactional messages you can't opt out of while you have an account (for example, order and security notifications). Any optional or promotional messages are opt-in, and every one includes a way to unsubscribe.

7. Payments

Crypto payments are handled by Cryptomus, which processes your transaction under its own privacy policy and terms. We receive only what we need to confirm payment and match it to your order. Card payments are not currently offered.

8. Who we share information with

We share data only with the parties needed to run the Service, and only the minimum required. Our key sub-processors and recipients are:

  • Fulfilment providers — to deliver an order, a provider receives the public target link and the quantity. They do not receive your email, password or payment details.
  • Payment processor — Cryptomus, to take and confirm payment.
  • Infrastructure providers — our database and hosting partners (which store data securely on our behalf) and similar service vendors.
  • Professional advisers & authorities — where required by law, regulation or valid legal process, or to establish, exercise or defend legal claims, and to protect our rights, users and the Service.
  • Business transfers — if BoostHill is involved in a merger, acquisition or asset sale, data may transfer as part of that transaction, subject to this policy.

We do not sell your personal information.

9. International transfers

We operate online and may process and store data in countries other than your own, including where our providers are located. Where we transfer data internationally, we take steps to protect it consistent with this policy and applicable law.

10. Data retention

We keep account, order, wallet and invoice records for as long as your account is active and for as long as needed afterwards to meet legal, accounting, tax and dispute-resolution requirements — typically up to several years for financial records. Support and contact messages are kept while relevant and then deleted. You can ask us to delete your account data, subject to those obligations.

11. Security

We protect your data with encryption in transit, hashed passwords, access controls, and row-level security so each customer can only access their own records. No system is perfectly secure, but because we never hold your social passwords or raw payment credentials, the most sensitive data simply isn't in our hands. If we ever become aware of a breach affecting your personal data, we'll notify you and the relevant authorities where the law requires.

12. Your rights

Depending on where you live, you may have the right to access, correct, delete, export (port), or restrict the processing of your personal data, to object to certain processing, and to withdraw consent. If you're in California, you also have the right to know what we collect and to request deletion, and we will not discriminate against you for exercising your rights. To make a request, email us — see Contact us. We'll respond within the timeframe required by applicable law, and may need to verify your identity first.

13. Children

BoostHill is intended for adults. The Service is not directed to anyone under 18, and we do not knowingly collect data from minors. If you believe a minor has provided us data, contact us and we'll delete it.

14. Do Not Track & third-party links

Because we don't track you across other websites for advertising, we do not respond to browser "Do Not Track" signals differently. Our site may link to third-party sites and platforms; we're not responsible for their privacy practices.

15. Complaints

If you have a concern, please contact us first — we'll do our best to resolve it. You also have the right to lodge a complaint with your local data-protection authority.

16. Changes to this policy

We may update this policy from time to time. We'll revise the "last updated" date above, and significant changes will be highlighted where appropriate. Continued use after changes take effect means you accept the updated policy.

17. Contact

Questions about your privacy or this policy? Email hello@boosthill.com or use our contact form.