Privacy Policy
Last Updated: August 20, 2025
Notice at Collection (California Civil Code §1798.100(b)) – We collect the categories of personal information listed in Section 3 for the business and commercial purposes described in Section 4. We do not “sell” or “share” your personal information for cross-context behavioral advertising as those terms are defined under the California Consumer Privacy Act, as amended by the CPRA.
1. Overview
This Privacy Policy explains how Wewe Holdings Corp. (“Company,” “we,” “our,” or “us”). collects, uses, discloses, and safeguards information when you download, access, or use the WEWE mobile application, related websites, and any online products or services that link to this Policy (collectively, the “Platform”).
The Platform lets U.S. users create, commit to, and swap tokens (“Meme Coins”)on the Solana network through a self-custodial wallet.
By using the Platform, you acknowledge that you have read and understood this Policy and our Terms of Service. If you do not agree, please do not use the Platform.
2. Scope & Eligibility
This Policy applies to personal information we process about natural persons who access the Platform while physically located in the United States. The Platform is not directed to children under the age of 18, and we do not knowingly collect personal information from them.
3. Information We Collect
Category of Information
Specific Items
Source
Identity & Account Credentials
Invite code, username, social media handles, phone number, session token, email, session tokens tied to FaceID, Face Unlock, or similar security-enclaved features
You
Device & Technical Identifiers
Device ID/UUID, push-notification token, permission statuses (access to camera, photos, notifications), IP address
Automated
Wallet & Blockchain Identifiers
Self-custodial wallet public address, proposal and token contract addresses that you view or interact with
You + Onchain
Profiles & Preferences
Bio information, profile photo, social media handles and links, information related to your social media profiles (image, username, email), runtime payment-method preference, email address
You
Transactions
Wallet balances, onchain transaction history, backer score, reward entitlements, complete onchain transaction history
Onchain
App Usage & Behavior
Searches, backed/created proposals, coins bought/sold, invite activity, notification log
Automated / Provided by You
Meme Coin Page
Proposal addresses, wallet address, token information, backer information, images
You + Onchain
Web Traffic
Cookies, IP address, MAC address, browser and device information, internet service provider information, metadata
Automated / Provided by You
User Communications
Email address, phone number, survey information, other information you may provide directly to us when you communicate with us
You
† Your private key never leaves your device. We cannot recover it if lost; keep backups of your seed phrase.
When you enable Face ID, Face Unlock, or similar security features, your device processes biometric data locally. We never receive, store, or have access to your actual biometric data—we only receive success/failure authentication signals from your device's operating system. We only receive confirmation or failure messages of any login using these credentials via OS-level APIs.
4. How We Use Information
Purpose
Legal/Business Need
Provide & secure the Platform (create profile, create account, create wallet, authenticate sessions, enable onchain transactions, secure account, prevent fraud)
Contract performance; Legitimate interests; Consent
Operate core features (aggregate transaction information, token information, backer information, creating/backing/swapping tokens)
Contract performance; legitimate interests; Consent
Personalize experience (profile, saved settings, search history, connect to social platforms)
Legitimate interests
Communications (transactional push notifications, invite codes, customer support)
Contract performance; Consent
Analytics & product improvement (aggregated, de-identified metrics, crash logs (both device-scoped and aggregated, de-identified)
Legitimate interests
Marketing with your consent (optional newsletters, marketing campaigns, surveys)
Consent
Legal compliance (court orders, sanctions screening, accounting)
Legal obligations
Fraud Prevention and Blacklisting (user information, wallet information, device information)
Legitimate interests; Legal obligations
We always seek to minimize the amount of data we may collect, as well as the time which we may retain it, subject to our needs or legal requirements. We will not try to re-identify data that has been de-identified unless required or compelled to do so by lawful order or request, or in cases of need according to our contractual requirements or efforts to prevent fraud or misuse.
5. Blockchain-Specific Disclosures
Public & Immutable Ledger. Blockchain data—including your wallet address, token balances, and transaction history—is publicly accessible, replicated worldwide, and cannot be altered or deleted once written. Your privacy rights (e.g., deletion, rectification) do not extend to data that is permanently recorded on chain.
Wallet and Account Balances. We do not consider your onchain information (e.g., wallet address, token balances) to constitute financial information, nor do we infer any information about you outside the scope of what we disclose in this Policy or on the Platform.
Self-Custody. You control the private keys to your wallet. We never possess, store, or see your private key, seed phrase, or passkey. If you lose them, we cannot restore access. This non-custodial model follows best practices used by other leading wallets.
Smart Contracts and Third-Party Applications. Interacting with a smart contract or decentralized application (dApp) is at your own discretion and subject to that contract’s code and disclosures, which we neither control nor audit.
6. When We Disclose Information
We share information only as necessary, never for cross-context behavioral advertising or “selling.” Categories of recipients:
Service Providers – cloud infrastructure, analytics providers, blockchain and wallet infrastructure and service providers (e.g., Meteora, Privy), crash reporting, SMS and push-notification gateways, customer-support ticketing. All are contractually bound to process data solely under our instructions. You may also be subject to additional terms and data handling policies based on your use of these service providers. All service providers are bound by written data processing agreements that prohibit them from using your personal information for any purpose other than providing services to us, require them to maintain appropriate security measures, and obligate them to assist us in responding to your privacy rights requests.
Law Enforcement, Judicial Process, or Regulators – in response to valid legal process or to meet obligations (e.g., warrants, court orders, subpoenas, agency or law enforcement investigations).
Corporate Transactions – if we undergo a merger, acquisition, or asset sale, subject to confidentiality protections.
With your Direction or Consent – e.g., when you post a public profile or grant third-party data aggregation tools access to your data.
7. Cookies and Tracking Technologies
The mobile app uses software for crash reporting, analytics, and notification delivery. We do not use advertising IDs (IDFA/AAID) or cross-app tracking. We do not link device or usage data to third-party data for targeted advertising, and we do not pass device identifiers to ad networks.
8. User-generated Content
We may collect and process content you or other users provide through the Platform (Meme Coin logos, descriptions) (“Content”). You consent to providing this Content to us for these purposes subject to the ownership, licensing, and content requirements set forth in our Terms. We do not knowingly collect or host content that violates any third-party intellectual property right(s) or other applicable laws. We reserve the right to remove and delete unlawful User-generated Content or Content that violates our Terms.
9. Data Retention
Server-side personal data – retained only as long as necessary for the purposes described or as required by law (e.g., tax or accounting records, fraud prevention, legal obligations).
Analytics & logs – 30 days rolling retention, or until specific analytics purposes are fulfilled, whichever is sooner, after which logs are aggregated, anonymized, or deleted as applicable.
Onchain data – permanent; outside our control.
Account deletion requests – we remove server-side data within thirty (30) days of our receipt of a deletion request to prevent account spamming, subject to lawful holds or our requirements to detect and prevent fraud or misuse. Deletion cannot affect blockchain data already published.
10. Your Choices & Privacy Rights
10.1 In-App Controls
View/edit profile and bio.
Toggle push notifications.
Enable/disable biometrics (such as FaceID).
Export or delete local wallet and data.
10.2 State-Specific Rights (CA, CO, CT, UT, VA)
Depending on your U.S. state of residence, you may have rights to:
Right
Description
Access
Request the categories and specific pieces of personal information we hold.
Deletion
Ask us to delete personal information we collected from you (excluding immutable blockchain data and data we must lawfully retain or else retain to prevent fraud/abuse).
Correction
Request corrections to inaccurate information we maintain.
Portability
Obtain a copy of information in a portable format.
Opt-out of Targeted Advertising / Marketing
Notify us via the requests or in-app if you would ever like to opt out of any targeted advertising, marketing, or communications.
Submit requests via support@mywewe.io.
We will verify your identity (e.g., signed message from your wallet, SMS token, or via email) and respond within the timeframes required by law. If we deny your request, you can appeal by emailing support@mywewe.io.
If you live in a state that allows it, such as California, you may appoint an authorized agent to act on your behalf. An authorized agent must provide documentation showing legal authority to make the request, such as a notarized power of attorney or a signed authorization from the consumer. We may also reach out to the consumer directly to verify identity or confirm that the agent has permission. Authorized agents should submit requests by emailing legal@mywewe.io.
10.3 Marketing Preferences
You may unsubscribe from marketing emails at any time by clicking the “unsubscribe” link or adjusting in-app toggles.
10.4 Do Not Track
The Platform does not respond to browser Do Not Track (“DNT”) signals.
10.5 Appeals Process for Denied Privacy Requests
If we deny your request(s), you may appeal our decision by contacting us at support@mywewe.io. If you have concerns about the result of an appeal, you may contact the attorney general’s office in the state where you reside. Information for contacting your state’s attorney general’s office, or else submitting a written complaint, can often be found on their respective website or via their listed phone number.
10.6 Non-discrimination
We do not discriminate against you for exercising any rights you have regarding your privacy and data, including by unfairly restricting your access to the Platform, or providing you different treatment with respect to our services.
11. Children's Privacy
We do not knowingly collect personal information from anyone under the age of 18, and the submission of such information is a violation of our Terms. If you believe a child has provided us with personal information, contact support@mywewe.io and we will take appropriate action.
12. International Transfers and Data
The Platform is not offered to persons who do not reside in the United States and we do not knowingly collect information from persons or sources outside of the United States. Circumventing our geographic restrictions is a violation of our Terms. Our servers are located in the United States. If you access the Platform from outside the U.S., you consent to the processing of your information in the U.S., where laws may differ from those in your jurisdiction.
13. Third-Party Sites & Services
The Platform may contain links or integrations with third-party sites, dApps, or smart contracts. Your interactions with those properties are governed by their privacy policies or practices, not ours.
14. Changes to this Policy
We may update this Policy periodically. If we make material changes, we will notify you by:
Updating the “Last updated” date;
Posting an in-app banner or push notification; and
Emailing you (if you have provided an email address) or providing notice within the Platform.
Continued use of the Platform after being provided notice constitutes your acknowledgment and acceptance of the revised Policy.
15. Security and Notices
We employ industry-standard safeguards, including end-to-end encryption at rest, periodic third-party penetration testing, auditing, and role-based access controls. We maintain an incident-response plan and will notify affected users and regulators of a data breach in compliance with applicable U.S. state laws.
16. Export Controls and Restricted Jurisdictions
Via Mail:
WEWE Holdings Corp.
Attn: Privacy Office
201 E Center St
Ste 112-3484
Anaheim, CA 92805
Via Email:
Email: support@mywewe.io
Subject: “WEWE User Privacy Request”
