Privacy Policy
Last updated: January 2026
1. Information We Collect
CSfi.exchange collects information necessary to provide our options trading services:
- Wallet addresses connected to the Platform
- Transaction history and trading activity
- Steam account information for custody verification
- Device information for security purposes
Privacy questions, access requests, and processor questions can be routed through the contact path below while the controlled beta is operating.
2. How We Use Your Information
We use collected information to:
- Process and execute options trades
- Verify custody of CS2 Skins
- Prevent fraud and ensure platform security
- Comply with legal and regulatory requirements
3. Steam Data
Steam linking may process your Steam identifier, profile visibility signals, inventory metadata, item identifiers, market names, images, tradability or custody-relevant status, and timestamps needed to map eligible inventory and support deposit or settlement workflows.
Read-oriented Steam linking does not by itself deposit a skin. Separate custody, settlement, or withdrawal actions can require additional prompts, checks, and records.
4. Wallet and Blockchain Data
Transactions on the Solana blockchain are public and immutable. Your wallet address and transaction history on the blockchain are visible to anyone. We do not control this public data.
CSfi may associate wallet addresses with session state, quote activity, custody records, support requests, and transaction evidence to provide the beta service and investigate disputes or abuse.
5. Security
We implement industry-standard security measures including encryption and access controls. However, no system is completely secure, and we cannot guarantee absolute security.
Access to operational data should be limited to personnel and processors who need it for platform operation, security, support, compliance, analytics, or incident response.
6. Retention, Analytics, and Processors
We retain wallet, Steam, trading, device, and support data only as needed for platform operation, security, compliance, and dispute handling. Analytics and third-party processors must be disclosed before use and should align with the controlled beta event schema.
CSfi has selected Plausible as the first-release web analytics provider because it can operate without cross-site advertising cookies. Analytics is disabled unless the public Plausible environment variables are configured, and CSP should allow only the documented analytics endpoints.
Retention periods can vary by record type. Custody, transaction, audit, dispute, security, and compliance records may need to be retained longer than session analytics or support triage metadata.
7. User Rights and Contact
For access, correction, deletion, or privacy inquiries, use the contact details below or visit the Contact page. Review Security and Custody for related controls.
Some requests may be limited where data is required for security, dispute handling, transaction evidence, legal obligations, or public blockchain records that CSfi cannot alter.
For privacy inquiries, contact privacy@csfi.exchange