Xento

Legal

Privacy Policy

Last updated August 5, 2026

Overview

Xento (“we”, “us”) is a quest platform where you complete challenges, earn points, and claim rewards. This policy explains what information we collect, why we collect it, and the choices you have. It applies to the Xento website and mobile app.

Information we collect

Account information. We use Privy to sign you in. Depending on the method you choose, we receive your email address, your Google or X account identity, or a wallet address. Privy may also create an embedded wallet for your account.

Profile and activity. Your display name, the quests you start and complete, the points you earn, the rewards you claim, and your leaderboard standing.

Quest submissions. When a quest asks for proof — such as a link to a social media post — we store what you submit and review it to decide whether the quest step is complete.

Connected accounts. Some quests let you connect a YouTube account. When you do, we receive your channel identity from Google so we can verify quest activity. We do not receive your Google password.

Usage analytics. We use Google Analytics to understand how Xento is used — which pages are opened, which quests are started and finished, and which parts of the site people give up on. Google sets cookies to do this and receives your IP address, from which it derives an approximate location. We do not send your email address, wallet address or display name to Google, and we do not use analytics to build advertising profiles.

How we use information

We use your information to operate Xento: to sign you in, track quest progress, award points, verify submissions, run the leaderboard, deliver rewards, prevent cheating and abuse, and provide support. We do not sell your personal information.

YouTube and Google API Services

Xento uses YouTube API Services to verify quest activity on connected YouTube accounts. By connecting a YouTube account you agree to the YouTube Terms of Service. Google’s handling of your data is described in the Google Privacy Policy. You can revoke Xento’s access to your Google account at any time via the Google security settings. Xento’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Sharing

We share information only with service providers that help us run Xento — Privy for authentication, Supabase for data hosting, and Google Analytics for usage measurement — and when the law requires it. Your display name (or a shortened wallet address), quest count, and points appear on the public leaderboard.

Data retention and deletion

We keep your information while your account is active. You can delete your account and the data attached to it at any time from xento.org/delete-account, or by contacting us. Either way we remove it unless we are required to keep it for legal or anti-fraud reasons.

Children

Xento is not directed at children under 13 (or the minimum age in your country), and we do not knowingly collect their information.

Changes and contact

We may update this policy from time to time; the date above reflects the latest revision. Questions or requests can be sent to support@xento.org.