GEPUGEPU.
TRADE COMPUTE ACCOUNT PROTOCOL
Connect Wallet

Privacy Policy

Effective date: July 13, 2026 · Applies to gepu.ai and all subpages ("the Service")

1. Who we are

GEPU ("we", "us", "the protocol") operates the Service: a trading interface for tokenized GPU compute hours, currently running against the Solana devnet. This policy explains what information the Service touches, what we store, what we deliberately do not collect, and the choices you have. It is written to be read; if anything below is unclear, ask us on X at @gepu_ai.

2. Our starting position: collect as little as possible

The Service is designed so that most of what you do never leaves your browser. Market data — prices, candles, order book levels, the trade tape — is generated locally by a deterministic engine running in your own browser session. Watching the terminal, switching markets, changing timeframes, and using the order ticket calculator involve no account, no tracking pixel, no analytics script, and no advertising identifiers. We do not use cookies for tracking and we do not fingerprint devices.

3. Information we process, by feature

3.1 Wallet connections. When you connect a Solana wallet (Phantom, Solflare, or Backpack), the wallet shares your public address with the page. The page uses it to read your public SOL and USDC balances from a public devnet RPC endpoint (api.devnet.solana.com). Your public address is exactly that — public — and connecting does not reveal your keys, seed phrase, or any other account to us. We never request message or transaction signatures except for order confirmations you explicitly initiate.

3.2 Trading. When you place an order and sign the devnet confirmation transaction, the Service stores a fill record on our server so that your positions and profit-and-loss survive page reloads. A fill record contains: your public wallet address, the market, side, size, price, leverage, the devnet transaction signature, and a timestamp. This is the minimum needed to show you your own positions. Fill records are keyed to public addresses only — we hold no name, email, or identity document to associate with them.

3.3 Referrals. When you generate a referral link, we store your public wallet address, your referral code, your points balance, and your referred-visitor count. To count unique referrals and prevent abuse, when someone opens a referral link the server stores a salted, truncated hash of that visitor's IP address scoped to the specific referral code. The raw IP address is not stored, and the hash cannot be reversed into an IP or reused across codes. The public leaderboard displays wallet addresses in masked form (first and last four characters).

3.4 Provider applications. The "Provide compute" form does not submit anything to us. It opens a draft email in your own mail client addressed to providers@gepu.ai containing only what you typed. If you send that email, we receive it as ordinary correspondence and use it solely to evaluate your application.

3.5 Local storage. The Service keeps a few values in your browser's local storage so the page behaves consistently: which wallet type you last connected (so it can silently reconnect), your referral code, and a flag noting that this browser already claimed a referral visit. These values stay on your device; clearing site data removes them completely.

3.6 Server logs. Our hosting provider (Railway) may keep standard, short-lived infrastructure logs (request paths, response codes, coarse timing) for operating the platform. We do not build user profiles from them.

4. What we specifically do not do

We do not run third-party analytics. We do not sell, rent, or trade any data. We do not serve ads or share data with ad networks. We do not attempt to link wallet addresses to real-world identity. We do not store raw IP addresses in application data. We do not use tracking cookies, and the Service functions fully with all cookies blocked.

5. Third-party services the page talks to

Your browser makes requests to a small number of third parties that are necessary for the page to function: Google Fonts (typefaces), unpkg.com (the TradingView Lightweight Charts and Solana web3 libraries), and api.devnet.solana.com (public blockchain RPC, only after you connect a wallet or sign an order). Each of these sees your IP address as a normal consequence of serving a web request, under their own privacy policies. If you follow an outbound link — for example to x.com or faucet.solana.com — the destination site's policy applies from that point.

6. Blockchain data is public and permanent

Transactions you sign are broadcast to the Solana devnet, a public network. Signatures, addresses, and transaction contents are visible to anyone and cannot be deleted by us or by you. Assume that anything committed to a public chain is permanent. This is inherent to how blockchains work and is not within our control.

7. Retention

Referral records and fill records persist for the life of the devnet program so that leaderboards and positions remain meaningful. Devnet is a testing environment: we may reset, prune, or migrate this data as part of moving to mainnet, and points or positions may be snapshotted at dates announced on @gepu_ai. Email correspondence is retained as long as needed to handle your request.

8. Your choices and rights

You can use the entire read-only Service without connecting anything. You can disconnect your wallet at any time from the account menu; disconnecting stops all balance reads. You can clear local storage to remove every value the Service kept on your device. You may request deletion of the server-side records tied to your wallet address (referral entry, fills) by contacting us from a message signed by, or verifiably associated with, that address — we will remove them within a reasonable time, noting that on-chain data cannot be removed by anyone. Depending on your jurisdiction you may have additional statutory rights (access, rectification, erasure, portability, objection); we honor reasonable requests regardless of jurisdiction.

9. Security

The Service is non-custodial by design: we never hold keys or funds, which removes the most serious class of risk entirely. Server-side data is limited to the records described above, stored on access-controlled infrastructure, transported over TLS, with API writes rate-limited. No internet service can promise perfect security; we promise a minimal attack surface — there is simply very little here to steal.

10. Children

The Service is not directed at children and we do not knowingly process information about anyone under 18. If you believe a minor has interacted with the Service in a way that left data with us, contact us and we will delete it.

11. Changes to this policy

We will update this page when practices change — in particular when mainnet contracts launch, which will add on-chain settlement and may change what the Service stores. Material changes are announced on @gepu_ai, and the effective date at the top always reflects the current revision. Continued use after a change constitutes acceptance of the revised policy.

12. Contact

Privacy questions, deletion requests, or anything unclear: reach us on X at @gepu_ai or by email at providers@gepu.ai.

ENGINE LIVE | SOLANA DEVNET | $GEPU $0.000228 ▲2.0%
V0.2.5 | | CONTRACT | X · @GEPU_AI ↗ | PRIVACY | TERMS | SITE ↗
BOOT LOG