Privacy Policy
DNS://Money operates payment-routing infrastructure. We resolve pay: names into payment instructions and emit ISO 20022 compatible messages. We are not a bank, we do not hold customer funds, and we do not maintain consumer accounts.
What we collect
- API key request data — the email address you provide and any free-text context. This is the only personally identifying data we deliberately collect.
- API request metadata — endpoint, timestamp, status, latency, error code. Used for service operation, debugging, and abuse prevention.
- Cookies and analytics — Google Analytics 4 and Meta Pixel on the marketing site for aggregate traffic measurement. You can block these with a tracker-blocking extension or browser setting without affecting API access.
What we do not collect
- Bank account numbers, card numbers, or any traditional financial credentials.
- Government identifiers, KYC documents, or biometric data.
- Counterparty names or transaction memos beyond what you submit through the API for the purpose of routing.
On-chain data is public
Registered pay: names are anchored on the XRP Ledger via the FAS-1 protocol. Transactions and FAS-1 anchors are public, immutable, and globally visible on every XRPL node and explorer. Once anchored, an entry cannot be edited or removed. Choose your alias and any associated wallet with that in mind.
OFAC and sanctions screening
We screen counterparty XRPL addresses against OFAC SDN and equivalent sanctions lists before resolving payment instructions. Hits are blocked at the resolver. Screening is regulatory-driven, not optional, and applies to every resolution that touches a sanctioned jurisdiction. Cached screening results have a 24-hour TTL.
Data sharing
We do not sell or rent personal data. We share data only with:
- Infrastructure providers (hosting, error tracking, analytics) under standard data-processing terms.
- Sanctions and compliance vendors for the screening described above.
- Law enforcement or regulators when required by valid legal process.
Retention
API key requester emails are retained for the lifetime of the key plus seven years for audit. API request metadata is retained for ninety days for operational use and may be retained longer in aggregated, non-identifying form. On-chain data lives on the XRP Ledger forever, outside our control.
Your rights
You can request deletion of your API key request email or a list of metadata associated with your key by emailing the contact below. We cannot alter or remove on-chain records.
No fiduciary relationship
Use of the API does not create a banking, brokerage, custodial, advisory, or fiduciary relationship between you and DNS://Money.
Contact
privacy@dnsofmoney.com