Privacy policy

What data we collect, why we collect it and how long we keep it — stated as plainly as we could manage.

Last updated 2026-09-26 VER. 1.1

01 Data controller

This policy applies to the priamnetwork.com website and the Priam Network Android app, operated by Turgay Kıygı ("we", "Priam Network").

  • Entity: Turgay Kıygı (sole proprietorship)
  • Address: Hacı İlyas Mah. 15. Gül Sk. Tokaç Saray İş Hanı No: 6/C, Osmangazi / Bursa, Türkiye
  • Tax ID: 5590592184 (Uludağ Tax Office, Türkiye)
  • Contact: privacy@priamnetwork.com

02 Data we collect

We collect the minimum needed to run the service.

Account data

  • The username you choose
  • Your email address — required at registration and subject to verification
  • A random installation identifier (UUID) generated on your device, and the device model
  • The username of whoever invited you, if any

If you sign in with Google

  • Your display name and the account identifier assigned by that provider. Your email address comes straight from the provider and counts as verified
  • Used only to create your account or link it to an existing one
  • We never receive your password, your contacts or your friend list

Usage data

  • Mining session start/end records
  • Reward balance and transaction history
  • Referral links

Technical data

  • App version and device model
  • Diagnostic logs (they contain no personal content)
  • IP address (short-lived, for abuse prevention)

Profile photo

Uploading a profile photo is entirely optional and no part of the app depends on it.

  • The photo is re-encoded to a 512x512 square; the original file is not kept and location metadata (EXIF) is not carried over
  • Your photo is NOT shown to other users — only you and an administrator can see it
  • The address uses an unguessable file name but is served without an authorisation check: anyone you share the address with can also see the photo
  • We do not pre-moderate. An uploaded photo is stored immediately; images found inappropriate are removed on report
  • You can remove it at any time from the app or by deleting your account; removal also deletes the file from disk

The photo is not processed biometrically: no face recognition, matching or measurement is performed.

What we do not collect

  • Location data
  • Contacts access
  • Cross-app tracking data or an advertising profile

Advertising ID

To show the rewarded ad, Google's ads SDK accesses the device advertising ID. Watching an ad is optional; the app works if you never do.

ID documents

We do not collect ID documents today. If identity verification opens during a withdrawal period, an ID document and a selfie may be requested; this is announced separately when the period opens.

Mission proof images

Some missions ask for a screenshot as proof. Sending an image is entirely optional; if you do not, you simply cannot complete that mission.

  • The app only accesses the SINGLE FILE YOU PICK; we do not ask for access to your whole photo gallery
  • The image is re-encoded on the server; the original file is not kept and location data (EXIF) is not carried over
  • The proof is stored in a folder that is not reachable from the internet and only an admin, after an authorisation check, can view it — it is NEVER shown to other users
  • If your submission is deleted, the image is deleted from disk too

Support messages and attachments

When you open a support ticket in the app we keep the text you wrote; the conversation is the only way to work a problem out and reply to you.

  • You may attach a screenshot if you want to. Not attaching one costs you nothing; it is simply the easy way to show what you are describing
  • The app reaches only THE ONE FILE YOU PICK; we do not ask for access to your whole photo gallery
  • The image is re-encoded on the server; the original file is not kept and location data (EXIF) is not carried over
  • The attachment is stored in a folder that cannot be reached from the internet and only an administrator can open it, after a permission check — it is NEVER shown to other users
  • If you delete your account, your support messages and their attachments go with it

03 Purposes and legal bases

  • Providing the service — creating your account, running sessions, calculating rewards. *Basis: performance of a contract.*
  • Security and abuse prevention — fake account detection, rate limiting. *Basis: legitimate interest.*
  • Legal obligations — keeping records required by law. *Basis: legal obligation.*
  • Communication — newsletter and support correspondence. *Basis: consent.*

Recording the age declaration. The moment you declared that you are 18 or older is kept on your account as a timestamp. We do not process your date of birth or your age; the only thing stored is when the declaration was made.

04 Sharing with third parties

We do not sell personal data. Sharing happens only in the following cases and only as far as necessary:

  • Infrastructure providers — server hosting (Hetzner Online GmbH, Falkenstein, Germany) and email delivery (Zoho Corporation / ZeptoMail, EU endpoint)
  • Advertising partners (Google AdMob) — only when you opt into watching an in-app ad. So the reward can be credited to you, your account number is passed to Google and Google sends it back to us in the verification callback; the device advertising ID is also used to serve the ad
  • Google (Firebase Cloud Messaging) — to deliver a notification, your device notification token and the notification text pass through Google's servers
  • Google (sign-in) — when you sign in with Google, Google verifies your identity
  • Cloudflare — when the bot check (Turnstile) runs on a form on the site, your IP address and browser details are passed to Cloudflare
  • Authorities — only in response to a properly formed legal request

The app contains no third-party analytics SDK.

05 Retention

  • Account data — while the account is open; at most 30 days after a deletion request
  • Session and reward records — for the life of the account (accounting records are irreversible)
  • IP address — 30 days; after that the address field is emptied while the record itself stays. Security records (admin sign-in attempts and IP bans) are an exception: the address is kept until the record itself is deleted — 90 days for sign-in attempts.
  • Diagnostic logs — no fixed period. When the log file passes 8 MB it is rotated into a previous generation and anything older than that is deleted
  • Support messages and attachments — as long as the account exists; deleting your account deletes both the messages and their attachments

Which reminder email you received. We keep, indefinitely, the fact that a given lifecycle email was sent to you (message type + date). The sole reason is to avoid sending you the same message twice; the record does not contain the text of the message. If your account is permanently deleted, this record is deleted with it.

Undeliverable addresses. If an email we send bounces back, the address and the single-line error description returned by the receiving server are kept for 1 year, then deleted. The raw content of the bounced message is not stored. This record exists so that we do not keep sending mail to an address that cannot receive it.

06 Your rights

Under applicable law you have the right to access, rectify, erase, restrict processing of, and port your data.

Write to privacy@priamnetwork.com or use the support form with the "Legal / data request" topic. Requests are answered within 30 days.

If you reside in Türkiye, see the KVKK notice for your rights under Law No. 6698 and how to exercise them.

07 Children's privacy

The service is not directed at anyone under 18, and you must be 18 or older to open an account.

At registration you are asked to declare that you are 18 or older; no account is created without that declaration. We do not ask for your date of birth and we do not operate any method of verifying your age.

If we learn that we have collected data from a user under 18, we close the account and delete their data.

08 Changes

We may update this policy from time to time. Material changes are announced in the app and on this page. The date at the top of the page reflects the last update.