Controller and contact
BotRE processes personal data needed to provide and secure the service. Privacy, access, correction and deletion requests may be sent to the support email shown below. We may request reasonable proof of account ownership before acting, so that data are not disclosed to another person.
Data we collect
Depending on how you use BotRE, we process Telegram identifiers and usernames, verified email, password hash, account locale, sessions and security events; search filters, saved subscriptions and result history; connected Telegram channels and delivery status; plan and trial records; support messages; a transfer confirmation or cryptocurrency transaction identifier provided for manual reconciliation; and limited technical data such as truncated network identifiers, timestamps and browser session metadata. We do not store plaintext passwords, full card numbers, CVV, seed phrases or private keys.
Why we use data
We use data to create and secure accounts, run searches, prevent duplicate trial abuse, deliver alerts, connect authorized channels, show history and plan status, answer support, detect faults and abuse, comply with law and improve reliability. We do not sell personal data or use it for third-party behavioral advertising.
Legal grounds
Processing is based on performing the service you request, legitimate interests in security and reliable operation, and compliance with legal obligations. Where consent is required for the support widget or another technology, it is collected through that provider's controls.
Service providers and recipients
Data is shared only as needed with hosting, database, cache, backup and monitoring providers; Telegram for bot delivery; Resend for security email where enabled; tawk.to if you choose to use chat; a payment provider after checkout launches; and supported property platforms for requests needed to retrieve public listings. During the current manual activation process, we may process a transfer confirmation or cryptocurrency transaction identifier that you provide solely to reconcile payment and activate access. Never send a full card number, CVV, seed phrase or private key. Providers act under their own applicable terms and roles.
International processing
Telegram, email, hosting and support providers may process data in countries other than yours. Where required, the operator uses contractual and organizational safeguards appropriate to the provider and transfer. Review linked provider notices before enabling optional support chat.
Retention
Account identities and active configuration are kept while the account is needed. Current operational defaults retain terminal search history and subscription runs for 90 days, notification outbox data for 30 days, listing cache for 180 days, sent-item deduplication keys for 365 days, security events for 180 days and Web sessions for up to 30 days. Trial-device protection can persist for up to two years. Data may be kept longer when necessary for security, disputes or law, then deleted or anonymized.
Your choices and rights
You can review and change account details, revoke sessions, and pause or delete subscriptions. Subject to applicable law, you may request access, correction, deletion, restriction, objection or a portable copy, and may complain to the competent data-protection authority or a court. Under Georgian law, information or a copy is generally provided within 10 working days, with a justified extension only where permitted. Some records may be retained where law or abuse prevention requires it.
Security and changes
BotRE uses encrypted transport, Argon2id password hashing, opaque revocable sessions, CSRF controls, rate limits and restricted administrative access. No system is risk-free; contact support immediately if you suspect compromise. Material policy changes will be posted here with a revised date.