1. Introduction
This Privacy Policy explains how Jade Client ("Jade", "we", "us", "our") collects, processes, stores, and protects your information when you visit https://jadeclient.top, authenticate, download our software, or use our cloud configuration services.
We are committed to respecting your privacy and protecting any personal data entrusted to us in compliance with applicable data protection laws, including the European Union General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).
2. Information We Collect
We only collect information strictly necessary to provision licenses, authenticate users, and prevent fraud:
- Account Information: When you register an account, we collect your email address and an encrypted/salted hash of your password. We never store passwords in plaintext. If you sign in via Google OAuth, we receive your verified Google account email and an authentication token from Google.
- Hardware Identifier (HWID): When you launch the Jade injector, a one-way cryptographic hash of your system hardware configuration is generated and transmitted to our authentication backend. This hash is used solely to verify that the active machine corresponds to your authorized seat and to prevent unauthorized multi-machine distribution. We cannot reconstruct your hardware details or access personal files from this hash.
- Network & Security Logs: When accessing our website or API endpoints, Cloudflare and our edge proxies log IP addresses, browser user agent strings, and request timestamps for rate limiting, DDoS protection, and security audits.
- Transaction Records: We do NOT collect or store your payment card numbers, bank account numbers, or cryptocurrency private keys. All payment transactions are handled directly by PCI-DSS compliant merchant processors (PayPal or SellAuth). We receive only order status, transaction ID, date, and license entitlement details.
- Cloud Synchronization Data: If you utilize our cloud configuration feature, your custom module presets, keybinds, and visual settings are stored on our servers so you can synchronize configurations across sessions.
3. How We Use Your Information
We process your data for the following legitimate purposes:
- To authenticate your identity, generate license keys, and activate your software client.
- To enable self-service HWID resets from your web dashboard.
- To synchronize your custom module profiles and cloud settings.
- To detect, investigate, and prevent piracy, cracking, abuse, and unauthorized access.
- To communicate critical account notices, such as verification codes and password reset links.
- To fulfill customer support requests and diagnose technical issues.
4. Third-Party Service Providers
We work with trusted third-party providers to operate our infrastructure:
- Cloudflare: Content delivery network (CDN), DDoS mitigation, edge compute (Cloudflare Workers & Pages), and security infrastructure.
- PayPal & SellAuth: Checkout platforms managing payment processing, transaction records, invoice generation, and tax compliance.
- Google Identity Services: Optional one-click Google OAuth authentication.
- Resend / Email Gateways: Transactional email delivery for account verification and password recovery.
We never sell, rent, monetize, or trade your personal data with third-party advertisers or data brokers under any circumstances.
5. Cookies & Local Storage
We do not use tracking cookies or third-party marketing beacons. We use standard browser sessionStorage and localStorage strictly for essential functional operations:
jade_user_token: Stores your JSON Web Token (JWT) session so you remain signed into your dashboard.jade_verification_email: Temporarily retains email address during the multi-step account verification process.
6. Data Security & Retention
All communications between your browser/injector and our servers are encrypted in transit using industry-standard TLS 1.3 / HTTPS protocols. Sensitive credentials are salted and hashed at rest. We retain account and license records as long as your license is active. If you request account deletion, non-essential data will be purged within thirty (30) days, except where retention is legally required for financial records and fraud prevention.
7. Your Rights (GDPR & CCPA)
Depending on your geographic location, you possess legal rights regarding your personal information:
- Right of Access: You may request a copy of the personal information we hold regarding your account.
- Right of Rectification: You may correct inaccurate or incomplete account details.
- Right of Erasure ("Right to be Forgotten"): You may request permanent deletion of your account, subject to legal and financial retention requirements.
- Right to Restrict Processing: You may object to specific types of processing.
To exercise any of these rights, please email our privacy team at [email protected]. We respond to all verified requests within thirty (30) days.
8. Children's Privacy
Our services are not intended for individuals under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that a child under 13 has provided us with personal data, we will immediately delete such information.
9. Policy Updates
We may revise this Privacy Policy periodically to reflect technological changes or legal requirements. Material updates will be indicated by revising the "Last Updated" date above.
10. Contact Us
For questions, privacy inquiries, or data requests, contact us at [email protected].