Last updated
Information we handle
Browsing sends standard technical data such as your IP address, user agent, and request time. If you sign in with Discord or X, we receive your provider ID, display name, and profile image when available.
We do not request your provider email; the authentication system creates a non-deliverable internal address for your account record. X sign-in uses read scopes to request your current profile. We also store encrypted provider credentials, session records, and account activity such as balances, positions, trades, ledger entries, submissions, moderation, and resolutions.
How we use it
We use this information to authenticate accounts, operate events, keep balances accurate, review submissions, resolve outcomes, secure the service, and investigate errors. Your signed-in user ID or IP address may be used for short-lived rate-limit counters.
Discord or X and the providers hosting the web app, API, database, and rate-limit service—including Vercel and Railway—process relevant data under their own privacy terms.
Public information
Events, prices, and outcomes are public. The public leaderboard includes your Ponymarket user ID, display name, profile-image URL, play-money portfolio value, and profit. Positions, identifiable trades, and submission reviews are otherwise limited to authenticated or administrative views.
Cookies and retention
Public events can be browsed without signing in. Ponymarket uses an essential authentication cookie, and a pending trade may be kept temporarily in the current browser tab. No advertising or analytics service is configured. Signing out ends the current session.
Trade, ledger, moderation, and resolution history may be retained to keep the play-money record accurate. Corrections and voids use additional records instead of rewriting that history.