Integration image

MIDAS Privacy Policy

Effective Date: March 26, 2026  |  Last Updated: March 26, 2026

Midas Labs ("Midas Labs," "Company," "we," "us," or "our") owns and operates the MIDAS Network mobile application, the associated websites (including midasmine.com), and all related services that allow users to mine, hold, and interact with $MID (collectively, the "Services"). This Privacy Policy is a legally binding part of our Terms of Service and describes, in detail, what information we collect, why we collect it, how we use, store, retain, secure, and disclose it, and the choices and rights available to you.

By downloading, registering for, accessing, or using the Services, you confirm that you have read, understood, and agree to this Privacy Policy in full. If you do not agree with any part of this Policy, you must immediately discontinue use of the Services and must not create an account. If you are accessing the Services on behalf of an organization, you represent that you have authority to bind that organization to this Policy.

1. Definitions

  • "App" means the MIDAS Network mobile application, available on supported app stores.
  • "Personal Data" means any information that identifies, relates to, describes, or could reasonably be linked, directly or indirectly, with a particular individual.
  • "Non-Personal / Operational Data" means data generated by your use of the mining feature (such as mining key, token balance, and session logs) that does not, on its own, identify you.
  • "$MID" means the native utility token of the MIDAS Network, with a total supply of 5,000,000,000 tokens, used for transactions, staking, and governance within the ecosystem.
  • "Processing" means any operation performed on data, including collection, recording, storage, use, disclosure, or erasure.
  • "You" / "User" means any individual who registers for, accesses, or uses the Services.

2. Scope and Application

This Policy applies to all information collected through the App, midasmine.com and its subdomains, customer support channels, and any other official Midas Labs touchpoint that links to this Policy. It does not apply to third-party websites, wallets, exchanges, or services that may be linked from within the App, which are governed by their own privacy policies.

3. Information We Collect

We follow a data-minimization principle: we collect only what is necessary to operate a secure, fair, and personalized mining ecosystem.

3.1 Information You Provide Directly

Data Point Purpose
Email address Account login, recovery, security alerts, and service-related communication
Name In-app profile identification and personalization
Gender Customizing the in-app experience
Country Regional content customization and applicable regulatory compliance

3.2 Information via "Continue with Google"

If you register using Google Sign-In, Midas Labs receives only:

  • Your Google profile picture (where made available by your account settings); and
  • A cryptographic confirmation token verifying the validity and authenticity of your Google account, used exclusively to authenticate you and prevent fraudulent sign-ups.

We never receive, request, or store your Google password. We do not access Gmail, Drive, Contacts, Calendar, or any other Google product or scope beyond this limited profile confirmation. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

3.3 Automatically Collected Information

  • Google Advertising ID (GAID): a resettable, non-permanent identifier used to personalize your in-app and advertising experience. It does not, on its own, reveal your identity.
  • IP Address: logged at login, mining, and key account events for fraud detection, geographic verification, security monitoring, and to confirm the authenticity of mining activity.
  • Device and Technical Data: device model, OS version, app version, language settings, and crash/diagnostic logs, used to maintain compatibility, diagnose issues, and secure the platform.
  • Usage Data: in-app interactions, feature usage, session duration, and mining activity timestamps, used to improve the Services and detect anomalous behavior.

3.4 Mining, Wallet, and Account Activity Data

To operate the mining feature, we generate and store the following non-personal operational data tied to your account:

  • Mining key — a unique cryptographic identifier used to attribute mined $MID to your account and prevent duplication or theft of mining sessions.
  • $MID balance and transaction/mining history — used for reward calculation, ledger accuracy, and dispute resolution.
  • Referral and sponsor relationships (where applicable) — used to attribute referral rewards and detect referral-loop abuse.

This operational data is essential to the integrity of the network: it allows us to verify that mining rewards are earned through genuine, human-driven activity rather than bots, emulators, or multi-accounting schemes.

3.5 Information We Do Not Collect

We do not collect government-issued ID numbers, financial/banking details, precise real-time GPS location, biometric data, or private wallet keys/seed phrases for external wallets, unless a specific optional feature (such as identity verification for withdrawal thresholds) is separately introduced and separately disclosed to you at that time.

4. Legal Basis for Processing

Where applicable law requires a legal basis for processing (such as the EU/UK GDPR), we rely on one or more of the following:

  • Performance of a contract — processing necessary to provide the Services you signed up for;
  • Legitimate interests — such as fraud prevention, network security, and service improvement, balanced against your rights;
  • Consent — for optional processing such as advertising personalization, which you may withdraw at any time; and
  • Legal obligation — where processing is required to comply with applicable law or a lawful request from public authorities.

5. How We Use Your Information

  • Create, verify, and maintain your account;
  • Operate, calculate, and credit $MID mining rewards;
  • Personalize your in-app experience and advertising, where applicable;
  • Detect, investigate, and prevent fraud, multi-accounting, bot activity, referral abuse, and other violations of our Terms of Service;
  • Maintain the technical security, stability, and integrity of the App and backend infrastructure;
  • Respond to support requests and communicate service updates, security alerts, or policy changes;
  • Comply with applicable legal, tax, and regulatory obligations;
  • Conduct internal analytics and research to improve features, reliability, and user experience;
  • Enforce our Terms of Service and protect the rights, property, and safety of Midas Labs, our users, and the public.

We do not use your Personal Data for any purpose incompatible with those listed above without providing notice and, where required by law, obtaining your consent.

6. Cookies, SDKs, and Tracking Technologies

The App and website may use cookies, mobile SDKs, and similar technologies to:

  • Keep you signed in and remember preferences;
  • Measure app performance and diagnose crashes;
  • Deliver and personalize advertising through the Google Advertising ID;
  • Analyze aggregate usage trends to improve the Services.

You can reset or limit your Advertising ID, and control ad personalization, through your device's operating system settings ("Settings > Privacy > Ads" on most Android/iOS devices). We honor platform-level tracking permissions (such as Android's Privacy Sandbox settings and iOS App Tracking Transparency, where applicable) and will only access advertising identifiers consistent with the permissions you grant at the OS level.

7. How We Share Your Information

We do not sell your Personal Data. We do not rent, trade, or share your email, name, gender, country, or profile picture with third parties for their own independent marketing purposes. Your registration data is used strictly and internally by Midas Labs to operate, secure, and personalize the Services. Limited disclosure may occur only in the following circumstances:

  • Service Providers / Processors: vetted infrastructure, cloud hosting, crash-analytics, and advertising-identifier processors who act strictly on our instructions under confidentiality and data-processing agreements, and only to the extent necessary to deliver the Services.
  • Legal and Regulatory Compliance: where required to comply with a valid subpoena, court order, government request, or applicable law, or to establish, exercise, or defend legal claims.
  • Safety and Fraud Prevention: where necessary to investigate, prevent, or take action against suspected fraud, security threats, or violations of our Terms of Service, including sharing with fraud-prevention networks or law enforcement where warranted.
  • Business Transfers: in connection with a merger, acquisition, financing, reorganization, or sale of assets, provided the receiving party agrees to protect your data under terms substantially similar to this Policy.
  • With Your Consent: for any other purpose specifically disclosed to you at the time of collection, and only with your explicit agreement.

We require all third parties who process data on our behalf to implement appropriate technical and organizational safeguards and to process data solely for the purposes we specify.

8. International Data Transfers

Because the MIDAS Network serves users globally, your information may be processed and stored on servers located outside your country of residence. Where we transfer Personal Data across borders, we take reasonable steps — including contractual safeguards with our infrastructure and processing partners — to ensure your data continues to receive a level of protection consistent with this Policy and applicable law.

9. Data Retention

  • Active account data (email, name, gender, country, profile picture) is retained for as long as your account remains active and necessary to provide the Services.
  • Upon a verified account deletion request, Personal Data is deleted promptly and instantly from our live, production systems.
  • Non-personal operational data — mining key, $MID balance, and related mining/transaction logs — is retained for up to 30 days following account deletion. This limited retention window exists solely to allow account and transaction auditing, enabling us to detect and prevent scams, fraud, duplicate accounts, and other unauthorized activity before final erasure.
  • Following the applicable retention period, all remaining data is permanently and irreversibly deleted from active systems. Residual copies may persist briefly in encrypted, access-restricted backups until purged under our routine backup-rotation schedule (not exceeding 90 days).
  • We may retain limited data beyond these periods only where required to comply with a legal obligation, resolve a dispute, or enforce our agreements.

10. Account Deletion and Data Wipe

You are in full control of your data and may request deletion at any time through either of the following methods:

  • The "Delete Account" option available directly within App Settings; or
  • Our official deletion portal at https://midasmine.com/delete.

Once a deletion request is verified, your Personally Identifiable Information is removed instantly from our live systems. Non-personal operational data is retained for up to 30 days strictly for anti-fraud and security auditing purposes as described in Section 9, after which it is permanently erased. Note that deleting your account will result in the permanent, irreversible loss of any unclaimed $MID balance associated with that account; Midas Labs cannot restore data or balances after the retention window closes.

11. Data Security

We implement industry-standard technical and organizational safeguards designed to protect your information against unauthorized access, alteration, disclosure, or destruction, including:

  • Encrypted data transmission (TLS/HTTPS) between the App and our servers;
  • Authenticated, cryptographically signed API requests to prevent tampering, spoofing, and replay attacks;
  • Continuous IP-based monitoring and anomaly detection to identify suspicious or automated activity;
  • Role-based, need-to-know internal access controls for any system holding Personal Data;
  • Routine review and hardening of our infrastructure against known vulnerabilities;
  • Secure account-recovery flows to prevent unauthorized takeover.

No method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security. In the event of a data breach affecting your Personal Data, we will notify affected users and relevant authorities as required by applicable law.

12. Blockchain and Token-Related Disclosures

  • Depending on network design, transactions involving $MID may be recorded on a distributed ledger that can be publicly viewable and, by its nature, immutable. Where this applies, wallet addresses and transaction data recorded on-chain are not controlled by Midas Labs and cannot be altered or deleted by us once confirmed.
  • $MID is a utility token intended for use within the MIDAS Network ecosystem (transactions, staking, and governance). Nothing in this Policy, the App, or related communications should be construed as investment, financial, or legal advice, or as a guarantee of value, liquidity, or future utility of $MID.
  • Digital assets carry inherent risk, including price volatility and potential total loss. You are solely responsible for evaluating your participation in mining and token-related activity.

13. Your Privacy Rights

Depending on your jurisdiction (including, where applicable, rights under the GDPR, UK GDPR, CCPA/CPRA, and other regional data protection laws), you may have the right to:

  • Access the Personal Data we hold about you;
  • Correct inaccurate or incomplete data;
  • Delete your Personal Data, as described in Sections 9 and 10;
  • Restrict or object to certain processing, including advertising personalization;
  • Data portability, i.e., receive certain data in a structured, machine-readable format;
  • Withdraw consent at any time for processing based on consent, without affecting the lawfulness of processing before withdrawal;
  • Lodge a complaint with your local data protection authority or regulator.

To exercise any of these rights, contact us using the details in Section 19, or use the in-app tools described in Section 10. We will respond within the timeframe required by applicable law, and may need to verify your identity before fulfilling a request.

14. Children's Privacy

The Services are not directed to, and may not be used by, individuals under the age of 18. We do not knowingly collect Personal Data from minors. If we become aware that we have inadvertently collected data from a user under 18, we will take reasonable steps to delete that data promptly and, where applicable, terminate the associated account.

15. Fraud Prevention and Enforcement

By registering for and using the Services, you acknowledge and agree that IP logging, device identifiers, mining-key attribution, and the temporary post-deletion retention of non-personal data described in Sections 3, 9, and 10 are essential, proportionate security measures used to protect the integrity of the $MID mining ecosystem for all users. Any attempt to circumvent these measures — including through multi-accounting, spoofed or emulated devices, automated scripts or bots, or falsified referral activity — constitutes a material violation of our Terms of Service and may result in, without limitation: immediate suspension or termination of your account, forfeiture of mined or pending $MID, permanent denial of service, and referral to law enforcement or fraud-prevention networks where warranted, without prejudice to any other legal remedy available to Midas Labs.

16. Third-Party Links and Services

The App or website may contain links to third-party services (such as Google, social media platforms, or external wallets). This Policy does not apply to those third parties, and we are not responsible for their privacy practices. We encourage you to review the privacy policy of any third-party service before providing information to it.

17. Do Not Track and Regional Disclosures

Some browsers and devices offer a "Do Not Track" signal; because there is no common industry standard for interpreting such signals, our systems do not currently respond to them differently. Where required by regional law (for example, for California or EU/UK residents), we will provide additional jurisdiction-specific disclosures or a supplemental notice upon request.

18. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or the Services themselves. Material changes will be communicated through the App, by email, or via a prominent notice, and the "Last Updated" date above will be revised accordingly. Your continued use of the Services after such changes take effect constitutes your acceptance of the revised Policy. If you do not agree to the changes, you must stop using the Services and may request account deletion as described in Section 10.

19. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your Personal Data, please contact us at:

  • Email: privacy@midasmine.com
  • Data Deletion Portal: https://midasmine.com/delete_wallet
  • Company: Midas Labs

We aim to respond to all legitimate privacy inquiries within a reasonable time and in accordance with applicable law.