Last updated 30 September 2026
The short version. We collect your email, and the minimum needed to keep you signed in and to know whether you have paid. We do not sell your data, we do not share it with advertisers, and we do not track you around the internet. We never see your card number.
certy_dev cookie, section 5), and a weekly count per network address plus a daily
count per network operator, stored as scrambled codes we cannot turn back into your IP address
and deleted after 14 days. If you ask the chat to stop, or an account that asked us to stop is
used on this device, the device id is marked so the free questions stay off. Free questions are
not saved to an account.utm_source, utm_medium,
utm_campaign, utm_content, utm_term), X’s click
id (twclid) or a creator’s referral code (ref), plus the page you
landed on and when. It is kept in the certy_src cookie (section 5). If you start a
subscription it is stored with that subscription, so we can count which links lead to
sign-ups.To sign you in, to know whether you are entitled to the paid board, to take payment, to
send you the emails you asked for, to count which of our own links lead to sign-ups (the
certy_src cookie, section 5), and to stop abuse. That is the whole list. We do not use
your data to train anything or to profile you.
Only the services that make Certy work:
Each holds data only to provide their service to us. We will disclose data if the law actually requires it, and we will tell you unless we are forbidden to.
Three cookies, all first-party — set by certy.bet, for certy.bet only:
certy_sess keeps you signed in. It is HttpOnly, Secure
and SameSite=Lax — script cannot read it and it does not ride along on other sites'
requests. Signing out clears it.certy_src remembers which link brought you here, and is
set only when that link carried a tag (section 1). It holds those tags, the page you landed
on and the time — never your name, email or anything about your bets. It is Secure and
SameSite=Lax and lasts 30 days; a later tagged link replaces it. If you start a
subscription, its contents go with your checkout to Stripe, our payment processor, and into
our own records, so we can tell which links lead to sign-ups. We do not share it with
advertisers, X or anyone else, and we do not use it to follow you across other sites.
Deleting your cookies deletes it.certy_dev counts the 5 free chat questions on this device.
It holds a random id and our signature on it — nothing about you, your account or your
bets. It is HttpOnly, Secure and SameSite=Lax, is sent only to the chat, and lasts a year.
It is set the first time you ask the chat something.There are no advertising cookies and no third-party analytics cookies.
Secrets live server-side and are never shipped to the browser. Sign-in tokens and session identifiers are stored only as one-way hashes. Database access is deny-by-default: the public key can read the published record and add a waitlist signup, and nothing else. No system is perfect, and if we ever have a breach affecting you we will tell you promptly and plainly.
Certy is 21+. We do not knowingly collect data from anyone under 21, and we delete it if we discover we have.
If we change how we use your data in a way that matters, we will tell you before it takes effect rather than quietly updating this page.
Sacred Studios LLC — [email protected]