DigMol
Terms of Service Privacy Policy
  • 한국어
  • English
  • 日本語
  • 繁體中文
  • 简体中文
PRIVACY

Privacy Policy

Effective1 January 2026 Last updated1 January 2026 Version1.0

BUKCS PTE. LTD. (the "Company"), a company incorporated in Singapore, takes the privacy of its users seriously and complies with the Singapore Personal Data Protection Act (PDPA), the Personal Information Protection Act of the Republic of Korea and other applicable law. This policy explains what information the DigMol app and website collect, how it is used, stored and destroyed, and how it is transferred across borders.

This English version is provided for your convenience. For users resident in the Republic of Korea, the Korean version prevails in the event of any discrepancy.
Contents
  1. 1. Personal data we collect
  2. 2. Why we use it
  3. 3. Retention
  4. 4. Disclosure to third parties
  5. 5. Processors
  6. 6. Your rights
  7. 7. Cross-border transfer
  8. 8. Children
  9. 9. Cookies and similar technologies
  10. 10. Security measures
  11. 11. Contact
  12. 12. Changes to this policy
In short
  • The operator is a Singapore company. Data is processed and stored outside your country. (see section 7)
  • There is no sign-up. We do not collect your name or any national identification number.
  • To calculate rewards and prevent abuse we process device identifiers, wallet addresses and activity records.
  • Location and camera are accessed only when you use the relevant feature and only with your permission.
  • You can ask to access or delete your data at any time. Transactions recorded on a blockchain cannot be deleted.
This summary is for convenience only. The full text below is what governs.

11. Personal data we collect

We collect only what the Service needs. Because there is no sign-up, we do not collect identifying details such as your name, date of birth or any national identification number.

BasisDataWhen collected
RequiredDevice identifier (including advertising ID), OS and device model, app versionAutomatically on first launch
RequiredBlockchain wallet address, transaction hashesOn wallet connection and reward payout
RequiredActivity records (accruals, timestamps, booster multiplier), invitation code and acquisition sourceAutomatically during use
OptionalLocation data (GPS coordinates, distance travelled)When you use the walking reward (after consent)
OptionalPhotographs and capture metadataWhen you use the photo feature (after consent)
OptionalPush notification tokenWhen you opt in to notifications
OptionalEmail addressWhen you enter it to contact or report to us
AutomaticIP address, access timestamps, cookies, usage records, error logsAutomatically during use

22. Why we use it

  • Providing the Service — recognising activity, calculating MOL accrual, paying rewards, showing history
  • Preventing abuse — detecting duplicate accounts, automation and location spoofing
  • Managing invitations — attributing installs to invitation links and paying both sides
  • Improving the Service — usage analytics, error diagnosis, feature development
  • Support — receiving and answering enquiries and reports
  • Notices — essential announcements about terms, reward policy and maintenance (marketing messages only where you have opted in)
  • Legal compliance — obligations under Singapore and Korean law, sanctions screening, and responding to lawful requests from authorities

33. Retention

We destroy personal data without delay once the purpose of collection has been achieved, except as set out below.

DataRetentionBasis
Device identifiers and activity records30 days after terminationPreventing repeat abuse and handling enquiries
Abuse records3 yearsPreventing recurrence and handling disputes
Location dataDestroyed immediately after each use (only aggregate distance is kept)Location data legislation
Support and enquiry records3 yearsConsumer complaint and dispute records
Access logs and IP addresses3 monthsCommunications privacy legislation
Anti-money-laundering records5 yearsApplicable Singapore and Korean law
Wallet addresses and transaction history are recorded on a blockchain and cannot be deleted by the Company. This is inherent to distributed ledger technology; please take it into account before connecting a wallet.

44. Disclosure to third parties

We do not disclose personal data to third parties, except in the following cases.

  • Where you have given prior, express consent
  • Where a law so provides, or where a Korean or Singapore investigative authority makes a request following the procedure prescribed by law
  • Where data is provided in a form from which no individual can be identified, for statistical or academic purposes

55. Processors

We engage the following processors so that the Service can run. Each contract sets out data protection obligations clearly, and we supervise performance against them.

ProcessorPurposeRetention
Cloud infrastructure providerServer operation and data storageUntil the contract ends
Push notification providerSending app push messagesUntil the contract ends
Advertising networkServing rewarded ads and verifying viewsUntil the contract ends
Analytics providerUsage analytics and error collectionUntil the contract ends
The specific processors may change as the Service evolves; changes are published in this policy. Most processor servers are located outside your country, so please also read section 7 (cross-border transfer).

66. Your rights

You may exercise the following rights at any time.

  1. Access your personal data
  2. Have inaccurate data corrected
  3. Have data deleted (except where retention is required by law)
  4. Ask us to stop processing
  5. Withdraw consent (for optional items)
  6. Refuse cross-border transfer (which may make the Service unavailable to you)

You can exercise these rights through the in-app settings or by writing to privacy@digmol.com. We respond within 10 days of receiving a request. Where you ask for deletion, we destroy the data so that it cannot be restored or reconstructed.

Location and camera permissions can be withdrawn at any time in your device settings. Withdrawing them disables the related reward features.

77. Cross-border transfer

Please read this. The Company is incorporated in Singapore and its infrastructure is located outside your country. Your personal data is therefore transferred out of your country for processing and storage.

The following disclosure is made in accordance with Article 28-8 of the Personal Information Protection Act of the Republic of Korea and the transfer limitation obligation under the Singapore PDPA.

ItemDetail
RecipientBUKCS PTE. LTD. (service operator) and the processors listed in section 5
DestinationSingapore and the countries in which each processor's servers are located
Data transferredAll items listed in section 1
Timing and methodTransmitted on an ongoing basis over encrypted network connections as you use the Service
PurposeAll purposes listed in section 2
RetentionAs set out in section 3
How to refuseWrite to privacy@digmol.com. Because the transfer is essential to providing the Service, refusing it may restrict or prevent your use of it.

We apply protection to transferred data comparable to the standard required by the law of your country, including encryption in transit and access controls.

88. Children

We do not collect personal data from children under 14 and the Service is not directed at them. If we find that we hold such data, we destroy it immediately and suspend the account. Where the law of your country sets a higher age of consent, that threshold applies.

99. Cookies and similar technologies

On the website we use cookies and local storage to keep track of invitation attribution and to understand how the Service is used.

  • Essential cookies — preserving invitation codes and language preference, maintaining a session. Required for the Service.
  • Analytics storage — page visit statistics and error diagnosis.

You can refuse cookies in your browser settings. Blocking essential cookies may prevent invitation rewards from being attributed correctly.

1010. Security measures

  • Technical — encryption in transit (HTTPS/TLS), encryption of sensitive data at rest, least-privilege access, intrusion prevention
  • Organisational — minimising the number of staff who handle personal data, regular training, an internal management plan, retention and review of access logs
  • Physical — access control at the facilities where data is stored
We never collect or store your private key or recovery phrase. No member of our staff will ever ask for it — any such request is an impersonation attempt. Do not respond, and please report it to us.

1111. Contact

We have appointed the following person to oversee personal data processing and handle complaints.

  • Data protection officer: (to be appointed)
  • Contact: privacy@digmol.com

Complaints about personal data handling may also be raised with a supervisory authority.

  • Singapore — Personal Data Protection Commission (PDPC), pdpc.gov.sg
  • Republic of Korea — Personal Information Dispute Mediation Committee, kopico.go.kr / 1833-6972
  • Republic of Korea — Privacy Infringement Report Centre, privacy.kisa.or.kr / 118

1212. Changes to this policy

This policy may be revised to reflect changes in law, policy or the Service. Changes and their effective date are announced in the app or on the website at least 7 days in advance. Where a change materially affects your rights, notice is given 30 days in advance and, where necessary, separate consent is obtained.

Company information
CompanyBUKCS PTE. LTD.
Place of incorporationSingapore
Contactsupport@digmol.com
Privacy contactprivacy@digmol.com
Back to home Terms of Service