1. Scope and controller
This Policy applies to M2M Market-operated websites, consoles, APIs, developer tools, Agent and Provider services, marketplace functionality, wallet interfaces, settlement workflows and support channels (collectively, the “Services”).
M2M Market, Inc., a corporation organized under the laws of the State of Delaware, United States, on August 20, 2026, operates M2M Market and is the entity responsible for personal information processed by M2M Market where we act as a controller under applicable data-protection law.
Our corporate jurisdiction is Delaware, United States. Our registered office is 131 Continental Dr, Suite 305, Newark, Delaware 19713, United States. That address is provided for formal corporate and privacy notices; privacy requests can also be sent to info@m2mmarket.ai.
Independent Providers and third-party services may process information under their own privacy policies. This Policy does not replace the privacy notices of an API Provider, wallet, blockchain network, payment provider, identity provider or other independent third party.
2. Information we collect
Account and identity information
We may collect your name, email address, organization, role, account identifiers, authentication status, security settings and related registration information. Authentication systems may store public credential material and metadata needed to verify passkeys or multi-factor authentication. We do not need your wallet private key or passkey private key to provide the Services.
Agent and provider information
We may collect Agent identifiers, Provider identifiers, API or service descriptions, capability metadata, pricing, endpoint information, availability, reputation signals, usage counts, configuration choices, spending policies and delegated-authority settings.
Wallet, transaction and settlement information
We may process wallet addresses, network identifiers, deposit and withdrawal records, balances, transaction hashes, settlement status, payment amounts, marketplace fees and other information required to reconcile purchases and Provider earnings. Public blockchain information is discussed separately below.
Usage, device and network information
When you use the Services, we may collect technical and operational information such as IP address, browser or device type, timestamps, request identifiers, API routes, response codes, latency, security events and approximate geographic information derived from network data. Where M2M Market displays network traffic geography, coordinates may be intentionally coarsened to represent an approximate area rather than a precise physical location.
Communications
If you contact us, we may collect the content of your message, your contact details and related support or business correspondence.
3. How we obtain information
We obtain information directly from you; automatically from your browser, device, API client and use of the Services; from autonomous Agents acting under authority configured by their owners; from Providers; from public blockchain networks and smart contracts; and from service providers that support authentication, infrastructure, security, payments, analytics or other platform operations.
4. How we use information
We use information to provide and secure the Services; register and manage Agents, Providers, users and wallets; route requests and apply spending or delegated permissions; process and reconcile purchases, balances, Provider earnings and settlement activity; calculate marketplace and reliability signals; investigate abuse or operational failures; provide support; improve product performance; comply with legal obligations; and send service-related communications or permitted business updates.
We may also use aggregated or de-identified information that does not reasonably identify an individual for analytics, research, reporting and product improvement.
5. Legal bases
Where data-protection law requires a legal basis, we rely on one or more of the following as appropriate:
- Contract: processing needed to provide Services you request or to take steps at your request before entering a contract.
- Legitimate interests: operating, securing, improving and understanding the Services; preventing fraud or abuse; and supporting our business, balanced against your rights and interests.
- Legal obligation: processing needed to comply with applicable law, lawful requests or regulatory duties.
- Consent: where we specifically ask for consent and applicable law makes consent the appropriate basis.
7. Public blockchain data
Blockchain networks are public or distributed systems that M2M Market does not control. Wallet addresses, smart-contract interactions, transaction hashes, amounts and other on-chain data may be permanently visible to network participants, block explorers and other third parties.
If information has been validly written to a public blockchain, M2M Market generally cannot delete, alter or make that blockchain record private. Privacy requests therefore apply to information under our control and may not make public ledger history disappear.
9. Retention
We retain personal information for as long as reasonably necessary for the purposes described in this Policy, including to provide the Services, maintain transaction and security records, resolve disputes, enforce agreements and meet legal, accounting or compliance requirements.
Retention periods vary by data type and context. Public blockchain records follow the retention characteristics of the relevant network rather than our ordinary deletion schedule.
10. Security
We use technical and organizational measures designed to protect information against unauthorized access, loss, misuse and alteration. Measures may include authentication controls, access restrictions, encryption where appropriate, logging, monitoring and separation of privileged operations.
No internet service, wallet, smart contract or storage system can be guaranteed to be completely secure. You are also responsible for protecting your own credentials, devices, API keys, passkeys, wallet credentials and delegated Agent authority.
11. International transfers
M2M Market, Inc. and its service providers may process information in countries other than the country where you are located. Those countries may have different data-protection laws. Where applicable law requires safeguards for an international transfer, we will use an appropriate lawful mechanism or other recognized safeguard.
12. Your privacy rights
Depending on where you live and which law applies, you may have rights to request access, correction, deletion, restriction, portability or objection, to withdraw consent where processing relies on consent, or to complain to an appropriate data-protection authority.
To make a privacy request, email info@m2mmarket.ai with “Privacy Request” in the subject. You may also send formal written privacy correspondence to our registered office. We may need to verify your identity and authority before fulfilling a request and may deny or limit a request where permitted by law.
13. Children
The Services are designed for business, developer and professional use and are not directed to children. We do not knowingly offer M2M Market accounts or autonomous purchasing authority to children who cannot lawfully enter the relevant agreement in their jurisdiction.
If you believe a child has provided personal information to M2M Market in a way that is not permitted by law, contact us so we can review the situation.
14. Changes to this Policy
We may update this Privacy Policy as the Services, business practices or applicable laws change. We will post the updated Policy at this URL and update the date above. Where required by law, we will provide additional notice or obtain consent for a material change.
15. Contact
Questions or privacy requests can be sent to info@m2mmarket.ai.
M2M Market, Inc.
Registered office: 131 Continental Dr, Suite 305, Newark, Delaware 19713, United States
Website: m2mmarket.ai
The registered office is provided for formal corporate and privacy notices. Product support should be requested by email.