Legal
Privacy notice
Last updated 25 September 2026
This notice explains what personal data we collect when you use ASICMining.io, what we do with it, who we share it with and the choices you have. We have tried to keep it short and plain.
Who we are
ASICMining.io sells ASIC mining hardware and hosts it in our partner data centres. When this notice says "we", "us" or "our", it means the business behind ASICMining.io, which decides how your personal data is used.
For anything about your data, email support@asicmining.io.
What we collect
When you create an account
- Your email address and username, and optionally your name and a profile picture.
- Your password, which we never store as written. We keep a one-way hash of it. When you choose a password, we check it against the Have I Been Pwned list of leaked passwords by sending only the first five characters of a scrambled version, so the service never sees your password.
- Your notification choices, including whether you want to hear about offers.
When you sign in
- Your IP address and browser details, recorded against your sessions, any devices you mark as trusted, and a security log of sign-ins, password changes and wallet changes. We use these to keep your account safe.
- One-time codes we email you, which expire within minutes.
When you order miners
- Your contact name and email, what you ordered, any notes you add, and the hosting location you pick.
- Payment details: the wallet address you paid from, transaction hashes and amounts. We never see or store card or bank details.
- For invoices, the billing name, company and address you give us.
When we host your miners
- The payout wallet addresses you set for each coin, and your payout history.
- Your machines' serial numbers, performance and status, and the network details they use inside the facility.
When you talk to us
- Messages you send through the website chat or in-app support, and the name and email you give us there.
- For website chat, a short code derived from your IP address, used only to stop spam.
- If you ask to hear when a miner is back in stock, your email address.
- If a teammate invites you to their workspace, your email address.
Cookies and similar storage
We use a small number of essential cookies and browser storage. Our cookie policy lists every one. We do not use advertising trackers.
Visit statistics
We count visits to our public pages with Umami, which we run on our own server, so this data is not shared with any analytics company. It records the page you visited, the site that sent you, your browser, operating system, device type, screen size and language, your approximate location (country, region and city) and the time of the visit. It sets no cookies and stores nothing on your device. Your IP address is used only to work out that location and to count unique visitors per day, and is not stored. If your browser sends a Do Not Track signal, you are not counted at all.
How we use it
We only use your data where the law allows it. In practice that means one of these reasons:
- To provide what you asked for. Running your account, taking and fulfilling orders, hosting your miners, sending payouts to your wallets, and support. This is necessary to perform our contract with you.
- To keep the service safe and working. Security logs, fraud and abuse prevention, spam control, fixing faults, and understanding which pages are used through the visit statistics described above. These are our legitimate interests, and we keep them proportionate.
- To meet legal duties. Keeping business and tax records, answering lawful requests, and complying with sanctions rules.
- With your consent. Offer emails and back-in-stock alerts. You can withdraw consent at any time, from your account settings or the unsubscribe link in the email.
We send service emails, such as order updates, payment confirmations, security alerts and sign-in codes, because they are part of running your account. We do not sell your data, and we do not make decisions about you that have legal or similarly significant effects based purely on automated processing.
Who we share it with
We use a few trusted providers to run the service. They handle data on our instructions and only for the purposes below.
- Supabase: our database and file storage, where account, order and hosting data is kept.
- Resend: sends our emails, so it receives your email address and the content of the message.
- Discord: our team gets internal alerts there about new orders, payments, wallet changes and support messages. Those alerts can include your email, name, order details, wallet addresses and message text.
- Cloudflare: protects and speeds up the website, and can see your IP address while you browse.
- Our cloud hosting provider: runs the servers the website and dashboard live on.
- Foreman: the monitoring platform the facilities use to manage hosted miners.
- Public blockchain services: we look up your public payout addresses on block explorers to show your balances and payout history.
- Have I Been Pwned: the password check described above, which never receives your password.
We may also share data if the law requires it, to protect our rights or someone's safety, or with a buyer if our business is sold. We would tell you about a sale first.
Where it is stored
We are based outside the UK and EU, and our main database is hosted in the United States. That means your data leaves the country you live in. Where UK or EU law requires it, we rely on the standard contractual clauses and equivalent safeguards our providers offer for these transfers. Email us if you would like more detail.
Blockchain data
Wallet addresses and transactions on a public blockchain are visible to anyone and cannot be changed or deleted, by us or anyone else. We can remove the link between your account and an address in our own systems, but the on-chain record stays.
How long we keep it
- Account details: while your account is open, then up to 12 months after you close it, so we can deal with any open questions.
- Orders, payments and invoices: 7 years, because business and tax laws require us to keep these records.
- Sign-in and security logs: 12 months.
- Sign-in codes and password reset links: until they expire, within minutes to a day.
- Support and website chat: 24 months after the conversation ends.
- Back-in-stock alerts: until you unsubscribe or the alert is sent.
- Miner performance data: while we host the machine, then up to 12 months.
- Visit statistics: 24 months.
After that, we delete the data or make it anonymous.
Your rights
Depending on where you live, you can ask us to:
- give you a copy of your data, or send it to another service in a usable format;
- correct anything that is wrong;
- delete your data, where we don't need to keep it;
- limit how we use it, or stop using it for a purpose based on our legitimate interests;
- withdraw consent you gave us, at any time.
Email support@asicmining.io from the address on your account. We will reply within one month, and we may ask you to confirm who you are first. It's free unless a request is clearly excessive.
If you're unhappy with how we handle your data, please tell us first so we can put it right. You can also complain to your local data protection authority: in the UK, the Information Commissioner's Office; in the EU, the authority in your country; in the UAE, the UAE Data Office.
Security
Passwords are hashed, connections are encrypted, sign-ins can require an emailed code, and sensitive actions such as changing a payout wallet trigger a security hold and an alert. No system is perfectly secure, so if you think your account has been compromised, change your password and email us straight away.
Children
ASICMining.io is for adults. We don't knowingly collect data from anyone under 18, and we will delete it if we find we have.
Changes to this notice
If we change this notice, we'll update the date at the top. If the change is significant, we'll also tell you by email or in the dashboard before it takes effect.
Contact
Questions or requests about your data: support@asicmining.io.