PRE-LAUNCH / DEVELOPMENTIn development · No device orders or payments · Expected availability Q2–Q3 2027, an estimate subject to development and testing.
TUMBDA

TUMBDA / INFORMATION

Privacy policy

How this informational website and direct email enquiries handle information.

Published 25 September 2026 · TUMBDA is in development

01. Scope, project and contact

This policy explains information handling for the TUMBDA informational website and email correspondence about its proposed hardware wallet. The device is in development; the website has no wallet accounts, connected-wallet flow, checkout, payment processing, transaction signing or exchange service. It does not buy, sell, exchange, swap or trade crypto assets.

TUMBDA is operated by Smart Technology Enablers Inc., 1129 Maricopa Hwy, PMB B137, Ojai, CA 93023. For a privacy enquiry, email [email protected] or call +1-213-600-9606.

02. Information provided by you

An email you send may contain your address, displayed name, subject, message, attachments and normal email headers. If you request a founder reservation or development updates, the message can record that request, when it was received, and any optional country or region and broad product interest you submit. You may separately send a privacy request or a security report. Please share only information needed to address the issue.

The homepage founder-reservation form sends your email address, optional region and selected interest to a same-site PHP handler only after you submit it. The handler validates the request and stores the email address, optional region, interest and request time in a restricted file outside the public website. It assigns a reservation number based on recorded queue order and may also notify the project inbox by email. The public counter shows only the number of recorded founder reservations, never contact details. A separate email-app fallback prepares a message you send yourself and requires manual processing before it appears in the counter. A founder reservation is not an order, payment, deposit, guaranteed device allocation or guarantee of delivery.

Never send a recovery phrase, private key, wallet backup, PIN, wallet password, payment-card details or identity document for ordinary product enquiries. This site has no legitimate need for those secrets.

03. Technical delivery information

Loading pages exposes normal request data to the infrastructure serving them. Depending on the eventual host, this may include IP address, timestamp, requested URL, browser or device information, security events and possibly a referring page. Such data may be processed to deliver the site, diagnose failures and protect systems.

The website code has no analytics, advertising pixels, tracking scripts, wallet connection, application database or visitor-profile feature. It sets no application cookies. The host may process request logs or use security mechanisms outside the page code; for questions about the live configuration, contact us. Read the cookie and browser-storage page.

04. Why information may be used

We use information you voluntarily send to answer questions, handle a requested product-news message, process an opt-out or privacy request, assess a responsible security report, prevent abuse, and meet applicable legal duties. The website does not request wallet keys or initiate transactions. Someone could still send a secret in an unsolicited email. If that happens, it will be treated as sensitive, not used for product support, and access will be limited while deletion is arranged where possible, subject to applicable retention duties. Email cannot make an exposed secret safe again.

Where a legal basis is required, it may be your consent for requested marketing updates, steps taken at your request to answer an enquiry, legitimate interests in operating and protecting the site, or compliance with an applicable legal obligation. The applicable basis may vary by your location and the request involved. You can withdraw a request for product updates by emailing us.

05. Product updates and opting out

Requesting a founder reservation is free. A recorded reservation number identifies your place in the founder queue. It is not a purchase contract, payment, deposit, guaranteed device allocation or guarantee of delivery. Founder reservation holders are intended to receive access to the founder offer when ordering opens; the actual founder price, eligibility, regions, order deadline and purchase terms will be published before payment is accepted. The intended release window of Q2–Q3 2027 is an estimate subject to development and testing.

To stop future product updates, reply to a message with “Stop updates” or use the stop-updates instructions. We may retain the minimal address and request record needed to avoid sending further updates, subject to applicable law and the actual mailing process. An unrelated enquiry you send afterward may still receive a direct response.

06. Providers, disclosures and transfers

Hosting, DNS, security and email providers may process only the information needed for their roles. Your own mail provider also handles an email you send. We do not sell contact details or share a product-news list with data brokers. A lawful request from a public authority, or a need to investigate abuse, may require limited disclosure consistent with applicable rules.

Providers and recipients may be located in different countries. For specific provider, processing-location or transfer information, contact us. An email-app draft is not sent until you send it yourself; the on-page form records a list request only after you select Submit.

07. Retention and deletion

Correspondence should be held only while needed for its stated purpose, follow-up, security review, opt-out handling or legal obligations. Founder-reservation requests are kept in a restricted file outside the public document root; email copies may also remain in the project mailbox, mail transport systems and your own mailbox. Deletion requests are handled across these records as applicable. No fixed deletion period is claimed without a documented operating schedule.

You may request deletion of correspondence associated with your address. An appropriate request may be limited by legitimate security records or applicable legal duties. An opt-out can require keeping enough information to honor the request. We will explain any applicable limitation when responding.

08. Security and email limitations

We intend to use reasonable access controls and appropriate provider protections for correspondence, but ordinary email may pass through systems outside our control and should not be assumed confidential. Do not attach unredacted sensitive material to an initial security report. Ask for an appropriate channel before sending anything sensitive. No method of electronic transmission or storage offers absolute protection.

The proposed device’s security design is separate from this website’s data handling. “Eleven Security Design Goals” are plans, not tested safeguards, certifications or audit findings.

09. Choices, requests and complaints

Depending on applicable law, you may be able to request access, correction, deletion, restriction or a copy of information about you, object to some processing, or withdraw consent. Email [email protected] with the request and the address concerned; we may ask for proportionate verification so that we do not disclose someone else’s correspondence. Do not send identity documents unless a specific secure process has been arranged.

If applicable law gives you a right to complain to a privacy regulator, you may use that route. The appropriate authority depends on your location and the eventual operator. This policy does not limit statutory rights.

10. Children, links and changes

The project website is not designed to solicit information from children. If a parent or guardian believes a child has sent information, contact the privacy address. External websites and email providers have their own practices after you leave this site.

We will revise this policy when real product features, mailing systems, hosting, operator details or law change. A new version should state its effective date. This notice describes the present pre-launch package; it does not cover a future companion app, device telemetry, checkout or account service.