> For the complete documentation index, see [llms.txt](https://xero-ai.gitbook.io/xero-ai-docs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://xero-ai.gitbook.io/xero-ai-docs/security-and-data-privacy.md).

# Security & Data Privacy

At XERO AI, we take user safety seriously. Our system is designed to provide powerful automation without compromising control, ownership, or privacy.\
\
🔑 One-Time Key Access — Never Stored

During wallet setup, users have two options:

* **Create a new wallet through our bot**
* **Import an existing wallet**

In both cases, the user is required to input their private key **once**. This is used solely to configure the wallet with our protocol and enable features like automated sniping and token deployment.

> **We do not store private keys — ever.**\
> The key is erased immediately after setup and never saved to any database, local or remote.

***

#### 📡 What We Link — and Why

To enable protocol-level automation, we connect the following:

* **Wallet address**
* **Telegram handle**
* **Twitter username**

This linkage allows XERO AI to:

* Trigger snipes from tweets or profiles
* Attribute usage to your account for airdrop tracking
* Prevent sybil attacks and ensure fair distribution

***

#### 🛡️ What We Store — and What We Don’t

| Data Type                             | Stored?        | Purpose                                                    |
| ------------------------------------- | -------------- | ---------------------------------------------------------- |
| **Private Keys**                      | ❌ Never stored | One-time use during wallet setup only — immediately erased |
| **Wallet Address**                    | ✅ Yes          | Required for execution + airdrop eligibility               |
| **Telegram Handle**                   | ✅ Yes          | Used to associate wallet and command flow                  |
| **Twitter Username**                  | ✅ Yes          | Enables comment sniping + profile monitoring               |
| **Personal Info (Email, Name, etc.)** | ❌ Never        | Not requested or collected                                 |
| **Airdrop/Usage Data**                | ✅ Yes          | Stored securely and used solely for scoring and tracking   |

***

#### 🧠 Additional Protections

* **Local signing for transactions post-setup**
* **No backend session tokens or custodial control**
* **Hashed and obfuscated identifiers where possible**
* **Anti-bot filters + verification at setup layer**

***

#### Summary

> You control your wallet.\
> We don’t store your private key.\
> XERO AI automates execution — not ownership.

Secure by default. Always.
