Official .onion Updated 18 min ago
Legal — Privacy

Privacy Policy

How we collect, use, protect, and manage your personal data. Transparency is at the core of everything we do.

Last updated: February 19, 2026 Reading time: ~8 min
Table of Contents
  1. Introduction
  2. Data Collection
  3. How We Use Your Data
  4. Data Storage & Retention
  5. Encryption & Security
  6. Cookies & Tracking
  7. Third-Party Services
  8. Your Rights
  9. Data Deletion
  10. Children's Privacy
  11. Policy Changes
  12. Contact Us

Introduction

Welcome to Thor Market. Your privacy matters to us. This Privacy Policy explains what information we collect, why we collect it, how it is used, and what choices you have regarding your personal data.

By accessing or using our platform, you agree to the practices described in this policy. If you do not agree with any part of this policy, please discontinue use of our services immediately.

This policy applies to all users of Thor Market, including visitors, registered members, and any individuals who interact with our platform in any capacity.

Data Collection

We collect information to provide and improve our services. The types of data we may collect include:

Information you provide directly:

  • Account registration details such as username, email address, and password
  • Profile information you choose to add, including display name and preferences
  • Communications you send to us, such as support inquiries or feedback
  • Content you post, upload, or submit through the platform

Information collected automatically:

  • IP address and approximate geographic location
  • Browser type, version, and operating system
  • Pages visited, time spent on pages, and navigation patterns
  • Referring URLs and exit pages
  • Device identifiers and screen resolution

We do not knowingly collect sensitive personal data such as racial or ethnic origin, political opinions, religious beliefs, or biometric data unless explicitly required and consented to.

How We Use Your Data

We use the information we collect for the following purposes:

  1. Service delivery — to create and manage your account, process transactions, and provide core platform functionality
  2. Personalization — to tailor your experience, including content recommendations and interface preferences
  3. Communication — to send service-related notifications, security alerts, and, with your consent, promotional materials
  4. Security — to detect, prevent, and respond to fraud, abuse, and unauthorized access
  5. Analytics — to understand usage patterns and improve platform performance, reliability, and design
  6. Legal compliance — to fulfill legal obligations, enforce our terms of service, and protect our rights
We will never sell your personal data to third parties. Your information is used solely to operate and improve our services.

Data Storage & Retention

Your data is stored on secure servers with industry-standard protections. We retain personal information only as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

Retention guidelines:

  • Active accounts: Data is retained for the lifetime of your account plus 30 days after deletion request
  • Inactive accounts: Accounts with no activity for 24 months may be flagged for review and potential removal
  • Transaction records: Retained for a minimum of 5 years to comply with financial regulations
  • Server logs: Automatically purged after 90 days
  • Support communications: Retained for up to 3 years after the last interaction

When data is no longer needed, it is securely deleted or anonymized so that it can no longer be associated with you.

Encryption & Security

Protecting your data is a top priority. We implement multiple layers of security to safeguard your information:

  • Transport encryption: All data transmitted between your device and our servers is encrypted using TLS 1.2 or higher
  • At-rest encryption: Sensitive data stored in our databases is encrypted using AES-256 encryption
  • Password hashing: Passwords are hashed using bcrypt with unique salts and are never stored in plain text
  • Access controls: Strict role-based access controls limit who within our organization can access personal data
  • Regular audits: We conduct periodic security audits and vulnerability assessments to identify and address potential risks
While we take extensive measures to protect your data, no method of transmission over the internet is 100% secure. We encourage you to use strong, unique passwords and enable any available security features on your account.

Cookies & Tracking

We use cookies and similar technologies to enhance your experience on our platform. Cookies are small text files stored on your device that help us recognize you and remember your preferences.

Types of cookies we use:

  • Essential cookies: Required for core functionality such as authentication, security, and session management. These cannot be disabled.
  • Preference cookies: Remember your settings, language, and display preferences across sessions.
  • Analytics cookies: Help us understand how visitors interact with the platform, which pages are most popular, and where improvements are needed.
  • Performance cookies: Monitor platform speed and reliability to ensure optimal performance.

We do not use third-party advertising or behavioral tracking cookies. You can manage cookie preferences through your browser settings. Disabling essential cookies may limit certain platform features.

Third-Party Services

We may share limited data with trusted third-party service providers who assist us in operating the platform. These partners are contractually obligated to protect your information and may only use it for the specific services they provide to us.

Categories of third-party providers:

  • Hosting and infrastructure: Secure cloud hosting providers that store and serve our platform
  • Analytics: Services that help us analyze usage patterns and improve performance
  • Payment processing: Trusted payment providers that handle financial transactions securely
  • Email delivery: Services used to send transactional and notification emails
  • Security services: DDoS protection and threat detection providers

We may also disclose your information if required by law, court order, or governmental regulation, or if we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.

Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Right of access: Request a copy of the personal data we hold about you
  • Right to rectification: Request correction of inaccurate or incomplete personal data
  • Right to erasure: Request deletion of your personal data, subject to legal retention requirements
  • Right to restriction: Request that we limit the processing of your data under certain circumstances
  • Right to data portability: Request your data in a structured, machine-readable format for transfer to another service
  • Right to object: Object to processing of your personal data for specific purposes, such as direct marketing
  • Right to withdraw consent: Withdraw previously given consent at any time, without affecting the lawfulness of prior processing

To exercise any of these rights, please contact us using the information provided in the Contact section below. We will respond to all valid requests within 30 days.

Data Deletion

You have the right to request complete deletion of your personal data from our systems. Here is how the process works:

  1. Submit a request: Contact us via the methods listed in the Contact section or use the account deletion option in your profile settings
  2. Verification: We will verify your identity to prevent unauthorized deletion requests
  3. Processing: Once verified, we will begin deleting your data within 7 business days
  4. Completion: Full deletion, including backups, is completed within 30 days of the request
Certain data may be retained beyond the deletion period if required by applicable laws or regulations. In such cases, the data will be securely stored and isolated from further processing until it can be permanently deleted.

Children's Privacy

Thor Market is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we discover that a child under 18 has provided us with personal data, we will take immediate steps to delete that information from our servers.

If you are a parent or guardian and believe your child has provided us with personal data, please contact us immediately so we can take appropriate action.

Policy Changes

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:

  • Update the "Last updated" date at the top of this page
  • Post a prominent notice on our platform
  • Send a notification to registered users via email when significant changes occur

We encourage you to review this policy periodically to stay informed about how we are protecting your data. Continued use of the platform after changes are posted constitutes your acceptance of the revised policy.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, you can reach us through the following channels:

  • Support page: Visit our FAQ & Support page for common questions
  • About page: Learn more about our team on the About page

We strive to respond to all privacy-related inquiries within 48 hours. For formal data protection requests, please allow up to 30 days for a complete response.