Amber ← Back to site

Privacy Policy

Last updated: July 8, 2026

This Policy sets out how personal data of Amber users (getamber.ru, @GetAmberBot bot) is processed by Individual Entrepreneur Molchanov Aleksei Viktorovich (the "Operator"), in accordance with Russian Federal Law No. 152-FZ "On Personal Data".

1. General

By using the Service and/or paying for access to it, the User consents to processing of their personal data under this Policy. If the User disagrees with these terms, they must stop using the Service.

2. Legal basis for processing

Processing is carried out on the basis of the Constitution of the Russian Federation, the Civil Code, Federal Law No. 152-FZ "On Personal Data", Federal Law No. 63-FZ "On Electronic Signatures", Federal Law No. 54-FZ "On the Use of Cash Registers", and other applicable Russian regulations on personal data protection.

3. What data is processed

The Operator processes: the Telegram account ID and username, first name, chosen interface language; for card payments — the email and/or phone number provided for the electronic receipt; payment metadata (plan, amount, status, date). The card number, expiry date and CVV/CVC are never requested by, transmitted to, or stored by the Operator — entry and processing of this data happens exclusively on the T-Bank payment system side.

4. Purposes of processing

Data is processed to: identify the User and provide access to the Service; issue and record payments and generate electronic receipts under 54-FZ; send subscription status notifications; respond to support requests.

5. Information security

The Operator applies organizational and technical measures to protect personal data: data between the User and the website/bot is transmitted over an encrypted channel (HTTPS/TLS, Telegram MTProto); access to servers and the database is restricted and logged; payment data is handled separately from the Operator's main database — see section 6.

6. Secure transmission of payment data

When paying by card, the User enters card details on the secure payment page of T-Bank (Tinkoff Bank JSC), certified under the PCI DSS standard. Card data is transmitted directly between the User's device and T-Bank over an encrypted channel, bypassing the Operator's servers: the Operator has no technical ability to see, receive or store the card number, expiry date or CVV/CVC.

7. Data subject rights

The User may withdraw consent to processing of their personal data at any time, request information about the data processed, request its correction or deletion, by writing to hello@getamber.ru with the subject "Personal data". The User may also contact Roskomnadzor or a court if they believe their rights have been violated.

8. Operator contacts

hello@getamber.ru