This policy describes how gryphtrade ("we") collects, uses and protects personal data on our website and Services. Our role is data controller for this information.
What we collect. Identity and contact data and similar identity data plus verification files required by regulation. Additionally stored: transaction and trade logs, technical logs and support chats. For EU/UK users: contract performance, legal duty, legitimate interest.
Use of data. Running your account, settling positions, meeting regulation, fighting fraud, and platform security, and opt-in product messages carrying one-click opt-out.
Sharing. Data goes only to operating vendors (custody, payment, verification), authorities on valid demand, and anonymised analytics. Personal data is never sold.
Retention and security. Retention lasts through account lifetime and statutory periods (typically five-seven years for transaction records). Safeguards: AES-256 at rest, TLS 1.3 in transit and ISO 27001-audited access governance.
Your choices. Viewing, correction, export, deletion and objection requests can be made through [email protected]. We answer within statutory timelines.