This Privacy Policy explains how crimsonpip ("we") gathers, processes and safeguards personal data when you use and platform. Our role is the data controller for this information.
Data collected. Identity and contact data and the like alongside KYC paperwork mandated by law. We also keep: transaction and trade logs, device data and helpdesk threads. EU/UK legal grounds: contract fulfilment, complying with law, plus legitimate interest.
Purpose of use. Operating your account, settling positions, meeting compliance, fraud prevention, platform security, plus optional product emails with one-click opt-out.
Sharing. Data goes only to operational providers (custody, payment, verification), regulators on lawful demand, and de-identified analytics. We never sell personal data.
Retention & security. We retain data through account lifetime and legal windows (often five to seven years for transaction records). Safeguards: AES-256 at rest plus TLS 1.3 in transit and ISO 27001-checked access governance.
Your rights. Access, fixes, export, deletion and objection requests can be made through [email protected]. We answer within statutory deadlines.