This policy explains how gryphtrader ("we") gathers, processes and safeguards your personal data across our site and Services. We act as data controller for these data.
What we collect. Names, emails, nationalities and the like plus verification files demanded by regulators. Additionally stored: transaction and trade logs, device data and support messages. For EU/UK users: contract fulfilment, legal obligation, and legitimate interest.
How we use data. Running your account, settling positions, meeting compliance, countering fraud, and securing systems, and opt-in product emails with an instant opt-out.
Sharing. Data goes only to operational providers (custodial, payment, identity), regulators on lawful demand, and anonymized metrics. We never sell personal data.
Retention and security. Retention lasts through the account life plus statutory windows (often five to seven years for transactions). Protection: AES-256 at rest, TLS 1.3 in transit and ISO 27001-audited access governance.
Rights. Viewing, correction, export, deletion and objection rights may be used via [email protected]. Replies respect statutory timelines.