Scope
This Privacy Policy explains how CARDPIE ("we") collects, uses, discloses, and retains information when you use our services. It applies to our website, mobile application, APIs, and related services we offer.
Information We Collect
We may collect the following categories of information:
2.1 Identity and contact information: name, email, phone number, account identifiers, and similar details.
2.2 Know Your Customer (KYC) information: date of birth, address, nationality, government ID details, facial or biometric verification data submitted for identity checks, and verification outcomes.
2.3 Device and permissions: Camera: to capture ID documents or selfies for KYC. Photos / library: to select and upload stored ID images. Network status: Wi‑Fi and mobile data connectivity information needed for the app to communicate. Other technical data: IP address, device identifiers, browser or app telemetry, logs, and cookies.
2.4 Financial and transaction-related information: wallet addresses, transaction hashes, card application or issuance status, and risk signals.
2.5 Communications and referrals: support tickets, chat content, referral codes, and commission records.
How We Use Information
We use information to provide and operate the services; conduct KYC, AML, anti-fraud, and security monitoring; improve user experience; administer referral programs; comply with legal obligations; and send service-related or marketing communications where permitted (you may opt out of marketing where applicable).
How We Share Information
We may share information with KYC vendors, card product partners, infrastructure providers, payment processors, professional advisers, and competent authorities when required by law or necessary to provide the services safely and lawfully.
Cross-Border Transfers and Retention
We may process information in the United States or other countries. We retain data for as long as needed for the purposes described in this Policy and as required or permitted by applicable law.
Security and Breach Notification
We implement safeguards such as encryption and access controls designed to protect information. If a data breach occurs that requires notification under applicable law, we will notify affected individuals in accordance with those requirements.