MeridianFlowX logoMeridianFlowX
Home
Version 1Effective August 6, 2026

Privacy and Data Protection Policy

Aligned with the EU General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Data We Collect

We collect identity data (name, date of birth, government ID), contact data (email, phone, address), financial data (transactions, balances), and technical data (IP address, device, usage) necessary to provide regulated brokerage services.

2. Legal Basis for Processing

We process personal data on the basis of contract performance, legal and regulatory obligations (KYC/AML), and, where applicable, your consent for marketing communications.

3. How We Use Your Data

Your data is used to open and operate your account, verify identity, comply with legal obligations, prevent fraud, and only with consent to send marketing communications.

4. Data Sharing

We share data with regulated identity-verification and screening providers, payment processors, and authorities where legally required. We do not sell your personal data.

5. Your Rights

Under GDPR and CCPA you have the right to access, rectify, export (portability), and request erasure of your personal data, and to withdraw marketing consent at any time. You can exercise these rights from your Privacy Center.

6. Data Retention

We retain personal data for as long as your account is active and for the period required by financial regulation after closure (typically five to seven years), after which it is securely deleted.

7. Security

We apply encryption in transit and at rest, access controls, and audit logging to protect your data.

8. Contact

For privacy inquiries or to lodge a complaint with a supervisory authority, contact our Data Protection Officer via the portal.