Privacy Policy

Last Updated: March 2026

1. Who We Are

CryptoGrind ("CryptoGrind," "we," "us," or "our") is the data controller for your personal data.

Contact: [email protected]

2. Data We Collect

Account Data

  • Email address
  • Username
  • Password (stored using industry-standard one-way hashing — we cannot read your password)
  • Third-party authentication identifiers, if applicable

Profile and Preferences

  • Messaging service identifiers (if you configure alert delivery via a messaging service)
  • Alert configuration settings
  • Subscription plan and status
  • Referral code usage

Device and Technical Data

  • IP address
  • Browser type and version
  • Device type and operating system
  • Session identifiers
  • Access timestamps

Usage Data

  • Features used and pages visited
  • Alert delivery records
  • Login and session activity

Payment Data

  • Subscription plan selected
  • Payment status and timestamps
  • Payment reference identifiers
  • We do not store sensitive payment credentials. Payments are handled by our third-party payment provider(s).

Communication Data

  • Contact form messages
  • Support requests
  • Email correspondence

Cookies and Similar Technologies

See our Cookie Policy.

3. How We Use Your Data

PurposeLegal Basis (GDPR)
Create and manage your accountContract performance
Provide the Platform and deliver AlertsContract performance
Process paymentsContract performance
Deliver Alerts via messaging services you configureContract performance
Send essential service notifications (security, billing, changes)Legitimate interest
Detect and prevent fraud, abuse, and security issuesLegitimate interest
Comply with legal obligationsLegal obligation
Improve the Platform and develop featuresLegitimate interest
Analyze usage patternsLegitimate interest
Send marketing communicationsConsent

4. Who We Share Data With

We do not sell your personal data.

We may share data with the following categories of service providers and partners:

CategoryPurpose
Payment processor(s)Process Subscription payments
Email service provider(s)Send transactional and marketing emails
Hosting and infrastructure providersOperate the Platform
Analytics providersUnderstand usage and improve the Platform
Messaging service providersDeliver Alerts if you configure this
Law enforcement or regulatorsWhere required by law or legal process
Professional advisorsUnder confidentiality obligations
SuccessorsIn connection with a merger, acquisition, or asset sale

All processors act on our instructions and are required to comply with applicable data protection laws.

5. International Transfers

Your data may be processed in countries outside your country of residence. Where we transfer data outside the EEA or UK, we use appropriate safeguards such as Standard Contractual Clauses or equivalent mechanisms recognized under applicable law.

Contact [email protected] for information about applicable safeguards.

6. Retention

We keep data only as long as necessary for the purposes described in this Policy:

DataRetention
Account dataDuration of account + 12 months after deletion
Usage and technical data12 months from collection
Payment recordsAs required by applicable tax and accounting law
Communication data12 months from last interaction
CookiesSee Cookie Policy

When no longer needed, data is deleted or anonymized.

7. Your Rights

Under applicable law (including GDPR and UK GDPR), you may have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your data
  • Restrict processing
  • Port your data to another provider
  • Object to processing based on legitimate interest
  • Withdraw consent at any time

Contact [email protected] to exercise your rights. We will respond within 30 days or as required by law.

8. Complaints

You may lodge a complaint with your local data protection authority:

  • EU: Your national data protection authority
  • UK: Information Commissioner's Office (ico.org.uk)

9. Security

We use appropriate technical and organizational measures to protect your data, including encrypted transmission, hashed password storage, and access controls. No system can guarantee absolute security, but we maintain industry-appropriate standards.

10. Children

The Platform is not intended for anyone under 18. We do not knowingly collect data from minors. If we learn we have, we will delete it promptly.

11. Changes

We may update this Policy. Material changes will be communicated at least 30 days in advance by email or Platform notification.

12. Contact

CryptoGrind
Email: [email protected]