Privacy Policy
Last Updated: March 2026
1. Who We Are
CryptoGrind ("CryptoGrind," "we," "us," or "our") is the data controller for your personal data.
Contact: [email protected]
2. Data We Collect
Account Data
- Email address
- Username
- Password (stored using industry-standard one-way hashing — we cannot read your password)
- Third-party authentication identifiers, if applicable
Profile and Preferences
- Messaging service identifiers (if you configure alert delivery via a messaging service)
- Alert configuration settings
- Subscription plan and status
- Referral code usage
Device and Technical Data
- IP address
- Browser type and version
- Device type and operating system
- Session identifiers
- Access timestamps
Usage Data
- Features used and pages visited
- Alert delivery records
- Login and session activity
Payment Data
- Subscription plan selected
- Payment status and timestamps
- Payment reference identifiers
- We do not store sensitive payment credentials. Payments are handled by our third-party payment provider(s).
Communication Data
- Contact form messages
- Support requests
- Email correspondence
Cookies and Similar Technologies
See our Cookie Policy.
3. How We Use Your Data
| Purpose | Legal Basis (GDPR) |
|---|---|
| Create and manage your account | Contract performance |
| Provide the Platform and deliver Alerts | Contract performance |
| Process payments | Contract performance |
| Deliver Alerts via messaging services you configure | Contract performance |
| Send essential service notifications (security, billing, changes) | Legitimate interest |
| Detect and prevent fraud, abuse, and security issues | Legitimate interest |
| Comply with legal obligations | Legal obligation |
| Improve the Platform and develop features | Legitimate interest |
| Analyze usage patterns | Legitimate interest |
| Send marketing communications | Consent |
4. Who We Share Data With
We do not sell your personal data.
We may share data with the following categories of service providers and partners:
| Category | Purpose |
|---|---|
| Payment processor(s) | Process Subscription payments |
| Email service provider(s) | Send transactional and marketing emails |
| Hosting and infrastructure providers | Operate the Platform |
| Analytics providers | Understand usage and improve the Platform |
| Messaging service providers | Deliver Alerts if you configure this |
| Law enforcement or regulators | Where required by law or legal process |
| Professional advisors | Under confidentiality obligations |
| Successors | In connection with a merger, acquisition, or asset sale |
All processors act on our instructions and are required to comply with applicable data protection laws.
5. International Transfers
Your data may be processed in countries outside your country of residence. Where we transfer data outside the EEA or UK, we use appropriate safeguards such as Standard Contractual Clauses or equivalent mechanisms recognized under applicable law.
Contact [email protected] for information about applicable safeguards.
6. Retention
We keep data only as long as necessary for the purposes described in this Policy:
| Data | Retention |
|---|---|
| Account data | Duration of account + 12 months after deletion |
| Usage and technical data | 12 months from collection |
| Payment records | As required by applicable tax and accounting law |
| Communication data | 12 months from last interaction |
| Cookies | See Cookie Policy |
When no longer needed, data is deleted or anonymized.
7. Your Rights
Under applicable law (including GDPR and UK GDPR), you may have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your data
- Restrict processing
- Port your data to another provider
- Object to processing based on legitimate interest
- Withdraw consent at any time
Contact [email protected] to exercise your rights. We will respond within 30 days or as required by law.
8. Complaints
You may lodge a complaint with your local data protection authority:
- EU: Your national data protection authority
- UK: Information Commissioner's Office (ico.org.uk)
9. Security
We use appropriate technical and organizational measures to protect your data, including encrypted transmission, hashed password storage, and access controls. No system can guarantee absolute security, but we maintain industry-appropriate standards.
10. Children
The Platform is not intended for anyone under 18. We do not knowingly collect data from minors. If we learn we have, we will delete it promptly.
11. Changes
We may update this Policy. Material changes will be communicated at least 30 days in advance by email or Platform notification.
12. Contact
CryptoGrind
Email: [email protected]