Cryptd
← Back to Legal

Reseller Privacy Policy

Last Updated: March 7, 2026

1. Reseller Data Privacy Framework

This Reseller Privacy Policy establishes the framework for handling personal data, business information, and customer data generated through reseller relationships with CRYPTD.TO ("Company"). Resellers agree to maintain confidentiality and comply with all applicable data protection laws.

2. Data Collection from Resellers

The Company collects and retains information regarding Reseller operations, including but not limited to business registration, beneficial ownership, transaction volumes, compliance documentation, and customer data. Such data is collected for operational, compliance, and audit purposes.

3. Customer Data Access and Control

Resellers acknowledge that end-user customer data remains under the control of both the Reseller and the Company. Both parties shall maintain adequate security measures to protect customer personal data from unauthorized access, alteration, or disclosure.

Resellers shall:

  • Implement reasonable security measures to protect customer data
  • Notify the Company immediately of any data breach or unauthorized access
  • Cooperate with the Company in data subject access requests
  • Comply with data retention and deletion requirements

4. Data Processing and Sharing

The Company may process, disclose, and share Reseller and customer data with:

  • Regulatory and law enforcement authorities
  • AML/KYC verification service providers
  • Financial institutions and payment processors
  • Third-party service providers bound by confidentiality

5. Data Retention by Resellers

Resellers shall retain all customer transaction records, identification data, and compliance documentation for a minimum of five (5) years in accordance with AML/KYC regulations. Upon termination of the reseller agreement, Resellers shall either securely delete or transfer all customer data to the Company as directed.

6. Compliance with International Standards

Resellers acknowledge that their data handling practices must comply with the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and equivalent international data protection standards applicable to their jurisdictions.

7. Governing Law

This Privacy Policy is governed by the laws of the Republic of Seychelles.

FAQsBlogHomeSupportLegal