1. Who we are
75 Pillars operates an institutional-facing digital platform for banking-adjacent and digital-asset services. Controller contact for privacy inquiries: info@75pillars.com.
2. Information we collect
We may collect:
- Identity & contact data — name, email, phone, address, nationality, date of birth, occupation.
- KYC / KYB data — government ID images, document fields, verification outcomes, specialist notes.
- Biometric-related data — facial images / selfies and liveness signals used for identity verification (see §7).
- Account & transaction data — balances, ledger entries, fund requests, trades (including internal book activity).
- Technical data — IP address, device/browser metadata, logs, cookies where used for security and session management.
- Communications — contact form messages and support correspondence.
3. How we use information
We use personal data to:
- Provide and secure the Services and client portal;
- Complete identity verification and fraud prevention;
- Meet AML, sanctions, and recordkeeping obligations;
- Process account activity (transfers, fund requests, trades on our platform ledger);
- Respond to inquiries and send operational notices;
- Improve reliability, security, and user experience;
- Comply with law and enforce our Terms.
We do not use biometric or ID images for marketing or advertising.
4. Legal bases (where applicable)
Depending on your location, we may process data under: contract performance; legitimate interests (security, fraud prevention, service improvement); legal obligation (AML / sanctions); and consent (e.g. certain biometric processing where required).
5. Sharing & processors
We may share data with:
- Identity verification processor — Veriff (document checks, biometrics / liveness, decision and event webhooks, optional watchlist screening when enabled);
- Infrastructure — hosting (e.g. Vercel), database (e.g. Neon Postgres), object storage (e.g. Vercel Blob);
- Communications — email delivery providers when configured (e.g. Resend);
- Professional advisors, financial partners, and authorities when required by law.
We do not sell personal information for monetary consideration in the ordinary course of business.
6. International transfers
Processors and infrastructure may process data in the United States and other countries. Where required, we rely on appropriate transfer mechanisms (e.g. contractual safeguards) as advised by counsel.
7. Biometric notice
By starting identity verification you consent to collection and processing of facial images and related biometric identifiers solely for identity verification, liveness / anti-spoofing, and fraud prevention—including by Veriff when enabled. Storage is limited to what is needed for verification, audit, and legal retention. Some U.S. states impose additional biometric privacy duties (notice, consent, retention schedules); confirm requirements with counsel for your jurisdictions.
8. Security & retention
We use administrative, technical, and organizational safeguards appropriate to the nature of the data (access controls, encryption in transit, logging). No method of transmission or storage is 100% secure.
KYC and related records are retained as needed for legal, AML, and audit obligations (operational default target on the order of multi-year retention, e.g. ~7 years unless law requires longer or shorter), then deleted or de-identified when no longer required.
9. Your rights
Depending on your location, you may have rights to access, correct, delete, port, or restrict certain processing, and to object or withdraw consent where processing is consent-based. Contact info@75pillars.com. Some data must be retained under financial crime laws even if you request deletion.
10. Children
Services are not directed to individuals under 18. We do not knowingly collect personal data from children.
11. Changes
We may update this Policy. Material changes will be indicated by updating the "Last updated" date on this page. Continued use after changes constitutes acceptance where permitted by law.
Related: Terms of Service · Compliance
