top of page

Privacy Policy

A Legal Disclaimer

Last Updated: July 6, 2026

​

Virtual Asset Provider (the "Company," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website [https://www.virtualassetprovider.com/](https://www.virtualassetprovider.com/) (the "Website") and use our digital asset services, applications, or platforms (collectively, the "Services").

Please read this Privacy Policy carefully. By using our Website and Services, you consent to the data practices described in this policy.

​

1. Information We Collect

To provide our Services and comply with global financial regulations (such as Anti-Money Laundering or AML laws), we collect several types of information:

A. Personal Identification Data (Provided by You)

  • Identity Information: Full name, date of birth, nationality, gender, and photograph.

  • Contact Information: Email address, phone number, and physical residential address.

  • Government-Issued Identification: Passport details, driver’s license, national identity card, and tax identification number (e.g., SSN or EIN).

  • Verification Data (KYC/AML): Biometric facial scans (liveness checks) used to verify your identity against your government ID, proof of address documents (utility bills, bank statements), and source of funds.

B. Financial and Transaction Data

  • Wallet Addresses: Public blockchain wallet addresses used to execute transactions.

  • Transaction History: Details of digital asset transfers, trades, deposits, and withdrawals conducted through our platform (including timestamps, asset types, and amounts).

  • Bank Account Information: Bank routing/account numbers or credit/debit card information if used to fund your account.

C. Device and Usage Data (Collected Automatically)

  • Technical Identifiers: IP address, browser type, operating system, device type, unique device identifiers, and mobile network information.

  • Activity Logs: Details of how you interact with our Website, including pages viewed, time spent, clickstream data, and links clicked.

  • Cookies and Tracking: Information collected via cookies, web beacons, and similar tracking technologies to enhance user experience and secure your account.

​

2. How We Use Your Information

We process your data based on legitimate business interests, contractual obligations, and strict legal requirements. Specifically, we use your information to:

  • Provide and Maintain Services: Set up your account, process transactions, calculate fees, and deliver customer support.

  • Comply with Legal Obligations: Verify your identity under global Know-Your-Customer (KYC) and Anti-Money Laundering (AML) laws, monitor for fraudulent activity, and comply with tax reporting obligations.

  • Enhance Platform Security: Monitor for unauthorized access, detect hacking attempts, mitigate security risks, and prevent platform abuse.

  • Communicate with You: Send technical updates, security alerts, administrative messages, and promotional materials (where permitted by law).

  • Improve Our Platform: Analyze usage trends to optimize website design, performance, and user experience.

​

3. How We Share Your Information

We do not sell your personal data. We only share your information in the following strictly controlled scenarios:

  • Third-Party Identity Verification Services: We share your ID and biometric data with trusted KYC/AML vendors to automate and complete identity verification.

  • Financial Institutions: We partner with banks, payment processors, and banking-as-a-service providers to facilitate fiat on-ramps and off-ramps.

  • Service Providers: We share data with cloud hosting providers (e.g., AWS, Google Cloud), security auditors, and analytics tools that support our daily operations under strict confidentiality agreements.

  • Legal & Law Enforcement: We will disclose your data if required to do so by a court order, subpoena, regulatory agency request, or law enforcement agency investigating potential criminal activity.

  • Business Transfers: In the event of a merger, acquisition, restructuring, or asset sale, your data may be transferred to the acquiring entity.

​

4. Important Notice Regarding Blockchain Transparency

 

PUBLIC LEDGER ACCESSIBILITY: By nature, blockchain networks are public, decentralized distributed ledgers. When you execute a digital asset transaction through our platform, your transaction data—including your public wallet address, transaction amount, and timestamp—is permanently and immutably written to the blockchain.

Because blockchain records cannot be altered or deleted, we cannot erase or anonymize data that has been published to a public blockchain.

​

5. International Data Transfers

Virtual Asset Provider operates globally. The data we collect may be transferred to, stored, and processed in countries outside your home country (including the United States or other jurisdictions). These countries may have data protection laws that differ from your own. By using our Services, you consent to this international transfer of data. We implement standard contractual clauses (SCCs) to ensure your data remains protected.

​

6. Data Security and Retention

  • Security Measures: We implement industry-standard administrative, technical, and physical security controls. This includes End-to-End Encryption (E2EE), Transport Layer Security (TLS/SSL) for data in transit, AES-256 encryption for data at rest, and mandatory multi-factor authentication (MFA) for internal operations.

  • Retention Period: Because we operate in a regulated financial sector, we are legally required to retain your personal identification and transaction history for a minimum period (typically 5 to 7 years following the closure of your account) to comply with global AML record-keeping laws.

​

7. Your Privacy Rights (GDPR / CCPA / Global Rights)

Depending on your jurisdiction (e.g., European Union, United Kingdom, or California), you may have the following rights regarding your personal information:

  • Right to Access: Request a copy of the personal data we hold about you.

  • Right to Rectification: Request that we correct inaccurate or incomplete personal information.

  • Right to Erasure ("Right to be Forgotten"): Request that we delete your personal data (subject to our legal retention mandates and the blockchain restrictions outlined in Section 4).

  • Right to Restrict or Object: Object to or restrict the processing of your data for direct marketing or specific business operations.

  • Right to Data Portability: Request a structured, machine-readable export of your data to transfer to another service provider.

To exercise any of these rights, please submit a formal request to our privacy team using the contact info below.

​

8. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or evolving regulatory requirements. The "Last Updated" date at the top of this policy will reflect the most recent revisions. We encourage you to review this page regularly to stay informed about how we protect your information.

​

9. Contact Us

If you have questions, comments, or complaints regarding this Privacy Policy or our data management practices, please contact our Data Protection Officer (DPO) at:

bottom of page