This policy describes how pipmont ("we") amasses, handles and secures personal data on our website and Services. We act as controller for these data.
Data we collect. Identity and contact data and similar identity data plus verification files demanded by regulators. Additionally stored: execution and account history, technical logs and helpdesk threads. EU/UK lawful bases: contract performance, complying with law, legitimate interest.
How we use data. Running your account, settling positions, satisfying regulators, fraud prevention, and securing systems, plus optional product messages carrying easy opt-out.
Who sees data. Sharing is limited to running vendors (custody, payment, verification), authorities on valid demand, and de-identified analytics. Personal data is never sold.
Retention & security. Data is kept for account activity plus statutory windows (typically five-seven years for trades). Safeguards: AES-256 at rest plus TLS 1.3 in transit, and ISO 27001-audited access governance.
Your choices. Access, fixes, export, deletion and objection rights can be exercised through [email protected]. We answer within statutory deadlines.