HomeFeaturesContactPrivate Wallet
DOCSWAITLIST

Veilpay Privacy Policy

Legal note: This policy is a working draft based on Veilpay's described architecture. It is not legal advice and has not been reviewed by counsel. Because privacy-focused crypto payment products face jurisdiction-specific rules

1. Information We Collect

Because Veilpay is a non-custodial application, we never collect or store your private keys, seed phrases, or spend-authority credentials. Those remain on your device at all times.

Our providers collect the following categories of information:

  • Account and identity data: if you create an account.
  • Wallet and payment metadata: public wallet addresses, transaction identifiers, selected privacy tier, asset type, quote and fee data, and payment status. Note that for transparent-chain transactions, this information (excluding your identity) is generally also visible on the relevant public blockchain independent of Veilpay.
  • Device and technical data: device identifiers, operating system, app version, IP address, and crash/diagnostic logs.
  • Usage data: feature interactions, in-app navigation, and support requests, collected to improve reliability and user experience.
  • Fiat on/off-ramp data: if you use the embedded on-ramp or off-ramp, our partner Transak collects identity verification information (such as government ID and proof of address) directly from you, under Transak's own privacy policy. Veilpay does not directly collect or store this identity-verification data.
  • Communications: information you provide when contacting support.

Our providers do not knowingly collect biometric templates. Biometric authentication (e.g., Face ID/fingerprint) is processed locally on your device via your device's operating system and is never transmitted to Veilpay.

2. How We Use It

Our providers use collected information to:

  • Operate, maintain, and secure the Veilpay application;
  • Process and display payment status, quotes, and transaction history;
  • Coordinate with chain adapters, node providers, and Transak to execute your instructions;
  • Detect, investigate, and prevent fraud, abuse, and security incidents;
  • Comply with applicable law, regulatory requests, and legal process;
  • Provide customer support and respond to inquiries;
  • Improve app performance, reliability, and features (using aggregated or de-identified data where feasible).

Our providers do not use your data for automated decision-making that produces legal or similarly significant effects about you without human involvement.

3. Cookies and Similar Technologies

Our website and app may use cookies, mobile SDKs, or similar technologies to:

  • Remember preferences (e.g., selected privacy tier, currency display);
  • Maintain session state;

You can control cookies through your browser or device settings. Disabling certain cookies may limit some app functionality.

4. Third-Party Services

Veilpay integrates with third parties to provide core functionality. Each operates under its own privacy policy:

Third Party Purpose Data Involved
Transak Embedded fiat on-ramp/off-ramp, identity verification Identity documents, payment details, transaction status
Blockchain node/RPC providers Broadcasting and reading transactions on supported networks Wallet addresses, transaction data (public by nature on transparent chains)
Cloud infrastructure providers Hosting backend services, notifications, and state storage Encrypted application data, logs
Analytics/crash-reporting providers App stability and performance monitoring Device data, usage events (aggregated/de-identified where possible)

We do not sell your personal data to third parties for their own marketing purposes.

5. Data Retention

We retain personal data only as long as necessary for the purposes described above, including:

  • Active account and app-functionality data, retained while your account is active plus after closure;
  • Records we are legally required to retain (e.g., under applicable AML, tax, or recordkeeping law), retained for the legally mandated period.

Identity verification data collected through Transak is retained by Transak under its own retention policy, which may be longer due to Transak's independent regulatory obligations.

6. Your Rights

Depending on your location, you may have rights including:

If you are in the European Economic Area / UK (GDPR):

  • Right to access, rectify, or erase your personal data;
  • Right to restrict or object to processing;
  • Right to data portability;
  • Right to withdraw consent at any time (where processing is based on consent);
  • Right to lodge a complaint with your local data protection authority.

If you are a California resident (CCPA/CPRA):

  • Right to know what personal information is collected, used, and disclosed;
  • Right to request deletion of personal information (subject to legal exceptions);
  • Right to correct inaccurate personal information;
  • Right to opt out of the sale or sharing of personal information (Veilpay does not sell personal information);
  • Right to non-discrimination for exercising these rights.

If you are in India (Digital Personal Data Protection Act, 2023):

  • Right to obtain a summary of personal data processed and processing activities;
  • Right to correction, completion, updating, and erasure of personal data;
  • Right to grievance redressal through our designated Grievance Officer;
  • Right to nominate another individual to exercise your rights in the event of death or incapacity.

To exercise any of these rights, contact us at veilpay@veilpayapp.com. We may need to verify your identity before completing certain requests. Some data (e.g., legally mandated records, or identity data held solely by Transak) may not be deletable on request.

7. Security

We apply technical and organizational safeguards appropriate to a non-custodial architecture, including:

  • Local, on-device storage and encryption of key material (Veilpay's backend never receives your private keys);
  • Encryption of data in transit and at rest for backend-held data;
  • Biometric authentication gating for sensitive in-app actions;
  • Access controls and monitoring on backend infrastructure;

No system is completely secure. Because Veilpay does not custody funds, Veilpay cannot recover lost private keys, seed phrases, or funds sent to an incorrect address. See the Terms of Service for details on your responsibilities as a non-custodial wallet holder.

8. Children's Privacy

Veilpay is not directed to, and is not intended for use by, individuals under the age of 18. Our providers do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us at veilpay@veilpayapp.com so we can take appropriate action.

9. International Data Transfers

Your information may be processed or stored in countries other than your own. Where required, we rely on appropriate safeguards (such as Standard Contractual Clauses) for cross-border transfers of personal data.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated by email. Continued use of Veilpay after changes take effect constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or wish to exercise your rights:

  • Email: veilpay@veilpayapp.com
HomeAboutPrivacyTermsDocs© 2026 Veilpay