Privacy Policy
1. Introduction & Overview
Finecore Technology Limited (“Finecore”, “we”, “our”, or “us”) is committed to safeguarding the privacy and data protection rights of our users, developers, enterprise partners, and visitors across all digital platforms, APIs, and services.
This Privacy Policy explains the types of personal and organizational data we collect, how we process, store, and share that data, and the strict security measures we implement to protect your information.
2. Information We Collect
We collect information in the following categories:
- Account & Identity Data: Full legal names, verified email addresses, phone numbers, job titles, and company entity details during account registration or API onboarding.
- Know Your Customer (KYC) & Compliance Data: Government-issued identification documents, proof of address, beneficial ownership registers, and tax identification numbers required by applicable AML/CFT regulations.
- Transaction & Ledger Data: Account numbers, wallet addresses, payment timestamps, transfer amounts, sender and beneficiary details, and currency pairs.
- Technical & Usage Data: IP addresses, browser types, API request headers, webhook logs, and device identifiers used to maintain service integrity and prevent unauthorized access.
3. How We Use Your Data
We process collected data for the following lawful purposes:
- To provide, operate, and maintain our banking-as-a-service infrastructure and multi-currency ledgers.
- To execute automated AML sanction screening, fraud detection, and regulatory compliance monitoring.
- To authenticate API requests and provide 24/7 technical support.
- To notify you regarding platform updates, security alerts, and critical system status changes.
4. Data Sharing & Disclosures
Finecore never sells your personal data. We only share information with authorized third parties under strict confidentiality and data protection obligations:
- Partner Financial Institutions: Regulated custodian banks, card networks (Visa/Mastercard), and clearinghouses necessary to settle payments.
- Regulatory Authorities: Law enforcement, central banks, and government bodies where required by mandatory statutory law.
- Security & Infrastructure Providers: ISO-27001 and SOC 2 certified cloud infrastructure providers and identity verification partners.
5. Data Retention & Security Standards
All sensitive data is protected with AES-256 encryption at rest and TLS 1.3 encryption in transit. Financial transaction logs are retained in compliance with statutory anti-money laundering regulations for a minimum period of five (5) to seven (7) years following account closure.
6. Your Rights
Depending on your jurisdiction, you have the right to request access to your personal data, rectify inaccurate records, request deletion (subject to statutory financial retention mandates), or object to certain processing activities.
Contact Our Data Protection Officer
If you have questions regarding this Privacy Policy or wish to exercise your data protection rights, please contact us at [email protected] or [email protected].


