13.6 GDPR and Data Protection

ARX complies fully with the General Data Protection Regulation (GDPR) and applies its core principles globally.

Compliance measures

  • Data Minimization: No unnecessary personal data is collected. Only KYC tiers require identity verification, and even that data is handled by certified providers.

  • User Ownership: Users can view, manage, and delete any personal data associated with their account.

  • Encryption: All communication data is encrypted end-to-end and never shared with third parties.

  • Data Residency: Sensitive data processed under KYC is stored within EU or Swiss data centers under strict compliance policies.

  • Transparency: The privacy policy and data management procedures are publicly available and easily accessible.

This privacy-first approach ensures that ARX aligns with GDPR’s intent while extending the same protection to users worldwide.

Last updated