13.6 GDPR and Data Protection
ARX complies fully with the General Data Protection Regulation (GDPR) and applies its core principles globally.
Compliance measures
Data Minimization: No unnecessary personal data is collected. Only KYC tiers require identity verification, and even that data is handled by certified providers.
User Ownership: Users can view, manage, and delete any personal data associated with their account.
Encryption: All communication data is encrypted end-to-end and never shared with third parties.
Data Residency: Sensitive data processed under KYC is stored within EU or Swiss data centers under strict compliance policies.
Transparency: The privacy policy and data management procedures are publicly available and easily accessible.
This privacy-first approach ensures that ARX aligns with GDPR’s intent while extending the same protection to users worldwide.
Last updated