Fiatside

법적 문서

개인정보 처리방침

전환 플랫폼은 필연적으로 신원 데이터를 수집합니다. 자금 세탁 방지 규정이 이를 요구합니다. 이 페이지는 어떤 데이터를, 왜, 얼마나 오래 보관하는지, 그리고 귀하가 요구할 수 있는 사항을 명시합니다.

버전
1.0.0
발효일
15 September 2026
최종 업데이트
2 September 2026

이 문서는 템플릿이며, 프로덕션에 적용하기 전에 법률 자문의 검토를 받아야 합니다.

아래 텍스트는 디지털 자산 서비스 제공자에게 적용되는 의무에 따라 작성되었지만, 설립 관할권의 변호사에 의해 아직 검증되지 않았습니다. 따라서 현재 상태로는 집행 가능하지 않으며 최종 계약상의 약속으로 취급되어서는 안 됩니다.

문서 내용
  1. 01귀하의 데이터를 처리하는 주체
  2. 02나머지를 지배하는 원칙: 수집하지 않기
  3. 03처리 목적 및 법적 근거
  4. 04보관 기간 및 수신자
  5. 05처리업체 및 파트너
  6. 06유럽 연합 외부로의 전송
  7. 07귀하의 권리와 실제 한계
  8. 08권리 행사 방법
  9. 09자동화된 결정
  10. 10데이터 보안
  11. 11쿠키 및 추적기
  12. 12미성년자
  13. 13본 정책의 변경
01

귀하의 데이터를 처리하는 주체

전환 플랫폼은 신원 데이터 없이는 운영될 수 없습니다. 자금세탁 방지 규정은 첫 유로가 전환되는 순간부터 이를 요구합니다. 따라서 정직한 질문은 "데이터를 수집하는가"가 아니라, 어떤 데이터를, 왜, 얼마나 오래, 그리고 누가 추가로 보는가입니다.

The controlling entity is being incorporated. Its legal name, legal form and registered address will be published on the legal notice page as soon as they are verifiable. In the meantime, the contact address below is the single entry point for any request about your data, and it is already live.

현재까지 데이터 보호 책임자가 임명되지 않았습니다. 임명될 것인가요? 그렇습니다. 규제 환경에서 대규모 신원 데이터 처리는 임명을 필수로 만들기 때문입니다. 임명이 효력을 발휘할 때까지 우리는 그렇지 않은 척하지 않으며, 요청은 아래 주소를 통해 처리됩니다.

개인정보 보호 연락 창구

이 주소를 사용하여 권리를 행사하거나, 처리 활동에 대해 문의하거나, 자동화된 결정에 이의를 제기하십시오. 최대 30일 이내에 답변을 받게 됩니다.

[email protected]
02

나머지를 지배하는 원칙: 수집하지 않기

수집된 모든 데이터는 보호하고, 보관하고, 적시에 삭제하고, 요청 시 반환해야 할 데이터입니다. 제품은 가능한 한 적게, 가능한 한 늦게 요청하도록 설계되었습니다.

  • 견적은 공개적입니다: 계정이나 이메일 주소 없이 수수료 내역이 포함된 순액을 받습니다.
  • 신원 확인은 가입 시가 아니라 의무가 되는 단계에서 요청됩니다.
  • 광고 추적기가 설정되지 않으며, 브라우징 데이터가 상업적 목적으로 판매되거나 공유되지 않습니다.
  • 은행 정보는 암호화되어 애플리케이션 로그에서 제거됩니다. 로그 라인에 일반 텍스트로 표시되지 않습니다.
03

처리 목적 및 법적 근거

모든 처리 활동은 식별된 법적 근거에 기반합니다. 이는 단순한 형식 이상입니다: 근거는 귀하가 보유한 권리를 결정합니다. 법적 의무에 따라 처리된 데이터는 의무 기간이 진행되는 동안 요청에 따라 삭제될 수 없습니다. 정당한 이익에 따라 처리된 데이터는 합리적인 근거로 이의를 제기할 수 있습니다.

PurposeData involvedLegal basis
Compute a quote and display the fee breakdownChosen asset, amount, country and rail. No identifying data is required at this stage.Legitimate interest — Article 6(1)(f) — Interest in showing a price before sign-up, which avoids collecting data from a visitor who will not go further.
Create and secure your accountEmail address, phone number, password hash, second-factor keys, sign-in log and associated IP addresses.Performance of the contract — Article 6(1)(b) — Without an authenticated account, no order can be tracked and no payout issued.
Verify your identity and meet due-diligence obligationsNames, date and place of birth, nationality, address, identity document image, liveness video capture, source-of-funds evidence, results of sanctions and politically exposed person screening.Legal obligation — Article 6(1)(c) — Customer due-diligence obligations imposed on digital asset service providers. This data cannot be erased on request while the statutory period runs.
Execute the order and issue the payoutAssigned deposit address, transaction hashes, amounts, beneficiary details (IBAN, PIX key, mobile money number), status of each step.Performance of the contract — Article 6(1)(b) — Beneficiary details are the material condition of payment: without them, the money has nowhere to go.
Monitor transactions and detect suspicious patternsOrder history, deposit address risk analytics, triggered alerts, analyst notes, reports filed.Legal obligation — Article 6(1)(c) — Ongoing monitoring is a standalone obligation, separate from initial identity verification.
Answer your requests and handle your complaintsMessage content, attachments, related order reference, exchange history.Performance of the contract — Article 6(1)(b) — Handling a complaint is part of the service. The case is tracked to allow escalation.
Prevent fraud and technical abuseIP address, device fingerprint, security events, rate limiting, failed authentication attempts.Legitimate interest — Article 6(1)(f) — Interest in protecting customer accounts and funds from takeover and malicious automation.
Measure site audiencePage views, referrer, device type. No data is collected under this activity today: the category is declared but inactive.Consent — Article 6(1)(a) — This processing will only start after explicit consent collected through the cookie panel, never before.
This table is generated from the product’s processing register. It cannot drift from what the code actually does.
04

보관 기간 및 수신자

우리는 "기본적으로" 아무것도 보관하지 않습니다. 각 범주에는 기간, 삭제 트리거 및 기간 종료 시 자동 삭제가 있습니다.

PurposeRetentionRecipientsTransfer outside the EU
Compute a quote and display the fee breakdownThe quote is kept for 30 days in technical form to reconstruct a pricing dispute, then deleted.Nobody outside the engineering team.No
Create and secure your accountFor the life of the account, then 12 months after closure to handle a late dispute. Sign-in logs are kept for 12 months.Our hosting provider, our transactional email operator and our SMS operator.No
Verify your identity and meet due-diligence obligationsFive years from the end of the business relationship, as required by anti-money-laundering rules. After that period, automatic deletion.The identity verification provider, sanctions list vendors, and, upon formal request, the competent authorities.Yes
Execute the order and issue the payoutTen years, the accounting record retention period. Bank details are encrypted and stripped from application logs.The payment institution executing the transfer on the chosen rail, and it alone.Yes
Monitor transactions and detect suspicious patternsFive years from the transaction or the closure of the alert. A suspicious activity report is never disclosed to you: the law forbids it.The competent financial intelligence unit, strictly within the framework provided by law.No
Answer your requests and handle your complaintsThree years after case closure, or five years where the complaint touches compliance.Our support tool, hosted in the European Union.No
Prevent fraud and technical abuseTwelve months for security logs, six months for rate-limiting counters.Our hosting provider and our network protection vendor.No
Measure site audienceThirteen months maximum from the collection of consent, with no automatic extension.None to date, the category being inactive.No
05

처리업체 및 파트너

우리는 호스팅, 거래 이메일 및 SMS 전송, 신원 확인, 입금 주소 위험 분석 및 결제 실행을 위해 처리업체에 의존합니다. 각 처리업체는 GDPR 제28조를 준수하는 계약에 따라 문서화된 지침에 따라 행동합니다.

이러한 처리업체의 명명된 목록은 계약이 서명되지 않은 동안 게시되지 않습니다. 우리는 설립된 것처럼 보이기 위해 표시된 공급업체 이름보다 정확한 범주를 선호합니다: 계약된 바가 없는 파트너의 이름을 게시하는 것은 허위 진술이 될 것이며, 이 사이트가 거부하는 바로 그 행위입니다.

목록은 서비스가 시작되는 즉시 이름별, 역할별, 처리 위치와 함께 여기에 게시될 것입니다. 이후 추가 사항이 있으면 이 문서의 버전 업데이트가 트리거됩니다.

06

유럽 연합 외부로의 전송

두 가지 활동은 구조적으로 연합 외부로의 전송을 포함합니다: 공급업체가 종종 영국이나 미국에서 운영되는 신원 확인, 그리고 유럽 외 지역 결제 레일(브라질의 PIX, 케냐의 M-Pesa, 나이지리아의 NIP)을 통한 지급 실행입니다. 케냐로 송금한다는 것은 수취인의 이름과 번호를 케냐 기관에 전달하는 것을 의미합니다: 그것이 지불의 물질적 조건입니다.

이러한 전송을 규율하는 것

  • 해당 국가에 대해 존재하는 경우 유럽 위원회의 적절성 결정.
  • 그렇지 않을 경우, 위원회의 표준 계약 조항과 함께 현지 정부의 정보 접근 법률을 고려한 이전 영향 평가가 적용됩니다.
  • 추가 기술적 조치: 전송되는 필드 최소화, 전송 중 및 저장 중 암호화, 회랑별 분리.
  • 편의를 위한 이전 없음: 목적을 연합 내에서 처리할 수 있다면, 그렇게 합니다.

특정 이전에 적용되는 보호 조치의 사본을 요청할 수 있습니다. 그러면 사용된 메커니즘과 목적지를 제공하며, 계약의 상업적 조항은 제외됩니다.

07

귀하의 권리와 실제 한계

일곱 가지 권리를 나열하면서 어떤 권리가 어떤 장애물에 부딪히는지 설명하지 않는 개인정보 처리방침은 아무 도움이 되지 않습니다. 여기에 권리와 각 권리에 대해 우리 상황에서 실제로 적용되는 한계를 제시합니다.

Right of access
Obtain confirmation that we process your data, receive a copy of it and the information on purposes, recipients and retention periods.
Right to rectification
Have inaccurate data corrected or incomplete data completed. An already verified identity is not corrected by mere declaration: the fix goes through a new document verification.
Right to erasure
Request deletion of your data when its retention is no longer justified. Anti-money-laundering and accounting records cannot be erased before the end of their statutory period. We then give you the exact date on which deletion will happen.
Right to restriction
Request that a processing activity be frozen while a dispute is resolved.
Right to portability
Receive the data you provided in a structured, machine-readable format, or have it transmitted directly to another controller.
Right to object
Object to processing based on our legitimate interest, on grounds relating to your particular situation. Objection does not apply to processing imposed by law, notably anti-money-laundering diligence.
Automated decision-making
Obtain human intervention, express your point of view and contest a decision taken without human involvement. An automated compliance refusal can always be re-examined by an analyst on request.
Withdrawal of consent
Withdraw consent at any time, without affecting the lawfulness of processing already carried out.
08

권리 행사 방법

  1. 계정에 연결된 이메일 주소 또는 계정 영역에서 개인정보 보호 연락처 주소로 작성하십시오.
  2. 당사는 신원을 확인합니다. 합리적인 의심이 있는 경우 추가 확인 요소 하나를 요청합니다. 이미 유효한 신분증을 보유하고 있다면 신분증 사본을 새로 요청하지 않습니다.
  3. 당사는 ${RIGHTS_RESPONSE_DAYS}일 이내에 답변합니다. 요청이 복잡하거나 여러 건인 경우, 그 기간은 ${RIGHTS_EXTENSION_MONTHS}개월 연장될 수 있으며, 초기 기한 전에 사유와 함께 알려드립니다.
  4. 답변은 무료입니다. 명백히 근거가 없거나 반복적인 요청은 이유를 설명하는 거부로 이어질 수 있으며, 조용히 요금을 부과하지 않습니다.

당사의 답변이 만족스럽지 않은 경우, 거주 국가의 감독 기관에 불만을 제기할 수 있습니다. 이 경로는 조건 없이 열려 있으며, 먼저 당사에 알릴 필요가 없습니다.

권리 행사

행사하는 권리와 가능하면 관련 주문 참조 번호를 명시하십시오. 그러면 자격 확인을 위한 왕복 통신을 피하고 처리가 단축됩니다.

[email protected]
09

자동화된 결정

세 가지 검사가 자동화되어 귀하에게 직접적인 영향을 미칠 수 있습니다: 제재 목록과 이름 대조, 문서 기반 신원 확인, 입금 주소 위험 분석. 일치 또는 실패는 사전 인간 개입 없이 주문을 중단시킬 수 있습니다.

언제든지 인간 검토를 요청할 수 있습니다. 그러면 분석가가 파일을 다시 열고, 귀하의 입장을 제시할 수 있으며, 초기 결정이 번복될 수 있습니다. 상세한 이유를 공유할 수 없는 유일한 상황은 신고된 혐의가 있는 경우입니다. 법률이 이에 대해 논의하는 것을 금지합니다.

10

데이터 보안

전송 중 및 저장 중 암호화, 환경 분리, 최소 권한 액세스, 검증 파일에 대한 모든 액세스 기록, 내부 액세스에 대한 필수 2차 인증. 기술적 조치는 전용 페이지에 자세히 설명되어 있습니다.

귀하의 권리에 위험을 초래할 가능성이 있는 개인 데이터 침해가 발생한 경우, 72시간 이내에 감독 기관에 통지하고 위험이 높은 경우 귀하에게 직접 알립니다. 또한 개별 통지가 필요하지 않은 경우에도 사후 대응 메모를 게시합니다.

11

쿠키 및 추적기

현재 광고 추적기, 소셜 네트워크 픽셀 또는 방문자 측정 도구가 설치되어 있지 않습니다. 귀하의 동의 없이 설정되는 유일한 쿠키는 사이트 작동에 필요한 쿠키입니다: 언어, 세션 및 쿠키 선택 기록.

12

미성년자

서비스는 미성년자를 대상으로 하지 않으며 신원 확인은 생년월일을 확인합니다. 미성년자가 계정을 개설한 사실을 발견하면 계정을 폐쇄하고 관련 데이터를 삭제하며, 기록 보관에 관한 규정이 유지하도록 요구하는 경우는 예외입니다.

13

본 정책의 변경

실질적인 변경(새로운 목적, 새로운 수신자, 유럽연합 외부로의 새로운 이전)이 있을 때마다 새 버전 번호가 부여되고, 이 페이지 하단의 이력에 기록되며, 계정을 보유한 경우 직접 통지됩니다. 우리는 목적을 조용히 변경하지 않습니다.

14

버전 이력

버전최종 업데이트Nature of the change
1.0.02 September 2026문서의 최초 공개.

안정적인 앵커: 모든 섹션에는 변경되지 않는 식별자가 있습니다. 직접 링크로 조항을 인용할 수 있습니다.