Home Trade Now Affiliate FAQ About Contact Login Sign up

01Information Collection & Scope

AIVOLIX collects only the data necessary to deliver secure, compliant, and personalized wealth generation services. Information is gathered through direct user submission, automated system logs, and third-party verification partners. We adhere to the principle of data minimization — we do not collect information beyond what is strictly required for platform operation, regulatory compliance, and fraud prevention.

  • Identity verification data: full legal name, date of birth, government-issued identification documents.
  • Contact information: verified email address, telephone number, residential address.
  • Financial data: wallet addresses, transaction history, deposit and withdrawal records, investment plan allocations.
  • Technical metadata: IP address, device fingerprint, browser characteristics, geolocation, session timestamps.
  • Communication records: support tickets, live chat transcripts, email correspondence.

02Purpose & Legal Basis of Processing

All personal data processing activities are conducted under explicit legal grounds and documented purposes. We do not engage in unauthorized profiling or automated decision-making that produces legal or similarly significant effects without human oversight.

  • Platform access and account authentication (contractual necessity).
  • Transaction execution, settlement, and blockchain record verification (legal obligation).
  • Anti-money laundering (AML) monitoring and suspicious activity reporting (regulatory compliance).
  • Customer support, dispute resolution, and account recovery (legitimate interest).
  • System security, threat detection, and intrusion prevention (vital interest).
  • Service notifications, plan maturity alerts, and regulatory updates (consent-based, opt-out available).

03Blockchain & Pseudonymity

Cryptocurrency transactions conducted through AIVOLIX are recorded on public blockchain ledgers. While wallet addresses are pseudonymous, they may be linked to your verified identity through deposit and withdrawal records. AIVOLIX maintains internal mapping logs for compliance purposes but does not publish or share this correlation data with unauthorized third parties.

  • On-chain transaction hashes are publicly visible; off-chain identity mapping is confidential.
  • Users are responsible for the privacy implications of their external wallet usage.
  • We do not monitor or trace transactions outside the AIVOLIX ecosystem.

04Cookies, Tracking & Analytics

We employ first-party and strictly necessary third-party technologies to ensure platform functionality, security, and performance optimization. Marketing or behavioral advertising cookies are not deployed without explicit opt-in consent.

  • Essential cookies: session management, CSRF protection, authentication state.
  • Analytics cookies: anonymized traffic patterns, feature usage statistics, error reporting.
  • Security cookies: rate limiting, bot detection, anomaly flagging.
  • Users may disable non-essential cookies via browser settings; however, platform functionality may be degraded.

05Data Sharing & Third-Party Disclosure

AIVOLIX does not sell, rent, or trade personal information. Disclosure to external entities occurs only under specific, limited circumstances with appropriate contractual safeguards.

  • Payment processors and blockchain node operators: strictly for transaction execution.
  • Identity verification services (KYC providers): for regulatory compliance and age verification.
  • Hosting and cloud infrastructure providers: under data processing agreements with encryption requirements.
  • Regulatory and law enforcement authorities: upon valid legal request, subpoena, or court order.
  • Corporate successors: in the event of merger, acquisition, or asset transfer, subject to continuity of privacy obligations.

06Data Retention & Deletion

Personal data is retained only for the duration necessary to fulfill the purposes outlined in this policy or as required by applicable law. Financial transaction records are preserved for a minimum of 5 years per AML directives. Upon account closure, identifiable personal data is anonymized or securely purged within 90 days, except where legal retention mandates apply.

  • Active account data: retained for the lifetime of the account plus statutory periods.
  • Closed account data: anonymized or deleted within 90 days unless legally required.
  • Blockchain records: immutable and permanent by design; not subject to deletion.

07Security Architecture & Safeguards

AIVOLIX implements defense-in-depth security architecture aligned with ISO 27001 and SOC 2 Type II standards. Technical and organizational measures include end-to-end encryption, role-based access controls, multi-factor authentication enforcement, and continuous penetration testing.

  • Data at rest: AES-256 encryption with hardware security module (HSM) key management.
  • Data in transit: TLS 1.3 with perfect forward secrecy.
  • Access controls: principle of least privilege, zero-trust network architecture.
  • Incident response: 24/7 security operations center with automated breach detection.

Despite these measures, no digital system is entirely invulnerable. Users are urged to enable 2FA, use unique passwords, and verify wallet addresses before initiating transactions.

08Your Data Subject Rights

Depending on your jurisdiction of residence, you may exercise the following rights regarding your personal data. Requests are processed within 30 days and are subject to identity verification.

  • Right to access: obtain a copy of all personal data we hold about you.
  • Right to rectification: request correction of inaccurate or incomplete data.
  • Right to erasure: request deletion of data not subject to legal retention.
  • Right to restriction: limit processing under specific circumstances.
  • Right to portability: receive your data in a structured, machine-readable format.
  • Right to object: challenge processing based on legitimate interest or direct marketing.
  • Right to withdraw consent: revoke previously granted permissions without retroactive penalty.

To submit a data subject request, contact our Data Protection Officer at dpo@aivolix.com.

09International Data Transfers

AIVOLIX infrastructure is distributed across multiple jurisdictions to ensure resilience and low-latency service. Data may be transferred to, stored in, or processed from countries outside your residence. All cross-border transfers are governed by Standard Contractual Clauses (SCCs) or adequacy decisions as recognized under GDPR Article 46.

10Third-Party Integrations & External Links

The platform may contain hyperlinks to external websites, blockchain explorers, or wallet providers. AIVOLIX does not control the privacy practices, security policies, or content of these external domains. We strongly recommend reviewing the privacy policies of any third-party service before submitting personal or financial information.

11Policy Amendments & Notifications

This Privacy Policy is reviewed quarterly and updated to reflect changes in legal requirements, technology, or business operations. Material modifications will be communicated via email and platform banner notification at least 14 days prior to enforcement. The effective date at the top of this document indicates the most recent revision.

12Contact & Data Protection Office

For privacy-related inquiries, complaints, or regulatory correspondence, please contact our Data Protection Office directly. We are committed to resolving all matters transparently and in accordance with applicable data protection frameworks.

Email: dpo@aivolix.com

Postal: AIVOLIX Data Protection Office, Reykjavik, Iceland