Legal
Privacy Policy
Last updated: 6 August 2026
1. Who we are
SiaFundy is the data controller for the personal data described in this policy. You can reach us at support@siafundy.com or SiaFundy, 26 Spring Gardens, Manchester M2 1AB, United Kingdom. Our ICO registration is pending.
2. What we collect
- Identity data: full legal name, date of birth, nationality, identity document images and any selfie or liveness capture.
- Contact data: email address, telephone number, residential address.
- Financial data: declared income and source of funds, bank or exchange details you provide for withdrawals, and card details you submit for deposits.
- Case data: your description of the loss, wallet addresses, transaction hashes, correspondence and any files you upload.
- Technical data: IP address, device and browser information, session timestamps and last-seen activity.
- Support data: live chat messages and attachments exchanged with our team.
3. Why we use it and our lawful basis
Identity documents and biometric-style checks are special-category or high-risk processing; we handle them only where AML law requires it and restrict access to authorised compliance staff.
- To verify your identity and meet anti-money-laundering obligations — legal obligation.
- To provide the investigation, custody and withdrawal services you request — performance of a contract.
- To detect and prevent fraud, sanctions breaches and misuse of the platform — legitimate interests and legal obligation.
- To maintain audit logs of staff and client activity — legal obligation.
- To communicate with you about your case and account — performance of a contract.
4. Who we share it with
We do not sell personal data and we do not use it for advertising.
- Identity verification, sanctions screening and blockchain analytics providers acting as our processors.
- Law enforcement, regulators and financial-crime authorities where we are legally required or permitted to disclose.
- Exchanges and custodians, strictly where necessary to trace, freeze or recover assets on your instruction.
- Our cloud hosting, database and email infrastructure providers.
5. International transfers
Some providers operate outside the UK and EEA. Where that happens we rely on adequacy decisions or standard contractual clauses with appropriate supplementary measures.
6. How long we keep it
AML records, including identity documents and case files, are retained for at least five years after the end of the business relationship, as required by law. Support chat and technical logs are retained for a shorter period unless they form part of a case file.
7. Security
Data is encrypted in transit and at rest. Staff access is role-based and scoped to assigned clients, protected by mandatory two-factor authentication, and every privileged action is written to an append-only audit log.
8. Your rights
To exercise a right, email support@siafundy.com. We respond within one month.
- Access a copy of the personal data we hold about you.
- Have inaccurate data corrected.
- Request erasure, restriction or objection — subject to our overriding AML retention obligations.
- Receive your data in a portable format.
- Complain to the Information Commissioner's Office (ico.org.uk).
9. Changes
We will post any update to this policy on this page and change the date above. Material changes are notified through the platform or by email.
