Effective Date: January 1, 2025
Last Updated: March 15, 2024
SigilSync™ ("we," "our," or "us") is committed to protecting your privacy and the security of your Bitcoin infrastructure data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our invitation-only platform and desktop companion application.
Your privacy and data security are fundamental to our service. We employ military-grade encryption and zero-knowledge architecture to ensure your Bitcoin infrastructure data remains completely secure.
Information We Collect
Personal Information
When you request an invitation or use our services, we may collect:
- Name and contact information (email address, phone number)
- Company information and professional details
- Bitcoin infrastructure specifications and requirements
- Account credentials and authentication data
- Professional certifications and industry experience
- Geographic location and jurisdiction information
- Payment and billing information for premium services
- Communication preferences and notification settings
Technical Data
Our desktop companion and web platform collect:
- Bitcoin node telemetry and performance metrics
- System configuration and hardware specifications
- Network connectivity and synchronization data
- Encrypted wallet archive snapshots (locally encrypted)
- Usage analytics and platform interaction data
- Error logs and diagnostic information
- Security event logs and access patterns
- Infrastructure cost and resource utilization data
- Configuration drift detection alerts and responses
Automatically Collected Information
We automatically collect certain information when you access our platform:
- IP addresses and geographic location data
- Browser type, operating system, and device information
- Access times, pages viewed, and navigation patterns
- Referral sources and search terms used to find our platform
- Session duration and interaction frequency
- Feature usage statistics and performance metrics
- Security-related information including failed login attempts
How We Use Your Information
We use the collected information for the following purposes:
Service Provision
- Provide Bitcoin node analytics and monitoring services
- Generate infrastructure cost forecasts and drift detection alerts
- Create automated encrypted wallet backups
- Maintain platform security and prevent unauthorized access
- Deliver real-time notifications and system alerts
- Process invitation requests and account verification
- Customize dashboard views and user preferences
- Optimize platform performance based on usage patterns
Communication
- Respond to your inquiries and provide customer support
- Send important service notifications and security alerts
- Provide technical updates and platform improvements
- Process invitation requests and account management
- Deliver educational content and best practices
- Conduct user satisfaction surveys and feedback collection
- Share relevant industry news and regulatory updates
Platform Improvement
- Analyze usage patterns to enhance our services
- Develop new features and analytical capabilities
- Optimize platform performance and reliability
- Conduct security assessments and vulnerability testing
- Research and development of advanced analytics algorithms
- Quality assurance and testing of new features
- Performance benchmarking and optimization
- User experience research and interface improvements
Legal and Compliance
- Comply with applicable laws and regulatory requirements
- Respond to legal requests and court orders
- Protect against fraud, abuse, and security threats
- Maintain audit trails for compliance purposes
- Enforce our terms of service and user agreements
Data Security
We implement comprehensive security measures to protect your information:
Encryption
- 256-bit AES encryption for all data transmission and storage
- End-to-end encryption for wallet archive snapshots
- Encrypted communication channels between desktop companion and web portal
- Zero-knowledge architecture ensuring we cannot access your private keys
- Transport Layer Security (TLS) 1.3 for all web communications
- Hardware security modules (HSMs) for key management
- Perfect forward secrecy for all encrypted communications
Access Controls
- Multi-factor authentication for all user accounts
- Role-based access controls with principle of least privilege
- Regular security audits and penetration testing
- Comprehensive audit trail logging for all system access
- Biometric authentication options for enhanced security
- Session management with automatic timeout controls
- IP whitelisting and geographic access restrictions
- Real-time monitoring of suspicious access patterns
Infrastructure Security
- Secure data centers with physical access controls
- Redundant backup systems with geographic distribution
- Network segmentation and intrusion detection systems
- Regular security updates and vulnerability management
- 24/7 security operations center monitoring
- Disaster recovery and business continuity planning
- Regular third-party security assessments and certifications
Data Sharing and Disclosure
We do not sell, trade, or otherwise transfer your personal information to third parties. We may disclose your information only in the following limited circumstances:
- Legal Requirements: When required by law, court order, or government regulation
- Security Threats: To protect against fraud, security breaches, or illegal activities
- Service Providers: To trusted third-party service providers who assist in platform operations (under strict confidentiality agreements)
- Business Transfers: In connection with a merger, acquisition, or sale of assets (with continued privacy protection)
- Consent: When you have provided explicit consent for specific disclosures
- Emergency Situations: To protect the vital interests of individuals in emergency situations
- Regulatory Compliance: To comply with financial services regulations and anti-money laundering requirements
We will never share your Bitcoin wallet data, private keys, or sensitive infrastructure information with any third party under any circumstances.
Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy:
- Account Information: Retained for the duration of your account plus 7 years for legal compliance
- Technical Data: Retained for 3 years for analytics and platform improvement purposes
- Communication Records: Retained for 5 years for customer service and legal purposes
- Security Logs: Retained for 2 years for security monitoring and incident response
- Financial Records: Retained for 10 years as required by applicable financial regulations
- Marketing Data: Retained until you withdraw consent or for 2 years of inactivity
After the retention period expires, we securely delete or anonymize your personal information in accordance with industry best practices and legal requirements.
Your Rights
You have the following rights regarding your personal information:
- Access: Request access to your personal information we hold
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal requirements)
- Portability: Request transfer of your data to another service provider
- Restriction: Request restriction of processing under certain circumstances
- Objection: Object to processing of your personal information for specific purposes
- Withdrawal of Consent: Withdraw consent for processing where consent is the legal basis
- Complaint: Lodge a complaint with relevant data protection authorities
- Notification: Be notified of data breaches that may affect your personal information
To exercise these rights, please contact us at privacy@sigilsync.ro or +40 749 613 582.
International Transfers
As a Romania-based company, we primarily process data within the European Union. However, some of our service providers may be located outside the EU. When we transfer personal information internationally, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions recognizing equivalent data protection standards
- Binding Corporate Rules for multinational service providers
- Certification schemes and codes of conduct
- Additional security measures for sensitive Bitcoin infrastructure data
Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly.
Parents or guardians who believe their child has provided personal information to us should contact us immediately at privacy@sigilsync.ro.
Contact Information
If you have questions about this Privacy Policy or our data practices, please contact us: