Privacy PolicyYour Privacy Matters
We practice privacy-by-design and data minimization to protect your information.
BitXchange.io — Privacy Policy
Effective date: 17 September 2025
Version: 1.0
Data controller: BitXchange.io
Privacy contact: corporate@bitxchange.io
1) Introduction & Principles
By using BitXchange.io (the “Service”), you agree to this Privacy Policy (“Policy”). If you do not agree, please stop using the Service. We operate on the following principles:
- Data minimization: we do not collect or store personal data by default.
- No accounts / non-custodial: we do not create user accounts or hold customer funds.
- Transparency: we describe limited technical signals processed ephemerally to operate and protect the Service.
2) Definitions
- “Personal data”: information that directly or indirectly identifies a person.
- “Processing”: any operation performed on data (e.g., collection, storage, use, deletion).
- “Technical data”: non-personal, short-lived signals required for the Service to function.
3) Data We Process
3.1 Data we do not collect by default
We do not request or store:
- Identifiers such as name, postal address, e-mail, phone number, government IDs/KYC/AML materials, biometrics;
- Advertising/marketing identifiers or behavioral profiles;
- Geolocation or similar tracking information.
3.2 Ephemeral technical processing
To provide quotes, route swaps, and protect the Service from abuse, we may briefly process:
- Request/order parameters;
- An anonymous session identifier;
- Network-level anti-abuse signals (e.g., rate-limit/DDoS protections).
These signals are not logged, not retained, and not linked to an identity.
Infrastructure note: hosting/CDN/anti-DDoS providers may momentarily see an IP address at the network layer. We configure minimization and disable logging where possible, and we do not use such data for tracking.
3.3 Voluntarily provided data
If you contact us (e.g., by e-mail or support ticket), we process only what you provide, solely to respond and maintain correspondence.
3.4 Aggregated or anonymized information
We may use strictly aggregated or anonymized operational metrics (if any) for reliability and security, without attempting to re-identify individuals.
4) On-chain Data
Blockchain transactions are inherently public (addresses, amounts, timestamps, hashes) and visible via block explorers. BitXchange.io does not control those records and cannot alter or delete them.
5) Cookies, Local Storage, and Tracking
- We do not use third-party analytics or advertising trackers/pixels.
- Strictly necessary cookies/local storage (if any) are limited to user-interface functionality and do not transmit personal data to us.
- We honor Do Not Track (DNT) and Global Privacy Control (GPC) signals.
- If we ever introduce optional cookies, we will display granular consent controls.
6) Third Parties and Processors
We do not sell or share personal data. Infrastructure providers (e.g., hosting, CDN, anti-DDoS, e-mail service) act as processors under our instructions and do not use data for their own purposes. We aim to minimize or disable network logs where feasible.
7) Storage and Retention
- We maintain no persistent personal-data stores.
- Messages you voluntarily send to support are kept for the minimum time needed to respond (by default up to 30 days) and then deleted.
- Any provider-level backups follow automatic rotation schedules.
8) Legal Bases & Your Rights
We avoid processing personal data. If, as a result of your voluntary contact, we hold personal data, the legal basis is to fulfill your request and our legitimate interests in operating and securing the Service. Subject to applicable law, you may request:
- Access to the data we hold about you (if any);
- Rectification or deletion;
- Restriction or objection to processing;
- Data portability.
Send requests to corporate@bitxchange.io.
Note: on-chain records cannot be changed or removed.
9) Marketing & Communications
We do not conduct e-mail marketing or targeted advertising. Any subscriptions (if introduced) would require your explicit opt-in and can be revoked at any time.
10) Security
We employ:
- Transport-layer encryption (HTTPS);
- Non-custodial, accountless architecture;
- Anti-bot/anti-DDoS safeguards without behavioral tracking;
- Data-minimization by design: we do not collect what we do not need.
11) Minors
The Service is not intended for individuals under 18. We do not knowingly collect data from children.
12) International Aspects
Infrastructure may be globally distributed. We select providers with strong privacy and security practices and enter into appropriate processing arrangements.
13) Partners and External Links
If you access partner sites/interfaces (e.g., liquidity aggregators), their own privacy policies apply. We are not responsible for third-party practices.
14) Changes to This Policy
We may update this Policy. The latest version will be posted on the website with a new effective date. Your continued use of the Service after updates constitutes acceptance of the revised Policy.
15) Contact
All privacy inquiries and data-subject requests: corporate@bitxchange.io