Privacy Policy

Last Updated: October 10, 2025

1. Scope and Application

This Privacy Policy applies to all users of Trustiatis.com, including residents of the European Economic Area (EEA), Switzerland, Canada, the United States, and the State of New Mexico.

Trustiatis LLC complies with all applicable data protection regulations, including:

  • General Data Protection Regulation (GDPR – EU)

  • Swiss Federal Data Protection Act (LPD)

  • Personal Information Protection and Electronic Documents Act (PIPEDA – Canada)

  • U.S. Federal and State Privacy Laws (CCPA, COPPA, etc.)

2. Data Controller

Trustiatis LLC is the primary controller of personal data processed through this website.

3. IT Subprocessing and Data Handling

Trustiatis LLC may act as a data processor for specific clients and partners under strict confidentiality and data protection agreements compliant with GDPR, Swiss LPD, Canadian PIPEDA, and applicable U.S. laws.

Trustiatis LLC only accesses client data for the purposes of hosting, maintenance, or system security.

4. Payment Processors and Financial Data Handling

4.1 Independent Payment Processors

Trustiatis LLC uses the following third-party processors, each acting as an independent data controller:

  • Stripe, Inc. – 510 Townsend Street, San Francisco, CA 94103, USA

  • PayPal Holdings, Inc. – 2211 North First Street, San Jose, CA 95131, USA

  • Wise Payments Limited – 6th Floor, The Tea Building, 56 Shoreditch High Street, London, E1 6JJ, UK

  • Mercury Financial, LLC – 1000 N. West St. Ste. 1501, Wilmington, DE 19801, USA

4.2 Data Collected by Payment Providers

  • Credit/debit card information (number, expiry, CVV)

  • Transaction history

  • Identity verification (KYC) data

  • Billing and shipping addresses

  • Financial compliance documents

4.3 Legal Basis and Purpose

  • Contract performance (payment processing)

  • Compliance with financial regulations (PSD2, AML/KYC)

  • Fraud prevention and transaction security

4.4 Disclaimer

Trustiatis LLC is not responsible for data processed by payment providers, each acting under their own privacy policies and terms of service.

5. Information Collected and Purposes

A. Automatically Collected Technical Data

  • Browser type, IP address, time zone, cookies

  • Purpose: site security, abuse prevention, anonymous analytics

B. Personal Data – Individual KYC

  • Full name, date and place of birth

  • Postal address, email, phone number

  • Banking details for transactions

  • ID copies and selfies (where required)

  • Purpose: service execution, compliance, security

C. Business Data – Corporate KYC

  • Executive identification documents

  • Corporate registration, articles, or board minutes

  • Shareholding structure (>25%)

  • Financial and tax documents

  • Purpose: compliance with AML/KYC regulations and service eligibility

6. Disclosure to Authorities

Trustiatis LLC may disclose data upon lawful request by competent authorities, including:

  • Judicial or regulatory inquiries

  • Financial or tax investigations

  • Anti-money laundering (AML) proceedings

  • Intelligence or fraud prevention requests

All disclosures are made in strict accordance with applicable laws.

7. Legal Bases for Processing

  • Contract performance: service delivery and account management

  • Explicit consent: marketing and communications

  • Legitimate interests: security and analytics

  • Legal obligations: compliance with tax, KYC/AML, and regulatory requirements

8. Your Rights by Jurisdiction

EEA and Switzerland

  • Access, rectification, erasure

  • Restriction and objection

  • Data portability

  • Withdrawal of consent

  • Post-mortem data instructions

Canada

  • Access and correction rights

  • Consent withdrawal

  • Complaint to the Privacy Commissioner of Canada

United States

  • California (CCPA): right to know, access, deletion, opt-out of sale, non-discrimination

  • New Mexico: right of access, rectification, and breach notification

9. Protection of Minors

This site is not intended for minors:

  • Under 13 (USA, Canada)

  • Under 14 (Switzerland)

  • Under 16 (EEA or local consent age)

No intentional data collection occurs below these thresholds. Any discovered data will be deleted immediately.

10. Data Retention

  • User accounts: duration of account + 3 years after last activity

  • Transactions: 10 years (legal/tax obligations)

  • Prospects: 3 years after last contact

  • Analytics cookies: 13 months (CNIL compliance)

  • KYC documents: 5 years after business relationship ends

  • Biometric data: 90 days after verification (unless required longer by law)

  • Financial data: typically retained 7 years by payment processors

11. International Data Transfers

  • From EEA/Switzerland:

    • To Canada: adequacy decision

    • To U.S.: Data Privacy Framework or Standard Contractual Clauses (SCCs)

  • From Canada: compliant with PIPEDA equivalent protection principles

  • Within U.S.: compliant with applicable federal and state laws

12. Security and Data Breach Response

Trustiatis implements strong technical and organizational safeguards, including:

  • Data encryption and access control

  • Continuous monitoring and regular backups

  • Role-based access and MFA authentication

  • PCI DSS compliance for payment data

Breach Notification:

  • EEA/Switzerland: within 72 hours to supervisory authorities

  • Canada: per PIPEDA breach notification timelines

  • New Mexico: compliant with Data Breach Notification Act

Affected users are promptly informed if high risk is identified.

13. Cookie Management

  • Essential cookies: required for site operation (no consent needed)

  • Analytics cookies: audience measurement (consent required in EEA/Switzerland)

  • Personalization cookies: preferences (consent required)

Consent collection differs by region:

  • EEA/Switzerland → prior explicit consent

  • Canada → contextual consent

  • U.S. → opt-out mechanisms

14. Fraud Prevention

Trustiatis LLC employs robust security practices but disclaims responsibility for:

  • Phishing, identity theft, or spoofing emails

  • Losses due to user negligence or third-party fraud

  • Payment processor breaches

Recommendations:

  • Verify sender authenticity

  • Use 2FA

  • Never share passwords

  • Monitor bank statements regularly

15. Contact and Data Rights Requests

  • General Contact: info@trustiatis.com

  • Data Protection Officer: legal@trustiatis.com

  • Response timeframe: 1 month (extendable to 2 months for complexity)

  • No charge for rights requests unless manifestly unfounded or excessive

Payment-related inquiries should be directed to the relevant payment provider.

16. Updates and Complaints

This policy may be updated to reflect legal or operational changes.
Substantial updates will be notified 30 days in advance by email.

Complaint channels:

  • EEA: local Data Protection Authority

  • Switzerland: Federal Data Protection Commissioner

  • Canada: Office of the Privacy Commissioner

  • U.S.: FTC or relevant State consumer agency

17. Infrastructure and Service Providers

Trustiatis LLC partners with the following trusted infrastructure and service providers to deliver secure, scalable, and reliable services:

Amazon Web Services (AWS)

  • Address: 410 Terry Avenue North, Seattle, WA 98109, USA

  • Primary Services: Cloud hosting, scalable infrastructure, data storage, and backup solutions

Oracle Corporation

  • Address: 500 Oracle Parkway, Redwood Shores, CA 94065, USA

  • Primary Services: Cloud computing, enterprise infrastructure, and database management

OVHcloud

  • Address: 2 Rue Kellermann, 59100 Roubaix, France

  • Primary Services: Web hosting, cloud services, and dedicated servers

Infomaniak Network SA

  • Address: Rue Eugène-Marziano 25, 1227 Geneva, Switzerland

  • Primary Services: Hosting, professional email, and secure cloud solutions

Hostinger International Ltd.

  • Address: Kestučio g. 82, Vilnius 08221, Lithuania

  • Primary Services: Web hosting, VPS, domain registration, and website management

Proton AG

  • Address: Werkstrasse 37, CH-3012 Bern, Switzerland

  • Primary Services: Encrypted email, VPN, and secure communications infrastructure

Cloudflare, Inc.

  • Address: 101 Townsend Street, San Francisco, CA 94107, USA

  • Primary Services: CDN, SSL encryption, DDoS mitigation, and web performance optimization

Telnyx, Inc.

  • Address: 730 South Wells Street, Chicago, IL 60607, USA

  • Primary Services: VoIP, SMS, IoT connectivity, and telecom routing services

Workynet LLC

  • Address: 8206 Louisiana Blvd NE, Ste B #10615, Albuquerque, NM 87113, USA

  • Primary Services: IT infrastructure, managed systems, and cloud service operations

All providers comply with applicable data protection laws and maintain high security and reliability standards.

By using Trustiatis.com, you acknowledge that you have read, understood, and agreed to this Privacy Policy, including all third-party and payment provider provisions.