Personal Data Processing Policy

Perfect-change · data protection and processing transparency

1. General Provisions

This policy defines the processing and storage of personal data of users of the Perfect-change service (hereinafter referred to as the Platform)

Perfect-change complies with Russian legislation and international standards (GDPR, Federal Law No. 152-FZ) and ensures the protection of personal data from unauthorized access and disclosure.

By using the Platform, you acknowledge that you have read, understood, and agreed to the terms of this Policy. If you do not agree to the terms, you must stop using the Platform.

2. Personal data we collect

2.1 Data you provide directly:

Depending on your use of our services, we collect the following categories of data:

  • Identification data: Last name, first name, patronymic
  • Contact information: phone number, email
  • Passport information or other identification document
  • Data for KYC/AML checks (selfie, documents confirming address and source of funds)
  • Bank card/account details, cryptocurrency wallet numbers

2.2 Data collected automatically:

  • Technical data: IP address, device type, operating systеm, browser type, device identifiers.
  • Usage data: Transaction history (amounts, currencies, fees), Platform page visit history, clicks, session time.
  • Cookies and similar technologies: We use cookies for authentication, security, and analytics.

3. Disclosure and transfer of data to third parties

We do not sell your personal data. We may share them with the following categories of recipients:

  • Verification partners (KYC/AML providers): For AML/KYC verification, document authenticity, and identification.
  • Payment partners and banks: For processing fiat payments and withdrawals.
  • Government agencies: Solely upon legal request as part of investigations or legal proceedings (at the request of a court, law enforcement agencies).
  • Analytical and marketing services: To improve the Platform (e.g., Yandex. Metrics) using anonymized data.

4. Storage Conditions

  • Data is stored on secure servers with limited access.
  • Personal data is stored for at least 5 years after the end of service use or in accordance with legal requirements.

After the storage period, the data is deleted or anonymized.

5. User Rights

  • The user has the right to request access to their data, its correction or deletion, and to revoke consent to processing.

6. Minors’ Privacy

  • Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from individuals under 18 years of age.

7. Personal Data Protection

We use modern technical and organizational measures to protect your data from unauthorized access, destruction, modification, or leakage:

  • Data encryption during transmission (ssh, TLS 1.2+)
  • Regular systеm penetration testing and vulnerability assessment
  • Limited employee access to data (principle of minimum necessity)

8. Policy Changes

  • This policy is subject to change without notice.
  • By continuing to use the service, you agree to the current version of this policy.

We recommend that you periodically review this page for the latest version.

Perfect-change ⚡ security and transparency