Legal

Privacy Policy

Effective date: 1 April 2025

1. Who we are

TrustBlocks is a blockchain risk intelligence platform operated from Malta. We can be contacted at privacy@trustblocks.tech.

2. Data we collect

Wallet addresses you search: Address strings you submit are processed to generate risk scores. We store anonymised screening records in our database for audit trail purposes (no personal data is attached).

Watchlist data: Addresses you add to your watchlist are stored locally in your browser (localStorage). We do not transmit or store these server-side.

Usage analytics: We collect standard server access logs (IP, user agent, referrer) for security monitoring. We do not use third-party analytics trackers.

Cookies: We use a single session cookie for admin authentication only. No marketing or tracking cookies are set for public visitors.

3. How we use your data

Address data submitted for screening is used solely to return a risk score. Aggregated, anonymised data may be used to improve our risk models. We do not sell personal data to third parties.

4. Legal basis (GDPR)

Where applicable, our legal basis for processing is legitimate interests (providing the service you requested) and legal obligation (AML/CFT compliance data retention requirements for enterprise customers under Malta FIAU guidance).

5. Data retention

Screening records (address hash, risk score, timestamp) are retained for 5 years in compliance with FATF R.11 record-keeping requirements for VASP operators. Log files are purged after 90 days.

6. Your rights

Under GDPR you have the right to access, rectify, or erase personal data we hold about you. Since we do not link screening records to identifiable individuals, most requests can be resolved by confirming no personal data was collected. Contact privacy@trustblocks.tech to exercise your rights.

7. International transfers

Screening data is processed on infrastructure within the EU (Vercel EU region, Supabase EU). No transfers to third countries outside the EU/EEA are made without appropriate safeguards.

8. Changes to this policy

We may update this policy from time to time. The effective date at the top of this page will be updated accordingly. Continued use of the service constitutes acceptance.