Privacy Policy
Last updated: May 27, 2026
This Privacy Policy explains how Aurum Prime ("Aurum", "we") collects, uses, discloses, and protects your personal data when you use our website, Telegram channels, and related services. We comply with applicable data protection laws including the EU/UK GDPR and the California Consumer Privacy Act (CCPA/CPRA).
1. Data We Collect
- Account data: email address, Telegram handle / user ID, password hash.
- Transaction data: purchase amount, currency, payment method, order ID, billing country. Card numbers are never stored on our servers — they are processed by Stripe / Paddle.
- Usage data: pages viewed, signals opened, device type, browser, IP address, approximate location.
- Communications: messages you send via support, Telegram, or email.
- KYC data (only when required): name, country, proof of identity, if necessary for compliance with applicable law or payment provider requirements.
2. How We Use Your Data
- To provide and operate the Services (granting Telegram access, sending signals, processing payments).
- To comply with legal obligations (tax, AML/KYC, sanctions screening).
- To prevent fraud, abuse, and unauthorized access.
- To send transactional and service emails. Marketing emails are sent only with consent and can be unsubscribed at any time.
- To improve the Services through aggregated analytics.
3. Legal Bases (GDPR)
We process personal data on the following bases: (a) contract — to deliver the Services you purchased; (b) legal obligation — to comply with tax, accounting, AML, and sanctions law; (c) legitimate interests — security, fraud prevention, product improvement; (d) consent — for marketing emails and non-essential cookies.
4. Sharing
We share personal data only with: payment processors (Stripe, Paddle), Telegram (to grant channel access), email delivery providers, cloud infrastructure providers (Cloudflare, Supabase), and analytics providers. We do not sell personal data. Disclosures to law enforcement are made only when required by valid legal process.
5. International Transfers
Your data may be processed in countries outside your own. Where required, we rely on Standard Contractual Clauses or equivalent safeguards.
6. Retention
We retain account and transaction data for as long as your account is active, plus the period required by tax and AML law (typically 5–7 years). Marketing data is retained until you unsubscribe.
7. Your Rights
- Access, correct, or delete your personal data.
- Object to or restrict certain processing.
- Data portability.
- Withdraw consent at any time (without affecting prior processing).
- Lodge a complaint with your local supervisory authority.
To exercise any of these rights, email support@aurum-prime.com.
8. Security
We use industry-standard safeguards including TLS encryption, encrypted data at rest, access controls, and continuous monitoring. No system is 100% secure; we cannot guarantee absolute security.
9. Children
The Services are not directed to children under 18. We do not knowingly collect data from minors.
10. Changes
We may update this Policy. Material changes will be posted here with a revised date.
11. Contact
Data Controller: Aurum Prime · support@aurum-prime.com