Legal Document

Privacy Policy

Effective date: 1 January 2026  ·  Last updated: 1 January 2026  ·  Version 1.0

This Privacy Policy explains how singelpoint-ubsank Ltd. collects, uses, and protects personal data when you access our developer gateway, banking API management platform, and related services. Please read it carefully.

1. Data We Collect

We collect information you provide directly: name, email address, company name, billing details, and API usage credentials when you register or transact with singelpoint-ubsank.

We automatically collect technical data including IP addresses, browser type, device identifiers, access timestamps, and API request logs to operate and secure the platform.

We may collect payment card data solely through PCI-DSS-compliant third-party processors; we do not store raw card numbers on our systems.

2. How We Use Your Data

To provision, maintain, and improve the singelpoint-ubsank gateway, process transactions, send service-critical notifications, and enforce our Terms of Service.

To detect fraud, abuse, and security threats; to comply with applicable financial-sector regulations and law-enforcement obligations.

We do not sell your personal data to third parties or use it for behavioural advertising without your explicit consent.

3. Cookies & Tracking

We use strictly necessary cookies to maintain authenticated sessions and prevent CSRF attacks. These cannot be disabled without impairing core functionality.

With your consent we set analytics cookies (e.g. aggregated usage metrics) and preference cookies to remember UI settings.

You may manage cookie preferences at any time via our Cookie Preference Centre or your browser settings.

4. Third-Party Sharing

We share data only with sub-processors necessary to deliver the service (cloud infrastructure, payment processors, identity-verification providers), each bound by data-processing agreements.

We may disclose data to regulators, courts, or law-enforcement agencies where required by law, and to acquirers in the event of a merger or acquisition.

A current list of sub-processors is available upon written request to [email protected].

5. Your Rights (GDPR / CCPA)

  • Access — request a copy of your personal data.
  • Rectification — correct inaccurate or incomplete data.
  • Erasure — request deletion where no legal retention obligation applies.
  • Restriction / Objection — limit or object to certain processing activities.
  • Portability — receive your data in a structured, machine-readable format.
  • Non-discrimination — California residents will not be discriminated against for exercising CCPA rights.
  • Submit requests to [email protected]. We respond within 30 days.

6. Data Retention

Account and transaction records are retained for seven (7) years to meet financial-regulation and tax obligations, then securely deleted.

API access logs are retained for 12 months for security auditing and then anonymised or purged.

You may request earlier deletion where retention is not required by law.

7. Security

All data in transit is encrypted via TLS 1.2+; data at rest is encrypted with AES-256. We operate SOC 2 Type II controls and conduct annual penetration tests.

Access to production systems is restricted to authorised personnel via multi-factor authentication and role-based access control.

In the event of a data breach affecting your rights, we will notify you and relevant supervisory authorities within 72 hours of discovery.

8. Children's Privacy

singelpoint-ubsank services are directed exclusively at business customers and individuals aged 18 or over.

We do not knowingly collect personal data from children. If you believe a minor has provided us with data, please contact [email protected] immediately.

9. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or applicable law. The revised version will be posted at this URL with an updated effective date.

For material changes we will notify registered users by email at least 14 days before the change takes effect.

10. Contact & Data Controller

Data Controller: singelpoint-ubsank Ltd., 30 Moorgate, London, EC2R 6DA, United Kingdom.

Data Protection Officer: [email protected] | +44 20 7946 0021.

For all privacy enquiries or rights requests: [email protected].

If you have questions about this Privacy Policy or wish to exercise your rights, contact us at [email protected]. This policy is governed by the laws of England and Wales.

© 2026 singelpoint-ubsank Ltd. All rights reserved.

singelpoint-ubsank

One Key. Every Banking API. Total Control. — The unified developer gateway for regulated financial infrastructure.

SOC 2 CertifiedPCI DSS
© 2026 singelpoint-ubsank. All rights reserved.101 California St, San Francisco, CA 94111, USA

singelpoint-ubsank is a developer infrastructure provider. API key management services do not constitute financial advice. All banking API integrations are subject to the terms and conditions of the respective financial institutions and applicable regulations. Designed for licensed financial operators, fintechs, and enterprise developers.