Last Updated: June 1, 2025 · Effective Date: June 15, 2025
app-column is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your personal data when you use our banking infrastructure APIs, dashboard, and related services. Please read it carefully.
Contents
We collect information you provide directly: name, email address, company name, billing details, and API credentials when you register or use app-column services.
We also collect usage data automatically: IP addresses, browser type, pages visited, API request logs, and device identifiers via cookies and similar technologies.
We may collect identity verification data (government-issued ID, EIN/TIN) as required by applicable financial regulations (KYC/AML obligations).
To provision and operate your app-column account, authenticate API requests, process payments, and deliver customer support.
To comply with financial regulatory requirements including anti-money-laundering (AML), fraud prevention, and sanctions screening.
To send transactional communications (account alerts, API status updates) and, with your consent, product announcements and developer newsletters.
We share data with vetted sub-processors (cloud infrastructure, payment processors, identity verification providers) strictly to deliver our services.
We do not sell, rent, or trade your personal data to any third party for marketing purposes.
We may disclose data to law enforcement or regulators when legally required or to protect the rights and safety of app-column and its users.
Under GDPR (EEA/UK residents) and CCPA (California residents), you have the right to access, correct, delete, or export your personal data.
You may object to or restrict certain processing activities, and withdraw consent at any time without affecting prior processing.
To exercise any right, contact us at [email protected]. We will respond within 30 days. California residents may designate an authorised agent.
We retain account and transaction data for a minimum of 7 years to satisfy banking and financial regulatory obligations.
Non-essential data (e.g., marketing preferences, analytics) is deleted or anonymised within 24 months of your last interaction.
You may request deletion of non-regulated personal data at any time; regulated financial records are exempt from deletion requests.
All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Access to production systems is restricted to authorised personnel via MFA-enforced controls.
We conduct regular penetration testing, vulnerability scans, and independent SOC 2 Type II audits.
In the event of a breach affecting your personal data, we will notify you and relevant authorities within 72 hours as required by applicable law.
app-column services are intended solely for businesses and individuals aged 18 or older.
We do not knowingly collect personal data from anyone under 18. If we become aware of such collection, we will delete the data immediately.
We may update this Privacy Policy periodically. Material changes will be communicated via email or a prominent notice in your dashboard at least 14 days before they take effect.
The 'Last Updated' date at the top of this page reflects the most recent revision. Continued use of our services after the effective date constitutes acceptance.
app-column, Inc. is the data controller for personal data processed under this policy.
For privacy enquiries, data subject requests, or to reach our Data Protection Officer, email: [email protected] or write to: app-column, Inc., 340 Pine Street, Suite 800, San Francisco, CA 94104, USA.
Questions about this policy?
Reach our Privacy team at [email protected]. For general enquiries, visit our Contacts page.
The API-first banking infrastructure built for developers. Move money, hold funds, and issue cards — all through a single unified API.
© 2026 app-column. All rights reserved.