1. Introduction
Novi P2P Trading Platform ("Novi", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our peer-to-peer cryptocurrency trading platform.
By using Novi, you consent to the data practices described in this policy.
2. Information We Collect
2.1 Information You Provide
When you register and use our Platform, you may provide:
- Account Information: Name, email address, username, password
- Profile Information: Optional profile picture, bio, trading preferences
- Payment Information: Payment method details (stored encrypted)
- Verification Documents: Government ID, proof of address (if voluntary KYC is completed)
- Communication Data: Messages sent through our trading chat system
2.2 Information Collected Automatically
When you access the Platform, we automatically collect:
- Device Information: Device type, operating system, browser type, device fingerprint
- Usage Data: IP address, pages visited, time spent, features used
- Location Data: Approximate geographic location based on IP address
- Cookies and Tracking: Session cookies, analytics cookies, preference cookies
2.3 Transaction Information
We collect information about your trading activity, including offers created, trades executed, payment confirmations, escrow transactions, and dispute records.
3. How We Use Your Information
We use the collected information for the following purposes:
- Service Provision: Facilitate peer-to-peer trades, manage escrow, process transactions
- Account Management: Create and maintain your account, authenticate users, enable 2FA
- Communication: Send transaction notifications, security alerts, service updates
- Security: Detect fraud, prevent abuse, monitor suspicious activity, calculate risk scores
- Compliance: Comply with legal obligations, respond to law enforcement requests
- Analytics: Analyze usage patterns, improve Platform features, optimize user experience
- Customer Support: Respond to inquiries, resolve disputes, provide technical assistance
4. Information Sharing and Disclosure
4.1 With Other Users
Your public profile information (username, reputation score, trade history) is visible to other users. Trade-specific information (payment details, chat messages) is shared only with your trading counterparty.
4.2 With Service Providers
We may share data with trusted third-party service providers who assist with:
- Hosting and infrastructure (cloud services)
- Analytics and monitoring tools
- Email delivery services
- Customer support platforms
These providers are contractually obligated to protect your data and use it only for specified purposes.
4.3 Legal Obligations
We may disclose information when required by law, such as:
- Complying with court orders, subpoenas, or legal processes
- Responding to law enforcement requests
- Protecting against legal liability
- Enforcing our Terms of Service
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
5. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: All data transmitted between your device and our servers uses TLS/SSL encryption
- Secure Storage: Sensitive data is encrypted at rest using AES-256 encryption
- Access Controls: Strict access controls limit who can view your personal information
- Two-Factor Authentication: Optional 2FA adds an extra layer of account security
- Security Monitoring: Continuous monitoring for suspicious activity and potential breaches
- Regular Audits: Periodic security audits and vulnerability assessments
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
6. Data Retention
We retain your information for as long as necessary to:
- Provide the Platform services
- Comply with legal obligations (e.g., tax records, AML requirements)
- Resolve disputes and enforce agreements
- Maintain security and fraud prevention records
Typical retention periods:
- Account data: Retained while account is active + 7 years after closure
- Transaction records: 7 years (for compliance purposes)
- Chat messages: 2 years after trade completion
- Security logs: 3 years
7. Your Privacy Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal retention requirements)
- Portability: Request transfer of your data to another service provider
- Objection: Object to certain processing activities (e.g., marketing)
- Restriction: Request restriction of processing in certain circumstances
- Withdraw Consent: Withdraw previously given consent for data processing
To exercise these rights, contact us at privacy@novi-p2p.com. We will respond within 30 days.
8. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for Platform functionality (authentication, security)
- Analytics Cookies: Track usage patterns to improve the Platform
- Preference Cookies: Remember your settings and preferences
You can control cookies through your browser settings. Disabling cookies may limit Platform functionality.
9. International Data Transfers
Our servers are located in the United States. By using Novi, you consent to the transfer of your information to the U.S. and other countries where data protection laws may differ from your jurisdiction. We implement appropriate safeguards to protect your data during international transfers.
10. Children's Privacy
Novi is not intended for users under 18 years of age. We do not knowingly collect information from minors. If we become aware that a user is under 18, we will promptly delete their account and information.
11. Third-Party Links
The Platform may contain links to third-party websites or services. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any information.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Material changes will be notified via email or Platform notification. The "Last updated" date at the top indicates when changes were last made. Continued use after changes constitutes acceptance of the updated policy.
13. Contact Us
For questions, concerns, or requests regarding this Privacy Policy or your personal data, contact us at:
Email: privacy@novi-p2p.com
Support: support@novi-p2p.com
Data Protection Officer: dpo@novi-p2p.com
14. GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA), we process your data in accordance with the General Data Protection Regulation (GDPR). Our legal bases for processing include:
- Contract Performance: Processing necessary to provide our services
- Legal Obligation: Compliance with applicable laws and regulations
- Legitimate Interests: Fraud prevention, security, and Platform improvement
- Consent: Where you have explicitly opted in (e.g., marketing communications)
You have the right to lodge a complaint with your local data protection authority if you believe your rights have been violated.
15. California Privacy Rights (CCPA)
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of the sale of personal information
- Right to deletion of personal information
- Right to non-discrimination for exercising CCPA rights
Note: Novi does not sell your personal information to third parties.
By using Novi, you acknowledge that you have read, understood, and agree to this Privacy Policy.