Legal
Privacy Policy
Last updated: 22 May 2026. This policy is aligned with GDPR, UK GDPR and other applicable global data protection laws.
1. Who we are
blueChart ("we", "us", "our") operates an AI-powered forex auto-trading product available to users globally. This Privacy Policy explains what personal data we collect, how we use it, who we share it with, and the rights you have under the EU General Data Protection Regulation (GDPR), the UK GDPR and other applicable data protection laws.
2. Data we collect
- Identity & contact: name, email, phone, country of residence, date of birth.
- KYC / AML data: passport or national ID, proof of address, selfie, tax residency, source-of-funds declarations.
- Financial data: bank account, card details (tokenised), wallet addresses, trading activity, deposits, withdrawals, P&L.
- Device & usage: device model, OS, browser, IP address, approximate location, app interactions, crash logs.
- Communications: messages to support, chat transcripts, call recordings.
3. How we use your data
- Verify your identity (KYC) and onboard you to our broker partners.
- Execute, monitor and report on FX trades on your behalf.
- Process deposits, withdrawals and profit-share settlements.
- Comply with AML, sanctions and tax-reporting obligations.
- Detect and prevent fraud, abuse and unauthorised access.
- Improve our AI models, product and support quality.
- Send transactional notifications and, with consent, product updates.
4. Legal bases for processing
We process personal data on the bases of contract performance (to provide the service), legal obligation (KYC/AML), legitimate interests (fraud prevention, product improvement) and consent (marketing communications). You can withdraw consent at any time.
5. Who we share data with
- Licensed FX broker partners that execute and custody your trades.
- KYC / AML providers (e.g. Sumsub, Onfido, Jumio) to verify your identity.
- Payment processors, banks and card networks for deposits and withdrawals.
- Cloud, security and analytics providers under strict confidentiality and data-processing agreements.
- Regulators, tax authorities and law-enforcement bodies where legally required.
6. International data transfers
blueChart operates globally, which means your data may be transferred to and processed in countries outside your home jurisdiction. Where required, we rely on Standard Contractual Clauses, adequacy decisions or equivalent safeguards to protect your data during such transfers.
7. Storage & security
Personal data is stored on encrypted infrastructure with access restricted on a need-to-know basis. We use TLS in transit, hardware-backed key management, tokenised card storage via PCI-DSS compliant processors, and continuous monitoring for unauthorised access.
8. Retention
We retain personal and financial data for as long as your account is active and thereafter for the period required by applicable financial-services law — typically 5 to 7 years after account closure for KYC, transaction and tax records.
9. Your rights
Subject to applicable law, you have the right to access, rectify, erase, restrict or object to processing of your personal data, and to data portability. EU/UK users also have the right to lodge a complaint with their local data protection authority. You can exercise most of these rights directly from the app (Settings → Privacy) or by emailing our Data Protection team at bluechart.in@gmail.com.
10. Cookies & similar technologies
Our website uses cookies and local storage for authentication, preferences and basic analytics. You can manage cookies via your browser or our cookie banner, but parts of the site may not work as expected if you disable strictly-necessary cookies.
11. Children
blueChart is not intended for users under 18 (or the legal trading age in your jurisdiction, whichever is higher). We do not knowingly collect data from minors. If you believe a minor has provided us with personal data, contact us and we will delete it.
12. Changes to this policy
We may update this policy from time to time. Material changes will be notified via the app or email at least 14 days before they take effect.
13. Contact us
For privacy questions or to exercise your rights, write to privacy@bluechart.app. We acknowledge requests within 72 hours and respond within 30 days as required by GDPR.
