This extensive Privacy and Data Governance Policy applies to all data processing carried out by Crypto-Bond AG on its institutional website cryptobond.ch, its client web platform wallet.cryptobond.ch, and in connection with all commercial and pre-contractual relationships established with its users and investors.
Crypto-Bond AG attaches fundamental importance to privacy, digital autonomy and the security of personal information entrusted by its clients and visitors. As part of its financial intermediation activities, its issuance of loans secured by digital assets (crypto-backed loans), and its administration of secured wallets, Crypto-Bond AG holds itself to the highest standard of legal and technical rigour.
This policy supplements and clarifies all applicable contractual documents. Its purpose is to inform, with full transparency, any individual or legal entity (hereinafter the "User" or "Client") whose data is processed, of the nature of the information collected, the purposes of processing, the associated legal bases, the retention period, the hosting architecture, and the full range of rights recognised under Swiss and European law.
The controller responsible for the processing operations covered by this policy is the Swiss company:
Crypto-Bond AG
Chamerstrasse 172, 6300 Zug, Canton of Zug, Switzerland
Business ID / UID: CHE-209.086.670
Registered with the Commercial Register of the Canton of Zug: CH-170.3.042.722-8
Crypto-Bond AG has appointed a Data Protection Officer (DPO), reachable directly at the dedicated email address: admin@cryptobond.ch. The DPO ensures ongoing compliance with Swiss and international legal requirements and acts as the primary point of contact between the company, users, and the Federal Data Protection and Information Commissioner (FDPIC).
Crypto-Bond AG operates its infrastructure in strict compliance with the following legal frameworks:
In carrying out its activities, Crypto-Bond AG collects and processes the following categories of personal data:
| Origin / Source | Types of Data Collected | Description & Context |
|---|---|---|
| Website visit & browsing | IP addresses, User-Agent, pages viewed, timestamps, coarse geolocation data, technical cookies. | Collected automatically when browsing cryptobond.ch and wallet.cryptobond.ch. |
| Contact form | First name, last name, email address, phone number, subject, message content. | Entered directly by the user for any support or general information request. |
| Loan request form | First name, last name, email, phone, requested amount, desired duration, type and quantity of crypto collateral, remarks. | Collected for the pre-contractual assessment of a secured loan and the simulation of the Loan-to-Value (LTV) ratio. |
| Identity verification (KYC / AML) | Official identity document, proof of address less than 3 months old, dynamic photo/selfie, source of funds, PEP status. | Mandatorily required before any loan approval or access to custody services. |
| Wallet & transactions area | Public blockchain wallet addresses, transaction history, balances, connection logs and financial transactions. | Generated or entered when using the wallet.cryptobond.ch area. |
smtp.hostinger.com) exclusively to the administration mailbox admin@cryptobond.ch.Crypto-Bond AG adheres to a strict policy of avoiding intrusive tracking. The websites cryptobond.ch and wallet.cryptobond.ch exclusively use:
No third-party advertising cookie or behavioural targeting network is deployed without prior explicit consent gathered via a consent management banner.
Crypto-Bond AG prioritises processing and storing personal data in Switzerland and within the European Economic Area (EEA). Switzerland benefits from an adequacy decision by the European Commission, and reciprocally.
Should an occasional transfer occur to a subcontractor located in a third country not offering an equivalent level of protection recognised by the FDPIC, Crypto-Bond AG undertakes to enter into Standard Contractual Clauses (SCCs) approved by the EU and adapted to Swiss law, accompanied by Transfer Impact Assessments (TIA) and encryption measures ensuring that no foreign authority can access the data in clear text.
| Data Type | Retention Period | Basis for Archiving |
|---|---|---|
| Simple prospecting and contact data | 12 months from the end of the exchange | Legitimate interest and follow-up on prospects. |
| Unfinalised loan requests | 24 months after the last exchange | Risk analysis and history of requests. |
| Complete client files (loans, KYC, CO) | 10 years from the official closure of the account | Legal accounting archiving obligation and AMLA (Art. 958f CO / Art. 7 AMLA). |
| Technical logs and access records | 6 to 12 months | Security auditing and intrusion detection requirements. |
The User is informed that transactions executed on public blockchains (Bitcoin, Ethereum, etc.) are, by nature, public, immutable and permanent. Although Crypto-Bond AG does not disclose the association between a civil identity and a blockchain address, data recorded directly on the blockchain cannot be modified or erased by Crypto-Bond AG.
To exercise any of the rights listed above, the User is invited to contact the Data Protection Officer by email or post:
DPO / Privacy contact
Email: admin@cryptobond.ch
Address: Crypto-Bond AG, Attn: Data Protection Officer, Chamerstrasse 172, 6300 Zug, Switzerland.
To prevent identity theft, any request must be accompanied by a legible copy of a valid official identity document.
The services provided by Crypto-Bond AG are exclusively reserved for individuals with full legal capacity who are at least 18 years old at the time of registration. Crypto-Bond AG does not knowingly collect or process any personal data relating to minors. Should such collection be identified, the associated account will be immediately blocked and the data deleted as soon as possible.
Crypto-Bond AG reserves the right to amend or adjust this policy at any time to reflect changes in legal requirements, case law, or technical architecture. Any material change will be notified to registered users by email or via a clearly visible notice on the website. The date of the last update is continuously displayed at the bottom of this document.
Without prejudice to any other administrative or judicial remedy, any User who believes that the processing of their data does not comply with applicable law has the right to lodge a report or complaint with the competent supervisory authority:
In Switzerland:
Federal Data Protection and Information Commissioner (FDPIC)
Feldeggweg 1, CH-3003 Bern, Switzerland
Phone: +41 (0)58 462 43 95 — Website: www.edoeb.admin.ch
Within the European Union: the local data protection authority of the Member State of the client's habitual residence.