Privacy Policy

At Toxa, we are committed to safeguarding the privacy and personal data of our clients. This Privacy Policy (hereinafter the “Policy”) sets out how Toxa, as the data controller, collects, processes, stores, and protects personal information (hereinafter “Data”) in accordance with applicable data protection and privacy laws when you access or use our website https://toxa.com (hereinafter the “Website”) or our platform services.

By accessing or using the Website and/or platform services, you acknowledge that you have read, understood, and fully accept the terms of this Policy.

1. General Provisions

1.1. When registering on the Website or opening an account, the Client provides personal data necessary for identity verification, compliance with anti-money laundering (AML) regulations, and other legal obligations.

1.2. The Company collects and may store the following categories of personal data:

  • Full name and date of birth;

  • Email address and encrypted password;

  • Residential or billing address;

  • Contact phone number;

  • Any identification documents required for verification or regulatory purposes.

1.3. The Company processes personal data solely for legitimate purposes, including compliance with legal obligations, account management, trading operations, dispute resolution, and service improvement.

2. Client Responsibilities

2.1. The Client must provide accurate, complete, and up-to-date information during registration and use of the platform. Any changes to provided information must be communicated to Toxa within 30 calendar days.

2.2. The Client acknowledges that information submitted may be used by the Company for communications, including marketing and promotional materials, provided in compliance with applicable law.

2.3. Personal data may be disclosed to competent governmental or regulatory authorities where required by law, judicial, or regulatory order.

2.4. Aggregated, anonymized, or de-identified data may be used by the Company for analytical, research, and marketing purposes.

3. Verification and Access Restrictions

3.1. To access trading or other financial services, the Company may require submission of identity verification documents. Refusal or failure to provide such documents may result in temporary suspension or permanent termination of access to the platform.

3.2. The Company reserves the right to deny services, restrict access, or terminate accounts at its discretion, without obligation to provide a reason.

4. Corporate Accounts

Where registration is conducted on behalf of a legal entity, the registering individual warrants that they are duly authorized to act on behalf of such entity and bind it to this Policy.

5. Confidentiality and Information Disclosure

5.1. Confidential personal data may only be disclosed in the following circumstances:

  • With explicit written consent of the Client;

  • As required by law, government authority, or court order;

  • For purposes of identity verification and risk management.

5.2. Access to personal data is restricted to authorized personnel who require such information for legitimate business purposes.

6. Data Retention and Usage

6.1. Personal data may be retained for the duration necessary to:

  • Manage and operate the Client account;

  • Comply with legal, regulatory, or contractual obligations;

  • Resolve disputes, investigate fraud, or enforce agreements.

7. Data Verification

7.1. The Company may verify personal data at any time, including through documentation or external databases, to ensure accuracy, legality, and compliance with regulatory obligations.

8. Data Protection Measures

8.1. Toxa implements industry-standard technical and organizational security measures, including encryption, access controls, and monitoring systems, to protect Data from unauthorized access, alteration, or disclosure.

8.2. Security measures are regularly reviewed and updated to comply with international standards and regulatory requirements.

9. Account Credentials

9.1. Clients are responsible for creating and maintaining secure account credentials (username and password).

9.2. Credentials must not be shared with third parties. Toxa is not liable for any unauthorized access resulting from compromised credentials, whether due to negligence or intentional disclosure by the Client.

9.3. All actions conducted using the Client’s credentials are considered authorized by the Client.

10. Unauthorized Access

10.1. The Client must immediately notify Toxa if unauthorized access or suspicious activity is suspected.

11. Payment Data

11.1. Toxa does not collect or store bank card information.

11.2. All financial transactions are protected using TLS 1.2 transport layer encryption and AES-256 application-level encryption in compliance with PCI DSS standards.

12. Cookies and Tracking Technologies

12.1. Cookies are small files stored on the Client’s device to enhance website functionality and provide a personalized user experience.

12.2. Cookies do not store personally identifiable information. Clients may configure their browser to limit or block cookies.

12.3. Cookies are used to:

  • Recognize returning devices;

  • Analyze user behavior to improve the Website;

  • Identify popular pages and optimize navigation.

13. Policy Updates

13.1. The Company reserves the right to amend or update this Policy at any time. The current version is always available on https://toxa.com.

13.2. Clients are responsible for reviewing the Policy regularly to stay informed of updates. Continued use of the platform constitutes acceptance of the amended Policy.