Legal

Privacy Policy

Last updated: May 2026

This Privacy Policy explains how Payclio Payments("Payclio", "we", "us", "our") collects, uses, stores, and shares information when you use payclio.com, the Payclio web and mobile apps, our APIs, and any related services (the "Service").

1. Information we collect

To open and run a Payclio account, we collect:

  • Identity data: legal name, date of birth, country of origin, ID or passport number, residential address, and uploaded ID and proof-of-address documents.
  • Contact data: email address, phone number, and any two-factor verification preferences.
  • Financial data: wallet balances, transactions, payment-link activity, card-issuance and card-spending records, withdrawal destinations, and bank account details where you choose to provide them.
  • Payment-processor data: when you pay with a card, our payment processor handles your card number, expiry, and CVC. Payclio never stores your full card number, we keep only the last four digits, brand, and a tokenized reference.
  • Device and usage data: IP address, user agent, approximate location derived from IP, login timestamps, and security-event logs.

2. How we use your information

  • Operate the Service: open wallets, route payments, issue cards, send and verify one-time codes by WhatsApp, SMS, or email.
  • Verify your identity (KYC) and screen for fraud, sanctions, anti-money-laundering, and counter-terrorist-financing risks as required by applicable law.
  • Communicate with you about your account, security alerts, statements, and product updates.
  • Improve the Service, debug issues, and prevent abuse.
  • Comply with legal obligations and respond to lawful requests from regulators and courts.

3. How we share information

We only share your information with third parties that help us run the Service or when the law requires it:

  • Payment and card-issuing partners: to process card payments and issue virtual or physical cards.
  • Communication partners: to deliver OTP codes, transactional email, and WhatsApp Business messages.
  • Identity-verification partners: when you submit KYC documents.
  • Regulators, law enforcement and tax authorities: where we have a legal obligation to disclose information.

We do not sell or rent your personal information to advertisers.

4. International transfers

Payclio operates internationally. Your information may be processed in jurisdictions outside your country of residence, including the United States and the European Union. We protect cross-border transfers with appropriate safeguards.

5. Security

We use TLS in transit, encrypt sensitive fields at rest (including ID document numbers and access tokens), enforce two-step verification on sensitive actions, and isolate card-payment data using PCI-DSS-compliant providers. No system is perfectly secure, please use a strong, unique password and enable two-step verification.

6. Data retention

We keep account and transaction data for as long as your account is open and for up to 7 years afterwards, to comply with financial-services record-keeping rules. Security logs are typically kept for 12 months.

7. Your rights

Depending on where you live, you may have rights to access, correct, port, or delete your personal information. To exercise any of these rights, email us at privacy@payclio.com. We respond within 30 days.

8. Cookies

We use only strictly necessary cookies: for session, CSRF, and login state. We don't run advertising or cross-site-tracking cookies.

9. Children

Payclio is not for users under 18. If we learn we collected information from a minor, we will delete it.

10. Changes to this policy

We may update this policy. When we make a material change, we will notify you by email or an in-app banner before it takes effect. The "Last updated" date at the top of this page always reflects the current version.

11. Contact

Privacy questions: privacy@payclio.com
General support: support@payclio.com