AlbionAI is committed to transparent data stewardship. This Privacy Notice explains how we collect, process, protect, and retain personal information when you access our computational platform and web infrastructure.
1. Data Controller Information
Under the Data Protection Act 2018 and the UK General Data Protection Regulation ("UK GDPR"), the data controller responsible for the processing of your personal information is AlbionAI ("AlbionAI", "we", "us", or "our"). For any matters concerning your personal data or regulatory inquiries, contact our Data Protection Officer at [email protected].
2. Categories of Data We Collect
We process information only to the extent necessary to provide reliable algorithmic trading interfaces and maintain platform integrity. The categories of information processed include:
- Identity and Contact Data: Basic contact details submitted during technical onboarding, such as name, email address, and country of residence.
- Technical and Device Data: Internet Protocol (IP) addresses, browser classification, operating system identifiers, screen resolution, connection latency, and technical telemetry generated when interacting with our servers.
- Usage and Performance Metrics: Interface session durations, page transition histories, feature engagement rates, algorithm parameter toggles, and server error logs.
- API Integration Metadata: Technical read-only API access tokens and connector identifiers provided by users to interface with external exchange systems. Note: AlbionAI never requests or stores private cryptographic wallet keys or direct bank withdrawal credentials.
3. Lawful Grounds for Processing
Under Article 6 of the UK GDPR, we process personal data under the following legal bases:
- Contractual Necessity: Delivering platform infrastructure, managing technical sessions, and fulfilling services requested by the user.
- Legitimate Interests: Optimizing algorithmic execution latency, debugging software faults, preventing network attacks, and guaranteeing platform security.
- Legal and Regulatory Compliance: Fulfilling fraud prevention mandates, complying with statutory information orders, and keeping adequate audit records.
- Explicit Consent: Where you voluntarily opt in to non-essential analytical cookies or technical email notices. Consent may be withdrawn at any time.
4. How We Use Collected Information
The information collected through AlbionAI is deployed strictly for specific and operational purposes:
- To provision, maintain, and supervise the stability of our algorithmic computational engine.
- To monitor and mitigate malicious intrusion attempts, DDoS assaults, and unauthorized access to our infrastructure.
- To analyze technical platform performance and calibrate user interface response times.
- To communicate mission-critical system changes, security notifications, or technical software updates.
5. Cookies and Tracking Technologies
AlbionAI uses essential technical cookies required for the fundamental operation, session maintenance, and cyber-security of the platform. We may also deploy anonymized analytical cookies to evaluate interface efficiency.
You can configure your internet browser to reject non-essential cookies or notify you when cookies are sent. Please note that restricting essential cookies may degrade or impair certain operational features of our algorithmic platform.
6. Sharing and International Transfers
We do not sell, rent, or trade your personal information to third parties or marketing brokers. Personal information may be shared under strict confidentiality agreements solely with:
- Cloud Infrastructure and Hosting Providers: Secure hosting and data storage facilities located within the United Kingdom and the European Economic Area (EEA).
- Cybersecurity and Telemetry Services: Specialist technical providers that assist in DDoS defense, routing optimization, and automated system monitoring.
- Regulatory and Law Enforcement Authorities: When compelled by mandatory legal process, court decree, or governing UK statutory obligation.
Where personal data is transferred outside the United Kingdom, we verify that appropriate transfer mechanisms (such as the UK International Data Transfer Agreement or standard contractual clauses) are implemented to ensure an equivalent standard of protection.
7. Data Security and Retention
We enforce rigorous operational, technical, and architectural defenses designed to protect your personal data from unauthorized disclosure, destruction, alteration, or loss. Protections include end-to-end TLS encryption, compartmentalized server infrastructure, and restricted administrative privileges.
We retain personal information only for the period necessary to fulfil the objectives described in this notice, satisfy administrative audit requirements, and comply with applicable statutory limitation periods under English law.
8. Your Statutory Rights
Under the UK GDPR, you maintain enforceable rights concerning your personal information, including:
- Right of Access: Request a copy of the personal information held about you.
- Right to Rectification: Request correction of inaccurate or incomplete records.
- Right to Erasure: Request the deletion of your personal data where retention is no longer justified.
- Right to Restriction of Processing: Request suspension of processing in specified circumstances.
- Right to Data Portability: Obtain your data in a structured, machine-readable format.
- Right to Object: Object to processing justified under legitimate interests.
To exercise any of these rights, contact our privacy team at [email protected]. You also possess the statutory right to register a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk.
9. Policy Updates
We review and update this Privacy Notice periodically to reflect technological adjustments, changes to our computational engines, or evolving legal requirements. Any modifications will be published on this page with an amended "Last Updated" timestamp.