SharpPay is a financial platform — that means we take how we handle your data seriously. This policy explains exactly what we collect, why we collect it, and how we protect it.
When you create a SharpPay account, we collect your name, email address, phone number, date of birth, and government-issued ID for identity verification purposes as required by financial regulations.
To process payments and transfers, we collect bank account details, card information (stored via our PCI-DSS compliant payment processors), and transaction history. We never store raw card numbers on our servers.
We automatically collect IP addresses, device identifiers, browser type, operating system, app version, and usage patterns to improve our services, detect fraud, and maintain security.
When you contact our support team, we retain records of those communications to provide better service and resolve disputes.
We use your information to process transactions, maintain your account, send receipts, and provide customer support. This is the core purpose of our data collection.
Your data helps us detect suspicious activity, prevent unauthorized access, comply with anti-money laundering (AML) regulations, and protect the SharpPay network.
As a financial services provider, we are required by law to verify identities (KYC), report certain transactions to financial authorities, and retain records for prescribed periods.
Aggregated, anonymized usage data helps us understand how people use SharpPay so we can build better features and fix problems faster.
SharpPay does not sell, rent, or trade your personal information to third parties for their marketing purposes. Full stop.
We share data with trusted third-party vendors who help us operate (payment processors, cloud infrastructure, fraud detection services). All are bound by strict data processing agreements.
We may disclose your information when required by law, subpoena, court order, or when we believe disclosure is necessary to prevent harm, fraud, or illegal activity.
All data in transit is encrypted using TLS 1.3. Sensitive data at rest is encrypted using AES-256. We follow bank-grade security standards throughout our infrastructure.
Access to your personal data within SharpPay is restricted to employees who need it to perform their job functions, enforced through role-based access control.
In the event of a data breach that affects your personal information, we will notify you within 72 hours as required by applicable law.
You can request a copy of all personal data we hold about you at any time through your account settings or by contacting support.
You may update your profile information at any time. You may also request deletion of your account and associated data, subject to our legal retention obligations.
You can unsubscribe from marketing emails at any time using the unsubscribe link in any email, or by updating your notification preferences in the app.
We use cookies that are strictly necessary to operate the platform — for example, to keep you logged in and to detect fraud. These cannot be disabled.
With your consent, we use analytics cookies to understand how users interact with SharpPay. You can opt out of these in your browser settings.
We retain your data for as long as your account is active or as needed to provide services.
After account closure, we retain transaction records and identity information for a minimum of 7 years as required by financial regulations and anti-money laundering laws.
If you have questions about this Privacy Policy or how we handle your data, please contact our Privacy Team via the Support page.
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or an in-app notification at least 30 days before they take effect.
We collect what we need to run a financial platform, we protect it like it's our own, we don't sell it, and you can ask us to delete it (subject to legal hold requirements). Questions? Contact support.