DATA SECURITY

Privacy Policy

Last Updated: February 16, 2026

1. Introduction

We respect your data privacy. This policy explains how we collect, use, and protect information within the Empire ecosystem.

2. Collected Data

We collect the minimum necessary for service operation:

  • Identity Data: Name, Email, Phone.
  • Technical Data: IP, Logs, Device ID (for security).
  • Financial Data: Billing details (processed securely).

3. Data Usage

We use your data exclusively for:

  • Providing contractual services.
  • Issuing fiscal invoices.
  • Account security and fraud prevention.
  • Critical project communications.

4. Legal Basis

Processing is based on:

  • Contract Execution.
  • Legal Obligations (invoicing).
  • Legitimate Interest (security).

5. Data Sharing

We do not sell your data. We share it only with:

  • Payment Processors (Stripe/Bank).
  • Authorities (if legally required).
  • Cloud Partners (AWS/Google) under strict confidentiality clauses.

6. Security

We apply Enterprise-grade measures: AES-256 encryption at rest, TLS 1.3 in transit, and Role-Based Access Control (RBAC).

7. Your Rights

Under GDPR, you have the right to:

  • Access and Rectification.
  • Deletion ('Right to be forgotten').
  • Data Portability.
  • Objection to processing.

8. Data Retention

We retain data for the contractual duration + 5 years for fiscal and legal compliance.

9. Contact

For any questions, you can email us at business@empirex.tech or contact the GDPR Officer.

10. Changes

We reserve the right to update this policy. Any changes will be published on this page.