How we collect, use, and protect your personal data
Last Updated: January 13, 2026Welcome to btccampus ("we," "our," or "us"). We are committed to protecting your personal data and respecting your privacy in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679 and other applicable data protection laws.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our cryptocurrency analytics and trading signal platform, including our website, mobile applications, and related services (collectively, the "Service").
By accessing or using our Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with our policies and practices, please do not use our Service.
For the purposes of the GDPR, the data controller responsible for your personal data is:
We collect different types of information depending on how you interact with our Service:
| Data Type | Examples | Purpose |
|---|---|---|
| Account Information | Email address, username, password (hashed) | Account creation and authentication |
| Profile Information | Full name, phone number, avatar | Account personalization |
| Payment Information | Cryptocurrency wallet addresses, transaction hashes | Subscription processing |
| Exchange API Keys | API key, API secret (encrypted) | Auto-trade functionality |
| Communication Data | Support tickets, feedback, inquiries | Customer support |
Under the GDPR, we process your personal data based on the following legal grounds:
| Legal Basis | Description |
|---|---|
| Contract Performance | Processing necessary to provide our Service, manage your account, and fulfill subscription obligations (Article 6(1)(b) GDPR) |
| Legitimate Interests | Processing for fraud prevention, security, service improvement, and analytics, where our interests do not override your rights (Article 6(1)(f) GDPR) |
| Consent | Processing for marketing communications and non-essential cookies, which you can withdraw at any time (Article 6(1)(a) GDPR) |
| Legal Obligation | Processing required to comply with applicable laws, regulations, or legal processes (Article 6(1)(c) GDPR) |
We use your personal data for the following purposes:
We use cookies and similar tracking technologies to enhance your experience on our platform.
| Cookie Type | Purpose | Duration |
|---|---|---|
| Essential Cookies | Required for authentication, security, and basic functionality | Session / 30 days |
| Functional Cookies | Remember preferences (language, theme, display settings) | 1 year |
| Analytics Cookies | Understand how users interact with our Service | 2 years |
| Performance Cookies | Monitor and improve platform performance | 1 year |
We also use browser local storage to store:
You can control cookies through your browser settings. However, disabling essential cookies may affect the functionality of our Service. Most browsers allow you to:
Your exchange API keys are handled with the highest level of security. We understand the sensitive nature of this data and have implemented multiple layers of protection.
When you connect an exchange API, we access:
We work with trusted third-party service providers to operate our platform:
| Service Type | Provider(s) | Data Shared |
|---|---|---|
| Cloud Hosting | AWS, Cloudflare | All service data (encrypted) |
| Email Services | SendGrid, Mailgun | Email address, name |
| Analytics | Google Analytics (anonymized) | Usage data, device info |
| Payment Verification | Blockchain explorers | Transaction hashes |
| Exchange APIs | Binance, OKX, Bybit, MEXC, BingX | API keys (for connected accounts) |
All third-party providers are contractually obligated to protect your data and process it only according to our instructions.
Your data is primarily stored on secure servers located in the European Union. Some data may be processed by third-party providers with servers in other jurisdictions, subject to appropriate safeguards (see Section 12).
We implement comprehensive security measures to protect your data:
In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours as required by GDPR Article 33.
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
| Data Category | Retention Period |
|---|---|
| Account Data | Duration of account + 30 days after deletion request |
| Transaction/Payment Records | 7 years (legal/tax requirements) |
| Exchange API Keys | Until disconnected by user or account deletion |
| Trade History | Duration of account + 90 days |
| Server Logs | 90 days |
| Support Communications | 3 years after resolution |
| Marketing Preferences | Until consent is withdrawn |
As a data subject, you have the following rights regarding your personal data:
Request a copy of the personal data we hold about you.
Request correction of inaccurate or incomplete data.
Request deletion of your personal data ("right to be forgotten").
Request limitation of how we process your data.
Receive your data in a structured, machine-readable format.
Object to processing based on legitimate interests or for marketing.
Withdraw consent at any time where processing is based on consent.
Lodge a complaint with a supervisory authority.
To exercise any of these rights, please contact us at info@btckampus.com. We will respond to your request within 30 days. You may also manage certain data directly through your account settings.
To protect your privacy, we may need to verify your identity before processing your request. This helps ensure that personal data is not disclosed to unauthorized individuals.
When we transfer personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place:
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If you are a parent or guardian and believe your child has provided us with personal data, please contact us immediately.
If we become aware that we have collected personal data from a child without parental consent, we will take steps to delete that information promptly.
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes:
Your continued use of our Service after any changes indicates your acceptance of the updated Privacy Policy.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
You have the right to lodge a complaint with a data protection supervisory authority in the EU member state of your habitual residence, place of work, or place of the alleged infringement.