This Policy explains the personal data Nordkey uses to provide accounts, process orders, prevent fraud and support customers.
1. Data we collect
We may collect your name, email address, country, account activity, order history, support messages, device and network information, and payment status. Payment card details are handled by the payment provider and are not stored by Nordkey.
2. Why we use it
We use data to create and secure accounts, perform contracts, deliver keys, provide support, comply with accounting and legal duties, prevent fraud, and send marketing only where permitted.
3. Legal bases
Depending on the activity, processing is necessary to perform a contract, comply with legal obligations, pursue legitimate interests such as security and fraud prevention, or act on your consent.
4. Sharing
Data may be shared with payment processors, digital-key suppliers, hosting and email providers, fraud-prevention services, professional advisers and authorities where required. Each recipient receives only the data needed for its role.
5. International transfers
Where a provider processes data outside the European Economic Area, we use an applicable legal transfer mechanism and appropriate safeguards.
6. Retention
Account and order records are retained for as long as needed to provide the service and meet tax, accounting, dispute and fraud-prevention requirements. Marketing data is kept until consent is withdrawn or it is no longer needed.
7. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction, portability or objection, and withdraw consent. You may also complain to your local data-protection authority.
8. Contact
Privacy requests can be sent to support@nordkeys.aiti.space. We may need to verify your identity before acting on a request.