Privacy & Data Protection Notice

Version 1.0 · Effective 2026-08-18 · Document ID: privacy_policy

RegMind provides this secure applicant workspace. Your financial institution's legal terms and privacy notices apply. Institution-specific legal wording for this document is pending publication; the governed platform terms below apply in the meantime and this page will serve the approved institution text, under a new document version, once supplied.

Purpose of processing

Personal data submitted through this workspace is processed for account onboarding purposes: identity verification, know-your-customer (KYC) and customer due diligence checks, sanctions and politically-exposed-person screening, and the compliance review of your application, as required under applicable anti-money-laundering law.

Data retention

Records are retained under the platform's governed retention schedule, in line with the Mauritius Data Protection Act 2017, GDPR Article 5(1)(e), and AML/CFT Act 2020 s.17. Client personal data and KYC/CDD documents are retained for 7 years after the business relationship ends; screening results, compliance memos, and onboarding application data are retained for 7 years; audit trail records are retained for 10 years.

Your rights

You may exercise data subject rights, including access and erasure requests, subject to the regulatory retention obligations above. Requests are handled through your financial institution's data-protection contact.