Privacy Policy
1. Who we are
VisualPay (“we”, “us”) operates a crypto payment gateway and related websites and merchant tools. This Privacy Policy explains what information we collect, how we use it, and the choices you have. It applies to visualpay.net, the merchant panel, APIs, webhooks and the contact form.
By using the Service you acknowledge this Policy. For how the product itself works, see our Terms of Service.
2. Information we collect
We collect information in these categories:
- Account data. Name, email address, hashed password, two-factor settings, and similar profile fields you submit at sign-up or in the panel.
- Merchant and payment data. Merchant configuration, wallet addresses you declare, API activity, transaction amounts (USD and crypto), selected coin/network, payment addresses we generate, status, timestamps and webhook delivery results. Blockchain records are public by design; we store operational copies needed to run the gateway.
- Support and contact data. Messages you send via the contact form or in-panel support, including your name and email.
- Technical data. IP address, browser and device information, approximate country (for example from Cloudflare headers), security logs and rate-limit data.
- Security checks. Cloudflare Turnstile tokens used to verify that a request is from a human, not a bot.
We do not ask for government ID to open an account. That is a product choice, not a promise that we will never collect additional data if the law requires it.
3. How we use information
We use information to:
- Create and secure accounts, merchants and API access.
- Create, monitor and settle transactions, and send webhooks.
- Provide support and respond to contact-form messages.
- Prevent abuse, fraud and prohibited activity under our AML Policy.
- Operate, debug and improve the Sites and Service.
- Comply with law and enforce our terms.
We do not sell your personal information.
4. Legal bases (where applicable)
Where a privacy law requires a legal basis, we typically rely on: performing a contract with you; legitimate interests in running a secure payment gateway; consent where we ask for it; and legal obligation.
5. Sharing
We share information with:
- Infrastructure providers needed to run the Service (hosting, email delivery, Cloudflare, RPC/blockchain providers, analytics if enabled).
- You and your systems — for example webhook payloads you configure, and data shown in your panel.
- Authorities when we reasonably believe disclosure is required by law or to protect VisualPay, users or the public.
Public blockchains will show amounts, addresses and transaction hashes independently of VisualPay. Anyone can inspect those records.
6. Cookies and similar technology
We use cookies and similar storage for session authentication, security and, where enabled, analytics and advertising measurement. You can control cookies in your browser; disabling them may prevent sign-in or other features from working.
7. Retention
We keep account, merchant and transaction records for as long as your account is active and for a reasonable period afterwards as needed for security, disputes, tax and legal compliance. Contact-form messages are kept until handled and for a limited archive period. You may ask us to delete account data; we may retain information we must keep by law or for legitimate security reasons.
8. Security
We use HTTPS, hashed passwords, optional two-factor authentication, API keys and rate limiting. No method of transmission or storage is 100% secure. You must protect your own passwords, 2FA devices and merchant keys.
9. International processing
We may process information in countries other than yours. If you access the Service from a restricted region, you are responsible for whether that access is lawful.
10. Your rights
Depending on where you live, you may have rights to access, correct, delete or export personal data, or to object to certain processing. Contact us using the details below. We may need to verify the request. Some rights do not apply to data we must keep, or to public blockchain data we do not control.
11. Children
The Service is not directed at children under 18 (or the age of majority where you live). We do not knowingly collect personal information from children.
12. Changes
We may update this Policy by posting a new version on this page. The “Last updated” date shows when it took effect. Material changes may also be announced by email or a notice in the panel.
13. Contact
Privacy questions: Contact Us or [email protected].