Easyfortunetrades is fully committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR). This page explains your rights and how we uphold them.
Last updated: June 15, 2026The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018, across the European Union and European Economic Area. It establishes strict rules for how organizations collect, process, store, and transfer personal data of individuals within the EU/EEA. GDPR grants individuals significant rights over their personal data and imposes substantial penalties for non-compliance up to €20 million or 4% of global annual turnover, whichever is higher.
Although Easyfortunetrades serves clients globally, we extend GDPR-level protections to all our users regardless of their location, because we believe privacy is a universal right.
Easyfortunetrades is committed to the following GDPR principles:
GDPR grants you the following rights regarding your personal data:
You can request a copy of all personal data we hold about you, along with information about how it is processed.
You can request correction of inaccurate or incomplete personal data without undue delay.
Also known as the "right to be forgotten," you can request deletion of your data where there is no compelling reason for continued processing.
You can request that we limit how your data is processed in certain circumstances, such as while a dispute is being resolved.
You can receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.
You can object to processing based on legitimate interests, direct marketing, or processing for research/statistical purposes.
You have the right not to be subject to decisions based solely on automated processing that produce legal effects concerning you.
You have the right to lodge a complaint with a supervisory authority if you believe your data protection rights have been violated.
Under GDPR, we must have a valid legal basis for processing your personal data. We rely on the following:
Processing necessary to perform our contract with you including account management, transaction processing, and service delivery.
Processing required to comply with laws including AML/KYC regulations, tax reporting, and responding to lawful requests from authorities.
Processing for our legitimate business interests including fraud prevention, platform security, service improvement, and analytics balanced against your rights.
Where you have given clear consent including marketing communications and non-essential cookies. You may withdraw consent at any time.
We collect only the personal data necessary to provide our services and comply with legal obligations:
For complete details, please review our Privacy Policy.
We process your personal data for the following specific purposes:
As a global platform, your data may be transferred to and processed in countries outside the EU/EEA. When we transfer data internationally, we ensure appropriate safeguards are in place, including:
You may request a copy of the specific safeguards applicable to your data by contacting our Data Protection Officer.
We have appointed a Data Protection Officer (DPO) responsible for overseeing our GDPR compliance and serving as your primary contact for data protection matters. The DPO's responsibilities include:
DPO Contact
[email protected]Response Time
Within 30 days (as required by GDPR)
In the event of a personal data breach, we have established procedures to detect, investigate, and respond promptly. Under GDPR, we are required to notify the relevant supervisory authority within 72 hours of becoming aware of a breach that poses a risk to individuals' rights and freedoms. If the breach is likely to result in high risk to your rights and freedoms, we will notify you without undue delay, describing the nature of the breach, likely consequences, and measures taken to address it.
All breaches are documented in an internal register, regardless of whether notification is required.
To exercise any of your GDPR rights, follow these steps:
Email us at [email protected] with the subject line "GDPR Request - [Your Right]" (e.g., "GDPR Request - Right of Access"). Include your full name and registered email address.
We will verify your identity to protect your data from unauthorized access. This may require providing additional documentation.
We will respond within 30 calendar days. Complex or numerous requests may require an extension of up to 60 days, in which case we will inform you within the first 30 days.
Requests are free of charge. However, we may charge a reasonable fee or refuse to act on requests that are manifestly unfounded, excessive, or repetitive.
Submit GDPR Requests
[email protected]Supervisory Authority
Your local EU data protection authority
GDPR Response Deadline
Within 30 calendar days
We're committed to protecting your privacy and upholding the highest data protection standards.
Fully compliant with GDPR and global privacy regulations.