Legal Notice

Privacy policy and GDPR information

Privacy Policy

Banklo processes personal data in accordance with the Swiss Federal Act on Data Protection (nFADP) and the EU General Data Protection Regulation (GDPR).

Data collected

  • Bank account information (encrypted with AES-256-GCM)
  • Recipient phone number (used only to send the access link and OTP)
  • Sender email address (used only to send a view notification)
  • Secret question and hashed answer (bcrypt)

Data retention

All shares automatically expire after 48 hours or upon first access, whichever comes first. Data is permanently deleted upon expiry.

Your rights

You have the right to access, correct, and delete your personal data. Contact us at privacy@banklo.app.

Cookies

Banklo uses no tracking cookies. Analytics data is collected in a privacy-preserving manner via PostHog with memory-only persistence.