Privacy Policy
How we collect, use, and protect your personal information
Last Updated: January 12, 2026
Table of Contents
1. Introduction
MSSA Global Multi-Asset Strategy ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, trading platforms, and services.
We are registered in the United Kingdom (Company Number: 12931177) and authorised and regulated by the Financial Conduct Authority (FCA) under FCA Reference Number 954868. As a regulated financial services provider, we adhere to strict data protection standards and comply with applicable privacy laws, including the General Data Protection Regulation (GDPR) and UK GDPR.
By accessing or using our services, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with our policies and practices, please do not use our services.
2. Information We Collect
We collect various types of information to provide and improve our services:
2.1 Personal Data
Information that identifies you as an individual, including:
- Full name and date of birth
- Contact information (email address, phone number, postal address)
- Government-issued identification documents (passport, national ID, driver's license)
- Proof of address documents
- Tax identification number
- Employment and financial information
- Bank account and payment card details
2.2 Trading Data
Information related to your trading activities:
- Account balances and transaction history
- Trading positions and orders
- Deposit and withdrawal records
- Trading preferences and strategies
- Risk profile and investment experience
2.3 Technical Data
Information collected automatically when you use our services:
- IP address and device identifiers
- Browser type and version
- Operating system
- Time zone and location data
- Pages visited and features used
- Referral source and exit pages
- Date and time of access
2.4 Communication Data
Information from your communications with us:
- Email correspondence
- Live chat transcripts
- Phone call recordings (where permitted)
- Support ticket content
- Survey responses and feedback
3. How We Use Your Information
We use your information for the following purposes:
3.1 Service Provision
- To create and manage your trading account
- To process transactions and execute trades
- To provide customer support and respond to inquiries
- To send account-related notifications and updates
3.2 Regulatory Compliance
- To verify your identity (KYC requirements)
- To prevent money laundering and financial crimes (AML)
- To comply with tax reporting obligations
- To meet regulatory reporting requirements
3.3 Security and Fraud Prevention
- To detect and prevent fraudulent activities
- To protect against unauthorized access
- To monitor for suspicious transactions
- To maintain the security of our systems
3.4 Service Improvement
- To analyze usage patterns and improve our platform
- To develop new features and services
- To conduct research and analytics
- To personalize your experience
3.5 Marketing (with consent)
- To send promotional materials and offers
- To inform you about new products and services
- To conduct market research
4. Data Sharing and Disclosure
We may share your information with the following parties:
4.1 Service Providers
Third-party companies that help us operate our business:
- Payment processors and banking partners
- Identity verification services
- Cloud hosting and IT service providers
- Customer support platforms
- Analytics and marketing services
4.2 Regulatory Authorities
We may disclose information to:
- Financial Services Authority (FSA) of Seychelles
- Tax authorities as required by law
- Law enforcement agencies when legally required
- Other regulatory bodies with jurisdiction
4.3 Legal Requirements
We may disclose your information when required to:
- Comply with legal obligations
- Respond to court orders or legal processes
- Protect our rights and property
- Prevent or investigate potential wrongdoing
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
Important: We never sell your personal information to third parties for marketing purposes.
5. Data Security
We implement comprehensive security measures to protect your information:
5.1 Technical Safeguards
- 256-bit SSL/TLS encryption for data transmission
- Encrypted data storage at rest
- Multi-factor authentication (MFA)
- Firewalls and intrusion detection systems
- Regular security audits and penetration testing
5.2 Organizational Measures
- Access controls and role-based permissions
- Employee security training and awareness programs
- Confidentiality agreements with staff
- Incident response procedures
- Regular security policy reviews
5.3 Physical Security
- Secure data center facilities
- Access control systems
- 24/7 monitoring and surveillance
- Environmental controls
While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to maintaining industry-standard protections.
6. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
6.1 GDPR Rights (EU/EEA Residents)
Right to Access
Request a copy of the personal data we hold about you.
Right to Rectification
Request correction of inaccurate or incomplete data.
Right to Erasure
Request deletion of your data in certain circumstances.
Right to Restrict Processing
Request limitation of how we use your data.
Right to Data Portability
Receive your data in a structured, machine-readable format.
Right to Object
Object to processing based on legitimate interests or for marketing.
Right to Withdraw Consent
Withdraw consent at any time where processing is based on consent.
Right to Lodge a Complaint
File a complaint with a supervisory authority.
6.2 Exercising Your Rights
To exercise any of these rights, please contact us at:
- Email: [email protected]
- Subject line: "Data Subject Request"
We will respond to your request within 30 days. We may need to verify your identity before processing your request.
Note: Some rights may be limited due to regulatory requirements. For example, we may need to retain certain data for compliance purposes even if you request deletion.
7. Cookies
We use cookies and similar tracking technologies to enhance your experience on our website. Cookies are small text files stored on your device that help us:
- Remember your preferences and settings
- Keep you logged in to your account
- Understand how you use our website
- Improve our services and user experience
- Deliver relevant advertising (with consent)
For detailed information about the cookies we use and how to manage them, please see our Cookie Policy.
8. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes for which it was collected, including:
8.1 Retention Periods
- Account Data: Duration of your account plus 7 years after closure
- Transaction Records: 7 years from the date of transaction
- KYC Documents: 7 years after the end of the business relationship
- Communication Records: 5 years from the date of communication
- Marketing Preferences: Until you withdraw consent
8.2 Regulatory Requirements
We may be required to retain certain data for longer periods to comply with:
- Anti-money laundering regulations
- Tax reporting requirements
- Financial services regulations
- Legal proceedings or investigations
9. International Transfers
As a global company, we may transfer your data to countries outside your country of residence. When we do so, we ensure appropriate safeguards are in place:
9.1 Transfer Mechanisms
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Binding Corporate Rules where applicable
- Adequacy decisions by relevant authorities
- Your explicit consent where required
9.2 Data Locations
Your data may be processed in:
- Seychelles (our registered jurisdiction)
- United Kingdom (operational office)
- European Union (service providers)
- Other jurisdictions where our service providers operate
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes:
- We will update the "Last Updated" date at the top of this policy
- For significant changes, we will notify you via email or through our platform
- We encourage you to review this policy periodically
Your continued use of our services after any changes indicates your acceptance of the updated policy.
11. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Data Protection Officer
Email: [email protected]
Privacy Inquiries
Email: [email protected]
General Support
Email: [email protected]
Postal Address
MSSA Global Multi-Asset Strategy
30 College Road
Harrow, HA1 1BE, UK
We aim to respond to all inquiries within 30 days.