Privacy · Personal data · CopyrightChain

Privacy Policy

Information on personal-data processing connected with the website, platform, digital certification, public verification and related services.

1. Data controller

Associazione fra le Banche Offshore in Italia
Italian Tax Code: 92034960457
Fiscal domicile: Viale Galilei 133, 54033 Carrara (MS), Italy
Operational office: Corso Venezia 1, 20121 Milan, Italy
Email: info@copyrightchain.it

CopyrightChain is a digital project and service operated by the controller identified above; it is not a separate legal entity.

2. Data processed

  • identity and contact details provided by the user;
  • account, dashboard and support-request data;
  • data required to produce certificates, including identifiers, hashes, dates, statuses and technical references;
  • information entered in AI Proof, Legal Vault and other platform modules;
  • purchase, credit and transaction information, while full payment data is processed by enabled providers;
  • technical navigation, logging, security and abuse-prevention data.

3. Files, hashes and public verification

The service may process a file to calculate its SHA-256 fingerprint and produce the requested documentation. Public verification displays only the data required to check the certificate and does not automatically publish the original content.

Selected levels may process and retain Bitcoin/OpenTimestamps references, timestamping data and identifiers generated by integrated technical services.

4. Purposes

Data is processed to create and verify certificates, manage accounts, credits and purchases, provide requested modules, answer enquiries, prevent abuse, maintain security and continuity, meet administrative obligations and protect the rights of the controller or users.

5. Legal bases

Depending on the processing, the legal basis is performance of a contract or pre-contractual steps, compliance with legal obligations, legitimate interests in security and service protection, and consent where required.

6. Providers and recipients

Data may be processed by hosting, email, payment, timestamping, document-delivery and technical providers, consultants and other processors required to operate the service. InfoCert, Stripe, Openapi, postal services, Bitcoin and OpenTimestamps retain their own roles and terms; reference to their marks does not imply sponsorship.

7. International transfers

Where a provider processes data outside the European Economic Area, transfers are based on the safeguards required by applicable law, including adequacy decisions or standard contractual clauses where necessary.

8. Retention

Data is kept for as long as required for the purposes described, administrative obligations, security and certificate management. Hashes, identifiers and verification references may be retained for longer to preserve verifiability over time.

9. Data-subject rights

Data subjects may request access, rectification, erasure, restriction, objection and portability where applicable. Requests should be sent to info@copyrightchain.it. A complaint may also be lodged with the Italian Data Protection Authority or another competent supervisory authority.

10. Security and user responsibility

The controller applies proportionate technical and organizational measures. Users must protect their credentials, use trusted devices and avoid uploading data or content they are not authorized to process.

11. Updates

This policy may be amended to reflect technical, legal or organizational changes.

Last updated: 20 July 2026.