KLARO GATE
Back to Legal

Privacy Notice

How Klaro Gate collects, uses, shares, and protects personal information.

Applies to: Klaro Gate Sites and Services

Last updated: July 31, 2026

Document owner: Privacy & Compliance

1. Scope and who we are

This Privacy Notice (the "Notice") describes how Klaro Gate ("Klaro Gate," "we," "us," or "our") collects, stores, uses, discloses, and protects personal information. Klaro Gate provides a business payment infrastructure platform for crypto payment operations, including payment invoices, payment accounts, payment addresses, payment reporting, settlement workflows, APIs, dashboards and related operational tools.

This Notice applies to the Klaro Gate website and to other Klaro Gate websites, applications, interfaces, and Services on which this Notice appears (collectively, the "Sites").

This Notice applies to personal information. It does not apply to information that is anonymous, aggregated, or deidentified so that it cannot reasonably be linked to an identified or identifiable person. Additional notices may apply in particular jurisdictions or to specific products. If a product-specific notice conflicts with this Notice, the product-specific notice will control for that product.

2. People covered by this Notice

We may process personal information relating to:

3. Personal information we collect

The personal information we collect depends on how you interact with Klaro Gate, the Services used, the jurisdiction involved, the risk profile of a transaction or account, and applicable legal requirements. We collect information you provide, information generated through use of the Services, information collected automatically, and information received from Business Customers or third parties.

3.1 Site visitors, demo requests, and support contacts

We may collect:

3.2 Business Customers and authorized users

To onboard and provide Services to a Business Customer, manage risk, and meet compliance obligations, we may collect:

3.3 Payments, invoices, and End Users

When the Services are used to create or pay an invoice, share a payment address, track a payment, process a refund, or support a related transaction, we may collect:

A Business Customer determines what information it submits to Klaro Gate and may be independently responsible for providing its own privacy notice to End Users. In some contexts, Klaro Gate acts as a processor or service provider on the Business Customer's instructions; in others, Klaro Gate acts as an independent controller or business for compliance, security, fraud prevention, and operational purposes.

3.4 Payment Accounts, Reporting and Settlement Operations

To operate managed accounts and wallet infrastructure, we may collect or generate:

Sensitive authentication credentials are protected through appropriate security controls and are processed only where necessary to provide and secure the Services. We treat authentication credentials, API secrets, and other security information as confidential and process them only as necessary to operate and secure the Services.

3.5 Payees and withdrawal recipients

Where a Business Customer uses the Services to make a payout or withdrawal, we may collect:

3.6 Information collected automatically

When you use the Sites or Services, we and our service providers may automatically collect technical and usage information, including:

3.7 Information from third parties

We may receive information from Business Customers, End Users, public blockchain records, identity-verification providers, sanctions and watchlist providers, fraud-prevention services, analytics providers, integration partners, public databases, financial institutions, professional advisers, and other lawful sources. We may combine this information with information already held by Klaro Gate.

4. Cookies and similar technologies

We may use first- and third-party cookies, pixels, local storage, software development kits, web beacons, and similar technologies (collectively, "cookies") to operate the Sites, remember preferences, maintain security, understand usage, improve performance, and, where permitted, measure marketing effectiveness.

Some cookies are necessary for the Sites to function. Other cookies may require consent, depending on your location. You can manage available choices through the cookie banner or browser settings. Blocking cookies may affect functionality. Further information about our use of cookies and similar technologies is available in our Cookie Policy. Our consent tools are configured to reflect the technologies currently used on our Sites.

5. Why and how we use personal information

We may use personal information to:

6. Consent and other grounds for processing

Where applicable law requires consent or another lawful ground for processing, Klaro Gate relies on one or more of the following, depending on the context:

You may withdraw consent at any time using the procedure described in Sections 11, 13, and 17. Withdrawal does not have retroactive effect and may not apply where processing is required or otherwise permitted by law.

7. How we share personal information

We may disclose personal information to:

Public blockchain transactions are visible on the relevant blockchain and may be permanently accessible to third parties. Klaro Gate does not control how independent blockchain participants use publicly available transaction information.

8. International data transfers

Klaro Gate and its service providers may process personal information in countries other than the country where you are located. Data-protection laws in those countries may differ. Where required, we use appropriate transfer mechanisms, such as adequacy decisions, standard contractual clauses, contractual safeguards, or another lawful basis. You may contact us for information about applicable safeguards, subject to legal and confidentiality limitations.

9. Data retention

We retain personal information only for as long as reasonably necessary for the purposes described in this Notice, including providing the Services, maintaining security and audit records, resolving disputes, enforcing agreements, and satisfying legal, regulatory, tax, accounting, and reporting requirements. Retention periods vary according to the type of information, relationship, transaction, jurisdiction, and legal obligation.

Identity, due-diligence, transaction, and compliance records may need to be retained for several years after an account is closed or a transaction is completed, including periods required under applicable anti-money-laundering, sanctions, financial-services, or tax laws. When information is no longer required, we delete, anonymize, or securely isolate it in accordance with our retention procedures and legal obligations.

10. How we protect personal information

We use administrative, technical, and physical safeguards designed to protect personal information, including access controls, authentication, logging, monitoring, encryption where appropriate, vendor controls, incident-response procedures, and staff policies. The safeguards used depend on the nature and sensitivity of the information and the risks involved.

No system, network, storage method, or transmission over the internet is completely secure. Although we take reasonable steps to protect personal information, we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your credentials and notifying us promptly if you suspect unauthorized access.

11. Your privacy rights and choices

Depending on your location and the circumstances, you may have the right to:

To exercise a right, contact us using the details in Section 17. We may request information needed to verify your identity and authority. We will not unlawfully discriminate against you for exercising a privacy right. Rights may be limited by exceptions, including obligations to retain transaction, compliance, security, or legal records.

12. Marketing, cookies, and communications

You may unsubscribe from marketing emails using the unsubscribe link in the message or by contacting us. Even after opting out of marketing, you may continue to receive transactional, security, legal, or service-related communications.

Where required, non-essential cookies and similar technologies will be used only after the required notice or consent. You may use an available cookie preference tool or browser settings to limit these technologies. Browser-level signals may not have a uniform legal or technical standard, but we will process them where applicable law requires and our systems can recognize them.

13. Mexico and Latin America privacy supplement

This section supplements the rest of the Notice for people in Mexico and Latin America. Data-protection requirements differ by country. If local law gives you stronger rights or imposes stricter duties than this Notice, local law will apply. For Mexico, this section is intended to address the Federal Law on Protection of Personal Data Held by Private Parties (Ley Federal de Protección de Datos Personales en Posesión de los Particulares, or "LFPDPPP"), as amended.

13.1 Data controller in Mexico

For processing subject to Mexican law, the responsible party (responsable) is the Klaro Gate legal entity identified in Section 17. Where Klaro Gate processes personal information only on documented instructions from a Business Customer, the Business Customer may be the responsible party and Klaro Gate may act as a processor (persona encargada).

13.2 Primary and secondary purposes

The primary purposes necessary for our relationship and the Services are:

Secondary purposes that are not necessary for the core relationship may include marketing communications, product research, non-essential analytics, and measuring campaign performance. Where Mexican or other applicable law requires a choice, you may refuse or withdraw consent for secondary purposes without affecting the core Services, except where the information is also needed for a primary purpose or legal obligation. To object, contact us under Section 17 or use an available unsubscribe or cookie preference mechanism.

13.3 Financial, patrimonial, and sensitive personal data

Klaro Gate may process financial or patrimonial information, such as bank-account details, transaction records, balances, source-of-funds information, and wallet or payment information. Under Mexican law, express consent may be required for this information unless a statutory exception applies. Klaro Gate may also process sensitive personal data only where necessary for legitimate, concrete purposes and with express written consent when required. Sensitive data will be identified and handled with safeguards appropriate to its nature and risk.

13.4 ARCO rights in Mexico

A person in Mexico may exercise the following ARCO rights, subject to applicable exceptions:

Exercising one ARCO right is not a prerequisite for exercising another. A request may be denied or limited where the requester's identity or authority is not established, Klaro Gate does not hold the data, third-party rights would be harmed, a legal restriction applies, or another ground under applicable law is present.

13.5 How to submit an ARCO request

Submit an ARCO request to [email protected] with the subject "Mexico Privacy / ARCO Request." The request should include:

For requests governed by the LFPDPPP, Klaro Gate will communicate its determination within a maximum of 20 business days after receiving a complete request. If the request is granted, it will be made effective within the following 15 business days. These periods may be extended once for an equal period when justified by the circumstances. Access will be provided after identity verification and in an available lawful format.

13.6 Revoking consent and limiting use or disclosure

You may request to revoke consent or limit the use or disclosure of personal data by emailing [email protected] with the subject "Mexico Privacy / Revoke or Limit." Please identify the processing or purpose concerned. Revocation is not retroactive and may not be effective where processing is required to perform the Services, comply with law, protect security, complete a transaction, or satisfy another lawful ground.

13.7 Transfers within and outside Mexico

Klaro Gate may transfer personal data to recipients described in Section 7, including recipients outside Mexico. Where Mexican law requires consent for a transfer, we will request it or rely on an applicable legal exception. We will communicate this Notice and the purposes of processing to recipients as required and use contractual or other safeguards appropriate to the transfer.

13.8 Additional rights across Latin America

Residents of other Latin American countries may have rights to information, access, update, rectification, deletion or suppression, objection, revocation of consent, portability, restriction, review of automated decisions, or complaint to a competent authority, depending on local law. You may submit any such request using Section 17. Klaro Gate will apply the response periods and verification requirements required in the relevant jurisdiction.

14. Children's privacy

The Sites and Services are intended for businesses and adults and are not directed to children under 13 or any higher minimum age required by local law. We do not knowingly collect personal information directly from children in violation of applicable law. If you believe a child has provided personal information to us, contact us so that we can investigate and take appropriate action.

15. Third-party services and links

The Sites or Services may link to or integrate with third-party websites, wallets, platforms, blockchain explorers, or services. Their privacy practices are governed by their own notices. Klaro Gate does not control and is not responsible for the privacy, security, or content of independent third parties.

16. Changes to this Notice

We may update this Notice from time to time. We will post the revised version on the relevant Site and update the "Last updated" date. If required by law, we will provide additional notice or obtain consent before a material change takes effect. We encourage you to review this Notice periodically.

17. Contact information

For questions, concerns, or requests relating to privacy or this Notice, contact Klaro Gate using the details below. Please do not send passwords, private keys, seed phrases, or unnecessary identity documents by ordinary email.

Privacy and support requests

[email protected]

Business inquiries

[email protected]

Website

klaro-gate.com

If you are in Mexico, you may seek protection of your personal-data rights before the Secretaría Anticorrupción y Buen Gobierno or another competent authority in accordance with applicable law. In another Latin American country, you may also lodge a complaint with the competent national data-protection, consumer-protection, or supervisory authority.

We use cookies to run the site and, with your consent, to measure traffic. You can accept, reject, or manage your choices. Cookie Policy