This policy explains what information we collect when you visit cryptovault.se or buy a Maria-Nova Vault product, why we collect it, and what your rights are. We have written it in plain language rather than legal boilerplate, because a security company that hides behind vague wording is not worth trusting.
We will never ask for, and we cannot receive, your seed phrase, recovery words, private keys, wallet PIN, or card password. There is no situation — not support, not warranty, not a lost card — where our staff needs any of those. If anyone contacts you claiming to be us and asks for them, it is a scam. Report it to [email protected].
Maria-Nova Vault operates cryptovault.se from Sweden and is the data controller for the information described here. You can reach us at [email protected].
Cryptocurrency payments are processed by NOWPayments. Bank transfers are made directly to our account. In both cases we receive confirmation that a payment arrived and the reference tied to your order. We do not receive, see, or store card numbers, exchange logins, or wallet credentials.
Blockchain transactions are public by their nature. A payment sent from your wallet is visible on that chain to anyone. That is a property of the network, not something we control or publish.
We do not sell your data, rent it, or share it for advertising. Ever.
Order and accounting records are kept for seven years, which is what Swedish bookkeeping law requires. Support correspondence is kept for up to two years so we can handle warranty questions. After that it is deleted.
We process order data to perform the contract you entered when buying, and we keep accounting records because the law obliges us to. Support correspondence rests on our legitimate interest in helping our customers.
Under the GDPR you may ask us for a copy of the data we hold about you, ask us to correct it, ask us to delete it where we are not legally required to keep it, or object to our processing. Write to [email protected] and we will answer within 30 days. If you are unhappy with our answer, you may complain to the Swedish Authority for Privacy Protection (IMY) or to your own national supervisory authority.
Traffic to this site is encrypted in transit. Order records are held in an access-controlled system, and only people who need to fulfil or account for an order can reach them. We keep the amount of personal data we hold deliberately small, because data that does not exist cannot leak.
Our products are not directed at children, and we do not knowingly collect data from anyone under 16.
If we change how we handle personal data we will update this page and change the date at the top. Material changes affecting existing orders will also be sent to the email address on the order.