GDPR Compliance
Last updated: 24 June 2026
This is a general template provided for convenience and does not constitute legal advice. Please have it reviewed and customized by qualified legal counsel before relying on it in production.
This page describes how Forexty approaches compliance with the EU General Data Protection Regulation (GDPR).
1. Our role
Depending on the context, Forexty acts as a data controller (for our website and direct marketing) and as a data processor (when processing personal data on behalf of our broker customers).
2. Data processing principles
We process personal data lawfully, fairly and transparently, for specified purposes, minimized to what is necessary, kept accurate, stored no longer than needed, and secured appropriately.
3. Data subject rights
We support data subject rights under the GDPR, including:
- Access, rectification and erasure
- Restriction of and objection to processing
- Data portability
- Withdrawal of consent at any time
4. International transfers
Where personal data is transferred outside the EEA, we use appropriate safeguards such as Standard Contractual Clauses.
5. Sub-processors
We use vetted sub-processors under data processing agreements and maintain a list available to customers on request.
6. Data protection measures
Encryption in transit and at rest, role-based access control, audit logging and a documented incident-response process.
7. Contact & DPO
For GDPR enquiries or to exercise your rights, contact dpo@forexty.com.
