Personal Data Privacy Policy
At Netcapital Financial Group, we highly value and respect the privacy and confidentiality of your personal information. Protecting your data and maintaining confidentiality is a matter of utmost importance to us.
This Personal Data Privacy Policy has been developed in accordance with the laws of Mongolia and the General Data Protection Regulation (GDPR) of the European Union — a globally recognized standard for personal data protection.
Its purpose is to clearly and transparently explain how we collect, process, use, share, store, and protect your personal information, as well as the rights and choices available to you as our customer.
What is Personal Data?
Personal data refers to any information that directly or indirectly identifies an individual. This includes, but is not limited to:
-
Name, date of birth, place of birth
-
Address and location data
-
Civil registration number
-
Property and education details
-
Membership information
-
Contact details or digital identifiers
Sensitive personal data includes information such as:
-
Ethnicity, religion, or beliefs
-
Health records
-
Genetic and biometric data
-
Criminal record or legal status
-
Sexual orientation or gender identity
-
Digital signature or private key information
Publicly available information, as defined by law, is not covered by this Privacy Policy.
Consent and Customer Rights
Netcapital Financial Group processes your data only with your voluntary consent.
When you apply for a product or service, you acknowledge and agree to provide the necessary and accurate information required for contract fulfillment.
If you choose not to provide consent or refuse to accept the terms and conditions of a service agreement, Netcapital Financial Group reserves the right to decline service.
Likewise, if false or incomplete information is provided, or if data is not updated as required by law, service delivery may be refused.
Purpose of Data Collection and Processing
Your personal data may be collected and processed for the following lawful purposes:
-
Assessing credit eligibility and performing risk analysis
-
Providing and improving financial products and services
-
Delivering account and product-related updates
-
Handling inquiries, feedback, or complaints
-
Ensuring information and cybersecurity compliance
-
Meeting legal and regulatory obligations under Mongolian law
-
Preventing money laundering and terrorist financing
-
Conducting audits, analytics, and operational reporting
-
Fulfilling contractual and reporting requirements
All data processing is conducted in compliance with Mongolian regulations, the Civil Code, and international standards including GDPR.
How We Collect Personal Data
We collect your personal data through:
-
Application forms, contracts, and official requests
-
Documents submitted during service registration
-
Mobile applications and digital platforms
-
Authorized third-party sources as permitted by law
- Customer consent and lawful data exchange frameworks
Types of Data We Process
We may process the following categories of data:
-
Personal identification details (name, date of birth, gender, ID documents, photos)
-
Contact and residence information
-
Financial records, transaction data, and credit history
-
Business or employment information
-
CCTV footage and other electronic recordings for security purposes
-
Device and IP address information related to service usage
Data Retention and Disposal
We retain your personal data in accordance with Mongolian laws, internal policies, and GDPR requirements.
Your data is stored for the legally required retention period or until it is no longer necessary for business or compliance purposes.
Data storage, archiving, and destruction are conducted under:
-
Records Management Procedure
-
Information Security Policy
-
Data Classification Procedure
Customer Data Requests
You have the right to request details about what personal information we hold about you.
To do so, you may submit a written request to any Netcapital branch.
After verifying your identity, we will provide the relevant information in accordance with our Information Security Policy.
Data Security
Netcapital Financial Group is committed to maintaining the confidentiality and integrity of your data.
We will not disclose your personal information to third parties except as required by law.
Even after you close your account, your data will remain protected in compliance with applicable legal requirements.
To safeguard your information, we implement technical, organizational, and procedural security measures aligned with the ISO/IEC 27001:2013 Information Security Management Standard and industry best practices.
Data Sharing
Your personal data may be shared only with authorized entities under lawful circumstances, such as:
-
Courts, prosecutors, and law enforcement agencies upon official request
-
Regulatory bodies fulfilling statutory functions
-
Reporting obligations under anti–money laundering laws
-
The Credit Information Bureau of the Bank of Mongolia
-
Other authorized organizations as required by law
Your Responsibilities
You are responsible for keeping your login credentials, passwords, and security questions confidential and not sharing them with others.
Netcapital will not be liable for any losses resulting from failure to maintain account security.
Monitoring and Compliance
Implementation and oversight of this policy are managed by the Information Security Manager and the Director of Risk Management, in compliance with ISO 27001:2013 and GDPR standards.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
📧 Email: help@netcapital.mn
📞 Phone: 7500-6666