MothCard
HomeCardsHow it works
  • FAQ
  • Contact support
  • Terms of Service
  • Privacy Policy
  • Cross-border Notice

Privacy Policy

Back to home

Contents

  1. 1. Introduction
  2. 2. What Personal Data We Collect
  3. 3. How We Use Your Personal Data
  4. 4. Legal Basis for Processing
  5. 5. Disclosure of Your Data
  6. 6. International Transfers
  7. 7. Data Retention
  8. 8. Your Rights
  9. 9. Cookies
  10. 10. Data Security
  11. 11. Third-Party Links
  12. 12. Children's Data
  13. 13. Changes to This Policy
  14. 14. Language
  15. 15. Contact Us

1. Introduction

This Privacy Policy explains how Hong Kong Yunmo Technology Co., Limited (the "Company", "we", "us") collects, uses, discloses, stores and protects your Personal Data when you use the MothCard-branded services, website and mobile application (the "Services"). By using the Services, you agree to this Privacy Policy and any updates we may issue from time to time.

"Personal Data" means any information relating to an identified or identifiable individual. It does not include anonymized data.

2. What Personal Data We Collect

We may collect and process the following categories of Personal Data:

CategoryExamples
Identity dataName, ID documents, photo, gender, date of birth, nationality
Contact dataPhone number, email, residential address
Financial dataTransaction history, wallet activity, payment information
Device dataDevice model, OS version, identifiers
Network and location dataIP address, network type, approximate location
Usage dataApp interaction, feature usage, push interaction statistics

3. How We Use Your Personal Data

We process your Personal Data for purposes including but not limited to:

  • Verifying your identity and onboarding, including KYC and AML checks
  • Providing and managing your account, Digital Wallet and MothCard
  • Processing payments and providing transaction records
  • Detecting and preventing fraud, misuse or security threats
  • Complying with legal obligations, regulatory investigations or law enforcement requests
  • Analytics, audits, customer support and service optimization
  • Marketing and promotional campaigns, subject to your consent where required

4. Legal Basis for Processing (EEA and UK Residents)

If you are located in the European Economic Area ("EEA") or the United Kingdom, our legal basis for collecting and using your Personal Data depends on the data concerned and the context. We rely on one or more of the following:

  • Performance of a contract — to provide the Services you request.
  • Consent — where you have given us consent, for example for marketing. You may withdraw consent at any time.
  • Legal obligation — to comply with KYC, AML and other regulatory requirements.
  • Legitimate interests — for fraud prevention, security and service improvement, where not overridden by your rights.

For users outside the EEA and UK, including Hong Kong residents, we process Personal Data in accordance with the Personal Data (Privacy) Ordinance (Cap. 486, Laws of Hong Kong) and other applicable laws.

5. Disclosure of Your Data

We may share your Personal Data with:

  • Our affiliates, subsidiaries, employees or authorized representatives
  • Third-party service providers, such as KYC and AML vendors, partner card issuing institutions, payment processors and custodians
  • Marketing and analytics partners
  • Legal, regulatory or government authorities as required by law
  • Potential acquirers or investors in a merger or restructuring

6. International Transfers

Due to the global nature of our Services, your data may be transferred to and stored in locations outside your home jurisdiction, including Hong Kong. We ensure such transfers comply with applicable data protection laws and implement appropriate safeguards. For EEA and UK residents, transfers outside the EEA and UK are made under appropriate safeguards, such as Standard Contractual Clauses, where required.

7. Data Retention

We retain your Personal Data only for as long as necessary to fulfil the purposes for which it was collected, including to satisfy legal, regulatory, accounting or reporting requirements.

  • KYC and AML records — retained for the period required by applicable anti-money-laundering laws, typically five to seven years after the end of the customer relationship.
  • Transaction records — retained as required by applicable law and for dispute resolution.
  • Account data — retained while your account is active and for a reasonable period thereafter.

When Personal Data is no longer needed, we will securely delete or anonymize it.

8. Your Rights

We aim to take reasonable steps to let you access, correct, or delete your Personal Data, or limit its use.

If you are an EEA or UK resident, you have the following rights under the GDPR and UK GDPR:

RightMeaning
AccessObtain a copy of the Personal Data we hold about you.
RectificationHave inaccurate or incomplete data corrected.
ErasureRequest deletion of your data, subject to legal retention obligations.
RestrictionRequest that we restrict processing of your data.
Data portabilityReceive your data in a portable format.
ObjectionObject to our processing of your data.
Withdraw consentWithdraw consent at any time where processing is based on consent.

To exercise your rights, contact us at privacy@mothcard.io. We may verify your identity before responding. We will respond within the timeframe required by applicable law; under the GDPR this is generally within one month.

Residents outside the EEA and UK, including Hong Kong, may exercise applicable rights under local law, such as access and correction under the Hong Kong PDPO, via the same contact.

9. Cookies

We may use cookies and similar technologies on our website and App to enhance your experience. You can manage cookie preferences in your browser settings; disabling cookies may affect your experience.

10. Data Security

We implement industry-standard security measures, including encryption and access controls, to protect your Personal Data. However, no system is completely secure, and we cannot guarantee absolute protection.

11. Third-Party Links

Our platform may contain links to third-party sites and services. We are not responsible for their content or privacy practices. Please review their policies separately.

12. Children's Data

The Services are not intended for individuals under 18. We do not knowingly collect Personal Data from minors. If we learn that we have collected such data, we will delete it.

13. Changes to This Policy

We may update this Privacy Policy from time to time. The updated version takes effect upon posting. We encourage you to review it periodically. Material changes may be notified through the App or by email.

14. Language

This Privacy Policy may be available in multiple languages. In case of any discrepancy, the English version prevails.

15. Contact Us

For any questions about this Privacy Policy or to make a data-related request, email privacy@mothcard.io with the subject line "PRIVACY REQUEST".

MothCard

Spend your stablecoin balance with a card that works online and in store.

Product

  • Cards
  • How it works
  • Download

Help

  • FAQ
  • Contact support

Legal

  • Terms of Service
  • Privacy Policy
  • Cross-border Notice
© 2026 MothCard. All rights reserved.www.mothcard.io

We use cookies to keep the site working and, with your permission, to understand how it is used. See ourPrivacy Policy.