Privacy Policy
Last updated: June 10, 2026
This Privacy Policy explains what data Lunixi processes as a payment orchestration provider, why we process it, and the rights you have over it. It applies to our website and platform services.
1. Data we process
We process account and contact details, transaction metadata routed through the platform, technical logs, and device and risk signals used for fraud prevention. Raw card data is captured in our PCI DSS Level 1 vault and never stored on merchant infrastructure.
2. How we use data
Data is used to operate payment routing, score risk, prevent fraud, meet legal and regulatory obligations, and improve service reliability. We do not sell personal data.
3. Legal bases
Processing relies on contract performance, our legitimate interest in securing payments, and compliance with financial regulation including PCI DSS, CBRT guidelines, KVKK, and GDPR where applicable.
5. Retention
We retain transaction and audit records for the period required by financial regulation, then delete or anonymize them. Operational logs are kept on a rolling, time-bounded basis.
6. Your rights
Subject to applicable law, you may request access, correction, deletion, or portability of your personal data, and may object to certain processing. Contact us to exercise these rights.
Questions about this document? Reach us at [email protected].