Datenschutzerklärung
This policy describes what personal data CryptoLeek ("we", "us") collects when you use this website or engage our services, how we use it, who we share it with, how long we keep it, and the rights you have. It is written in plain English deliberately , if anything below is unclear, email editorial@cryptoleek.com.
1. What we collect
From website visitors
We use Cloudflare Web Analytics, which does not set cookies and does not collect personally identifying information. We see aggregate counts of pageviews, referrers, and device types, not individual visitor identities.
From the contact form
When you submit our case intake form, we collect: your name, email address, phone (if provided), country, the nature of your incident (scam type, date, amount, platform), your free-text description, and any wallet addresses or transaction hashes you provide. We collect this so that we can assess your case.
From engaged clients
If you become a client, we may also collect ID verification documents, payment information, and additional case evidence (communications, screenshots, financial records). This is necessary for the investigation work.
2. How we use it
- To assess and conduct the investigation you have engaged us for
- To communicate with you about your case
- To meet legal and regulatory obligations (anti-money-laundering, court orders)
- To improve our service, aggregated, de-identified only
We do not sell personal data. We do not use it for advertising. We do not enrich it with third-party data brokers.
3. Who we share it with
Only when necessary for the work you have engaged us to do:
- Bar-licensed counsel handling the legal side of your case (with your consent)
- Exchanges, payment processors, and regulators receiving evidence packs (with your consent)
- Cloud infrastructure providers (Sanity for content storage; Cloudflare for hosting; Resend for email) under standard data-processor agreements
We do not share your data with marketing partners, data brokers, or analytics providers beyond what is described above.
4. How long we keep it
Active case files: for the duration of the engagement plus six years afterwards (a typical limitation period for civil claims). Contact-form submissions that do not become engagements: 90 days, then deleted. You can request earlier deletion at any time.
5. Your rights
You have the right to:
- Request a copy of all personal data we hold on you
- Request correction of inaccurate data
- Request deletion of your data (subject to our legal retention obligations)
- Withdraw consent for processing (which may end our engagement)
- Lodge a complaint with your local data-protection authority
To exercise any of these rights, email editorial@cryptoleek.com. We respond within 30 days.
6. Security
All data is encrypted in transit (HTTPS / TLS 1.3) and at rest. Access to case files is logged. We use industry-standard practices including multi-factor authentication for staff accounts, principle-of-least-privilege access controls, and regular security audits.
7. Cookies
We do not use tracking cookies. We do not use third-party advertising cookies. We use a small number of strictly-essential cookies for form submission spam-prevention (Cloudflare Turnstile) only when you interact with our forms.
8. Updates to this policy
We update this policy when our practices change. The "Last reviewed" date at the top tells you when the current version took effect. We don't notify you of minor wording changes; for substantial changes we will email anyone whose data we hold.
Contact
For any privacy question, including data-subject requests, write to editorial@cryptoleek.com.