Privacy Policy
This Privacy Policy explains how Kiribas Corporate Register processes personal and business information submitted through this website. We operate as an authorized agent & key manager supporting licensing and regulatory application workflows under the Kiribati International Financial Authority (KIFA) framework for international and non-resident activities.
1. What we collect
When you contact us or submit an inquiry, we may collect:
- Contact information (name, email, phone, preferred contact method).
- High-level business description (sector, target markets, non-resident scope).
- Key persons involved (directors/shareholders) — only at a level needed for initial screening.
- Documents you voluntarily provide (IDs, references, corporate documents) for review and packaging.
- Technical logs (basic security logs; not used for profiling).
2. Purpose of processing
- To respond to inquiries and provide requirements/checklists and feasibility guidance.
- To support licensing application preparation, review, packaging, and submission coordination (where engaged).
- To maintain auditability of communication (basic recordkeeping).
- To protect the website and prevent abuse (security monitoring).
3. Data minimization & confidentiality
We apply a data-minimization approach: we request only what is needed for the specific stage of the workflow. Information provided is treated as confidential and used solely for the requested support services.
4. Legal basis
Processing is based on (i) responding to your request, (ii) taking steps at your request prior to engagement, and/or (iii) legitimate interests in operating secure services and maintaining necessary records.
5. Sharing of information
We do not sell personal data. We may share information only when necessary for your request, such as:
- With your appointed legal counsel and/or auditor (if you instruct us to coordinate).
- With KIFA or other competent parties only as part of a submission workflow you request.
- With service providers strictly for hosting/email delivery under confidentiality obligations.
6. Retention
Inquiry data is retained only as long as necessary to handle your request and maintain reasonable records. If no engagement occurs, we aim to delete or anonymize inquiry materials within a practical timeframe, unless retention is required for legal or security reasons.
7. Security measures
We implement administrative, technical, and organizational measures to protect data (see the Security page for an overview).
8. Your choices
- You may request access/correction of information you provided.
- You may request deletion of your inquiry data, subject to legal/security constraints.
- You can limit what you share at the inquiry stage (recommended: start with high-level details).
9. Contact
For privacy questions or requests, contact: [email protected]