Privacy

Privacy Policy.

How personal data is processed when you use NexScreening, and the rights you have under GDPR.

Privacy Policy

NexScreening (A NexSystems product, owned and operated by NexGlobal, Wyoming, USA)

Last updated: 10th January 2025

1. Introduction

NexGlobal ("we", "us", or "our") is committed to protecting privacy and personal data. This Privacy Policy explains how personal data is processed when individuals or organizations use NexScreening, a compliance screening platform providing sanctions screening, politically exposed person (PEP) screening, adverse media screening, and passport verification services.

This Privacy Policy is intended to provide transparency under the General Data Protection Regulation (GDPR), UK GDPR, and other applicable data protection laws. It is written for website visitors, customers, and individuals whose data may be processed through our Services.

NexScreening is a compliance-support technology. We do not provide legal advice, regulatory determinations, or automated decision-making.

2. Who We Are

Controller / Processor distinction is critical.

  • NexGlobal acts primarily as a data processor, processing personal data on behalf of its customers.
  • Our customers (banks, fintechs, companies, or other organizations) act as data controllers and decide:
    • whom to screen
    • why screening occurs
    • how results are used

NexGlobal does not decide how personal data is used beyond providing the screening Services.

3. Scope of This Privacy Policy

This Privacy Policy applies to:

  • Visitors to our website
  • Users accessing NexScreening via web interface or API
  • Individuals whose personal data is processed as part of screening activities

This Policy does not replace customer privacy notices. If you are screened by one of our customers, their privacy notice applies, not ours.

4. Categories of Personal Data We Process

Depending on how NexScreening is used, we may process the following categories of personal data:

4.1 Identification Data

  • Full name and known aliases
  • Date of birth
  • Nationality
  • Gender (where lawfully available)

4.2 Government and Document Data

  • Passport number or document reference
  • Issuing country
  • Document status indicators

4.3 Professional and Public Role Data

  • Job titles
  • Political or public functions
  • Corporate roles (e.g. director, beneficial owner)

4.4 Public and Media Information

  • References in news articles
  • Regulatory publications
  • Public sanctions listings

We do not intentionally collect special category data (such as health or biometric data), unless such information appears lawfully in public sources.

5. How We Collect Personal Data

Personal data processed by NexScreening comes from the following sources:

  • Data submitted directly by our customers
  • Publicly available sources (e.g. official sanctions lists, public registers)
  • Reputable open-data or licensed data providers

We do not collect personal data directly from data subjects for screening purposes.

6. Purposes of Processing

We process personal data strictly for the following purposes:

  • Performing sanctions screening
  • Identifying politically exposed persons (PEPs)
  • Conducting adverse media screening
  • Supporting passport verification checks
  • Maintaining security, audit logs, and service integrity

We do not use personal data for marketing, profiling, or advertising.

7. Legal Bases for Processing

Processing occurs under one or more of the following legal bases, depending on context:

  • Legal obligation (e.g. AML / sanctions laws applicable to our customers)
  • Legitimate interests (compliance risk management)
  • Contractual necessity (to provide the Services)

Our customers are responsible for determining the appropriate lawful basis.

8. Automated Processing and Human Review

NexScreening performs automated screening, but:

  • We do not make automated decisions with legal or significant effects
  • Screening results are indicators, not conclusions
  • Human review is required before decisions are made

Our Services are designed to support, not replace, human judgment.

9. Data Accuracy and Fairness

We take reasonable steps to ensure data is processed accurately and fairly. However:

  • Screening data may change over time
  • False positives and false negatives are inherent in screening technologies
  • We do not guarantee accuracy or completeness

Customers are responsible for verifying and contextualizing results.

10. Data Retention

Personal data is retained only as long as necessary to:

  • Provide the Services
  • Comply with legal and regulatory obligations
  • Maintain audit and security records

Retention periods are primarily determined by our customers. Data may be anonymized or deleted when no longer required.

11. Data Sharing and Sub-Processors

We may share personal data with trusted sub-processors, such as:

  • Cloud hosting providers
  • Infrastructure and security vendors

All sub-processors are contractually bound to protect personal data and process it only on our instructions.

We do not sell personal data.

12. International Data Transfers

As a global service, personal data may be processed outside your country of residence, including in the United States.

Where required, we apply appropriate safeguards such as:

  • Standard Contractual Clauses (SCCs)
  • Equivalent lawful transfer mechanisms

We do not guarantee data localization unless expressly agreed.

13. Data Security

We implement technical and organizational security measures, including:

  • Access controls
  • Encryption in transit
  • Monitoring and incident response

No system is 100% secure, but we continuously work to protect data.

14. Personal Data Breaches

If a personal data breach occurs:

  • We will notify affected customers without undue delay
  • Customers remain responsible for notifying regulators or data subjects where required

15. Your Data Protection Rights

Depending on your jurisdiction, you may have rights including:

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Objection

If you are screened by one of our customers, you must contact that customer, not NexGlobal.

16. Cookies and Website Analytics

Our website may use limited cookies or analytics for:

  • Security
  • Performance
  • Basic usage statistics

Where required, consent mechanisms are provided.

17. Children's Data

NexScreening is not intended for children. We do not knowingly process personal data of minors.

18. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. The latest version will always be published on our website. Continued use of the Services constitutes acceptance of updates.

19. Contact Information

For privacy-related questions:

Email: privacy@nexglobal.io Company: NexGlobal Jurisdiction: Wyoming, United States of America

For data subject requests, please contact the organization that screened you.