Privacy Policy
NexScreening (A NexSystems product, owned and operated by NexGlobal, Wyoming, USA)
Last updated: 10th January 2025
1. Introduction
NexGlobal ("we", "us", or "our") is committed to protecting privacy and personal data. This Privacy Policy explains how personal data is processed when individuals or organizations use NexScreening, a compliance screening platform providing sanctions screening, politically exposed person (PEP) screening, adverse media screening, and passport verification services.
This Privacy Policy is intended to provide transparency under the General Data Protection Regulation (GDPR), UK GDPR, and other applicable data protection laws. It is written for website visitors, customers, and individuals whose data may be processed through our Services.
NexScreening is a compliance-support technology. We do not provide legal advice, regulatory determinations, or automated decision-making.
2. Who We Are
Controller / Processor distinction is critical.
- NexGlobal acts primarily as a data processor, processing personal data on behalf of its customers.
- Our customers (banks, fintechs, companies, or other organizations) act as data controllers and decide:
- whom to screen
- why screening occurs
- how results are used
NexGlobal does not decide how personal data is used beyond providing the screening Services.
3. Scope of This Privacy Policy
This Privacy Policy applies to:
- Visitors to our website
- Users accessing NexScreening via web interface or API
- Individuals whose personal data is processed as part of screening activities
This Policy does not replace customer privacy notices. If you are screened by one of our customers, their privacy notice applies, not ours.
4. Categories of Personal Data We Process
Depending on how NexScreening is used, we may process the following categories of personal data:
4.1 Identification Data
- Full name and known aliases
- Date of birth
- Nationality
- Gender (where lawfully available)
4.2 Government and Document Data
- Passport number or document reference
- Issuing country
- Document status indicators
4.3 Professional and Public Role Data
- Job titles
- Political or public functions
- Corporate roles (e.g. director, beneficial owner)
4.4 Public and Media Information
- References in news articles
- Regulatory publications
- Public sanctions listings
We do not intentionally collect special category data (such as health or biometric data), unless such information appears lawfully in public sources.
5. How We Collect Personal Data
Personal data processed by NexScreening comes from the following sources:
- Data submitted directly by our customers
- Publicly available sources (e.g. official sanctions lists, public registers)
- Reputable open-data or licensed data providers
We do not collect personal data directly from data subjects for screening purposes.
6. Purposes of Processing
We process personal data strictly for the following purposes:
- Performing sanctions screening
- Identifying politically exposed persons (PEPs)
- Conducting adverse media screening
- Supporting passport verification checks
- Maintaining security, audit logs, and service integrity
We do not use personal data for marketing, profiling, or advertising.
7. Legal Bases for Processing
Processing occurs under one or more of the following legal bases, depending on context:
- Legal obligation (e.g. AML / sanctions laws applicable to our customers)
- Legitimate interests (compliance risk management)
- Contractual necessity (to provide the Services)
Our customers are responsible for determining the appropriate lawful basis.
8. Automated Processing and Human Review
NexScreening performs automated screening, but:
- We do not make automated decisions with legal or significant effects
- Screening results are indicators, not conclusions
- Human review is required before decisions are made
Our Services are designed to support, not replace, human judgment.
9. Data Accuracy and Fairness
We take reasonable steps to ensure data is processed accurately and fairly. However:
- Screening data may change over time
- False positives and false negatives are inherent in screening technologies
- We do not guarantee accuracy or completeness
Customers are responsible for verifying and contextualizing results.
10. Data Retention
Personal data is retained only as long as necessary to:
- Provide the Services
- Comply with legal and regulatory obligations
- Maintain audit and security records
Retention periods are primarily determined by our customers. Data may be anonymized or deleted when no longer required.
11. Data Sharing and Sub-Processors
We may share personal data with trusted sub-processors, such as:
- Cloud hosting providers
- Infrastructure and security vendors
All sub-processors are contractually bound to protect personal data and process it only on our instructions.
We do not sell personal data.
12. International Data Transfers
As a global service, personal data may be processed outside your country of residence, including in the United States.
Where required, we apply appropriate safeguards such as:
- Standard Contractual Clauses (SCCs)
- Equivalent lawful transfer mechanisms
We do not guarantee data localization unless expressly agreed.
13. Data Security
We implement technical and organizational security measures, including:
- Access controls
- Encryption in transit
- Monitoring and incident response
No system is 100% secure, but we continuously work to protect data.
14. Personal Data Breaches
If a personal data breach occurs:
- We will notify affected customers without undue delay
- Customers remain responsible for notifying regulators or data subjects where required
15. Your Data Protection Rights
Depending on your jurisdiction, you may have rights including:
- Access
- Rectification
- Erasure
- Restriction
- Objection
If you are screened by one of our customers, you must contact that customer, not NexGlobal.
16. Cookies and Website Analytics
Our website may use limited cookies or analytics for:
- Security
- Performance
- Basic usage statistics
Where required, consent mechanisms are provided.
17. Children's Data
NexScreening is not intended for children. We do not knowingly process personal data of minors.
18. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The latest version will always be published on our website. Continued use of the Services constitutes acceptance of updates.
19. Contact Information
For privacy-related questions:
Email: privacy@nexglobal.io Company: NexGlobal Jurisdiction: Wyoming, United States of America
For data subject requests, please contact the organization that screened you.