Legal

Privacy Policy

Last updated: July 22, 2026

Introduction

FINFATech (“FINFATech,” “we,” “us” or “our”) is a financial intelligence and forensic advisory firm. Much of our work — profitability analysis, forensic integrity reviews, FP&A, continuous monitoring and the Financial Health & Integrity Score — depends on handling sensitive financial and personal information with discretion. This Privacy Policy explains what information we collect, how we use it, and the safeguards we apply when you visit our website, contact us, or engage us for an advisory or monitoring engagement.

By using our website or services, you agree to the practices described in this policy. Where a separate engagement letter, master services agreement or data processing agreement governs a client relationship, those terms take precedence over this policy to the extent of any conflict.

Information We Collect

We collect only the information we need to deliver financial intelligence responsibly. This may include:

  • Contact & identity data — name, business email, phone number, company, role and similar details you provide through our contact and briefing-request forms.
  • Engagement & financial data — financial statements, ledgers, transactional records, management reports and other materials a client shares with us for analysis, forensic review or monitoring.
  • Correspondence — records of your communications with us, including questions, requests and feedback.
  • Technical & usage data — IP address, browser type, device information and pages viewed, collected automatically when you browse the site.
  • Recruitment data — where you apply for a role, the information contained in your application, CV and related correspondence.

We do not seek to collect sensitive personal data through our website beyond what you choose to submit, and we ask that you do not send confidential financial materials through unsecured web forms.

How We Use Information

We use the information we collect to:

  • Respond to enquiries, schedule intelligence briefings and provide the services you request.
  • Perform engagements — including profitability analysis, forensic advisory, FP&A and continuous monitoring — and produce the related deliverables and scoring.
  • Operate, secure, maintain and improve our website and service quality.
  • Send relevant updates, insights or service communications where you have asked to receive them.
  • Comply with legal, regulatory, audit and professional obligations.

Where we use artificial intelligence and analytics to surface patterns, anomalies or risk signals, those tools operate strictly as an enabler under human oversight. AI accelerates analysis; qualified professionals review, interpret and stand behind every conclusion. We do not let automated systems make consequential decisions about you without human judgement.

Confidentiality & Financial Data

Confidentiality is foundational to our practice. Client financial information is treated as strictly confidential and is used only for the engagement it was provided for. We apply controls that include:

  • Least-privilege access — engagement data is accessible only to the professionals who need it to deliver the work.
  • Confidentiality obligations — our team and any approved subcontractors are bound by written confidentiality commitments.
  • Segregation — client materials are logically separated and are not commingled across engagements.
  • No sale of data — we never sell, rent or trade your personal or financial information.

Where a client subscribes to continuous monitoring or carries the FINFA Monitored status, data is processed solely to maintain the agreed monitoring, scoring and reporting — and within the same confidentiality and security perimeter as any other engagement.

Cookies & Analytics

Our website uses a limited set of cookies and similar technologies to keep the site functioning, remember preferences and understand how the site is used so we can improve it. Analytics data is used in aggregate and is not used to build intrusive profiles. You can control or disable cookies through your browser settings; some features may not function as intended if cookies are blocked.

Data Security

We maintain administrative, technical and organisational safeguards designed to protect information against unauthorised access, disclosure, alteration or loss. These include encryption in transit, access controls and authentication, secure transfer channels for engagement materials, monitoring and logging, and regular review of our security practices. No method of transmission or storage is perfectly secure, but we work continuously to protect the information entrusted to us and to respond promptly to any incident.

Data Retention

We retain personal and financial information only for as long as necessary to fulfil the purposes described in this policy, to deliver and support our engagements, and to meet legal, regulatory, professional and audit requirements. Retention periods vary by data type and engagement context. When information is no longer required, we securely delete, anonymise or return it in accordance with our agreements and applicable law.

Your Rights

Depending on your location and applicable law, you may have rights in relation to your personal information, including the right to:

  • Access the personal information we hold about you.
  • Request correction of inaccurate or incomplete information.
  • Request deletion of your information, subject to legal and contractual limits.
  • Object to or restrict certain processing, and withdraw consent where processing is based on consent.
  • Request a copy of your information in a portable format.

To exercise any of these rights, contact us using the details below. We may need to verify your identity before acting on a request, and certain information may be retained where we have a legal or legitimate basis to do so.

Third-Party Services

We engage carefully selected service providers — for example, secure hosting, communications and analytics — that process information on our behalf. These providers are permitted to use information only to provide their services to us and are bound by appropriate confidentiality and data-protection obligations. Our website may also contain links to third-party sites; their privacy practices are governed by their own policies, and we encourage you to review them.

International Transfers

We may process and store information in jurisdictions other than your own. Where information is transferred across borders, we take steps to ensure it remains protected by appropriate safeguards consistent with this policy and applicable data-protection law.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, services, technology or legal obligations. When we do, we will revise the “Last updated” date above. Material changes will be communicated where appropriate. We encourage you to review this page periodically.

Contact Us

If you have questions about this Privacy Policy or how we handle your information, please contact us at info@finfatech.com, or by mail at 1180 Avenue of the Americas, Suite 800, New York, NY 10036, United States. You can also reach our team through our contact page.

Please note: this Privacy Policy is provided for general information only and does not constitute legal advice. It is a template that should be reviewed and tailored to your specific legal and regulatory obligations before being relied upon.