Joval Multi-choice Limited

DATA PROTECTION & CONFIDENTIALITY POLICY

Effective Date: 18th December, 2025
Applies To: All users, ambassadors, investors, partners, staff, and administrators of Joval Marketplace (“Joval”, “Platform”, “Company”).

1. PURPOSE

This Policy explains how Joval:

  • Collects, processes, stores, and protects data
  • Maintains confidentiality of commercial and personal information
  • Complies with global data protection standards

2. DATA COLLECTED

2.1 Personal Data

  • Full name, nationality, date of birth
  • Contact details (email, phone)
  • Government-issued ID
  • Face recognition / verification images
  • Proof of address

2.2 Business & Corporate Data

  • Company registration documents
  • Shareholder and director details
  • Trade licences
  • Banking information (limited to verification)
  • Commercial references

2.3 Transaction & Platform Data

  • Listings, bids, deal room activity
  • LC / SBLC submission status
  • Contracts, SPAs, MOUs
  • System logs and audit trails

3. PURPOSE OF DATA USE

Data is used strictly for:

  • Identity verification (KYC / KYB)
  • Fraud prevention and risk control
  • Transaction execution and audit
  • Regulatory and compliance obligations
  • Platform operations and improvement

Joval does not sell or trade user data.

4. CONFIDENTIALITY OBLIGATIONS

All data shared on Joval is treated as strictly confidential. This applies to:

  • Prices and bids
  • Deal structures
  • Commercial terms
  • Counterparty identities
  • Investor opportunities

Access is restricted on a need-to-know basis.

5. DATA ACCESS CONTROL

  • Role-based access (Admin / Ambassador / User)
  • Ambassadors have limited access only
  • Investors see only approved opportunities
  • No user can access another user’s private data

6. DATA SHARING

Data may be shared only when necessary with:

  • Banks (LC/SBLC verification)
  • Compliance partners
  • Legal advisors
  • Regulators (if required by law)

Always on a confidential and limited basis.

7. DATA STORAGE & SECURITY

Joval applies:

  • Encrypted storage
  • Secure servers
  • Access logs and monitoring
  • Regular system audits

Data is stored only for as long as required by legal obligations, regulatory requirements, and legitimate business needs.

8. USER RESPONSIBILITIES

Users, ambassadors, and partners must:

  • Keep login credentials secure
  • Not share access details
  • Not misuse or export platform data
  • Report any suspected breach immediately

9. BREACH & INCIDENT RESPONSE

In case of a data breach:

  • Immediate containment measures apply
  • Affected parties may be notified where required
  • Regulatory authorities will be informed if legally necessary

10. CONFIDENTIALITY SURVIVAL

Confidentiality obligations:

  • Continue after account closure
  • Survive termination of agreements
  • Apply indefinitely to trade data and records

11. USER RIGHTS

Where applicable, users may request:

  • Access to their data
  • Correction of inaccurate data
  • Deletion (subject to legal retention requirements)

Requests must be submitted formally to Joval.

12. GOVERNING LAW

This Policy is governed by: English Law

13. POLICY UPDATES

Joval may update this Policy as the platform evolves. Continued use of the platform constitutes acceptance of updates.