← Back
Zenza Society

Privacy Policy

Effective Date: June 2026  ·  Version 1.0

Zenza Society Sàrl is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal data when you use the Zenza Society application and services. It complies with the Swiss Federal Act on Data Protection (nDSG), the General Data Protection Regulation (GDPR), and Apple's App Store privacy requirements.

Data Controller

The entity responsible for your personal data is:

  • Zenza Society Sàrl
  • Geneva, Switzerland
  • privacy@zenzasociety.com
  • www.zenzasociety.com

Data We Collect

We collect only the minimum data necessary to deliver our services:

  • Identity & contact – name, email, phone, address, government ID (for KYC verification)
  • Account data – login credentials (encrypted), membership status, preferences
  • Execution requests – service mandates, instructions, and correspondence submitted through the app
  • Payment data – billing information processed and tokenised by Stripe; we do not store raw card data
  • Usage data & service preferences – how you interact with the app and your service preferences, used to improve delivery precision
  • Device & technical data – IP address, device type, OS version, app interactions
  • Compliance data – KYC/AML screening records as required by Swiss law

How We Use Your Data

  • Deliver and manage your service requests and mandates
  • Verify your identity and conduct required KYC/AML checks
  • Process payments through our payment partners
  • Build and refine your service profile for proactive execution
  • Communicate with you about your account and services
  • Ensure platform security and prevent fraud
  • Comply with applicable legal and regulatory obligations

Legal Basis for Processing

  • Contract – processing necessary to deliver the services you have engaged us to provide
  • Legal obligation – KYC/AML compliance under Swiss law
  • Legitimate interests – fraud prevention, security, and service improvement
  • Consent – where required, you may withdraw consent at any time

Third-Party Services

We work with carefully selected partners who process data on our behalf:

Payment Processing Partner

Payments are processed exclusively by certified third-party payment service providers (such as Stripe). Zenza Society never stores, processes or has access to your full payment card details. Our payment partner acts as an independent data controller for payment data and operates under its own privacy policy.

Identity Verification

Regulated third-party providers perform KYC screening in accordance with Swiss AML law. All providers operate under strict confidentiality and security obligations.

Cloud Infrastructure

Enterprise-grade cloud infrastructure provided by trusted service providers, with servers located within the European Economic Area (EEA). Appropriate contractual and technical safeguards are in place, aligned with the Swiss nDSG and GDPR.

We do not sell your personal data. All third-party processors are bound by data processing agreements.

Data Retention

  • Account and membership data: duration of membership + 10 years (Swiss commercial law)
  • Execution records: minimum 10 years for legal and audit purposes
  • KYC/AML records: minimum 10 years from end of client relationship (Swiss AMLA)
  • Usage data and service preferences – duration of active membership, deleted within 12 months after account closure
  • Payment records: minimum 10 years (Swiss accounting obligations)

International Transfers

Where your data is transferred outside Switzerland or the EEA, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) or adequacy decisions recognised by Swiss and EU authorities.

Artificial Intelligence

Some features of the App use artificial intelligence to understand and process user requests in order to deliver and improve our services. AI assists in fulfilling user requests and does not make legally binding or fully automated decisions about users. Personal data is processed only as necessary and in accordance with this Privacy Policy.

Data Security

  • End-to-end encryption for communications and data in transit
  • Encryption of data at rest using industry-standard protocols
  • Role-based access controls limiting data access to authorised personnel
  • Multi-factor authentication for platform access
  • Regular security assessments and penetration testing

Your Rights

Under the Swiss nDSG and GDPR, you have the following rights:

AccessRequest a copy of the data we hold about you
RectificationCorrect inaccurate or incomplete data
ErasureRequest deletion, subject to legal retention obligations
PortabilityReceive your data in a machine-readable format
ObjectionObject to processing based on legitimate interests
Withdraw ConsentWithdraw consent at any time where applicable

To exercise your rights, contact us at privacy@zenzasociety.com. We will respond within 30 days.

Account Deletion

Users may request deletion of their account and associated personal data at any time by contacting privacy@zenzasociety.com. We will process your request within 30 days.

Certain information may be retained where required by applicable law, including KYC/AML records and financial transaction data as specified in our retention schedule above.

Children's Privacy

Our services are not directed at individuals under 18 years of age. We do not knowingly collect personal data from minors. If you believe we have inadvertently collected such data, please contact us immediately and we will delete it promptly.

Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through the app or by direct notification. The effective date at the top of this page reflects the latest revision. Continued use of our services constitutes acceptance of the updated policy.

Contact & Complaints

For any privacy-related questions, requests, or to exercise your rights:

Zenza Society Sàrl
Geneva, Switzerland
www.zenzasociety.com

privacy@zenzasociety.com

If you believe your data has not been handled in accordance with applicable law, you may lodge a complaint with the relevant supervisory authority:

Switzerland: Federal Data Protection and Information Commissioner (FDPIC)
www.edoeb.admin.ch →