1. Introduction
This Application Compliance Policy ("Policy") outlines the requirements that all applications integrating with Finatic's API and services must follow. Compliance with this Policy is mandatory for all developers and organizations using our platform.
The purpose of this Policy is to ensure that applications using Finatic's services maintain high standards of security, privacy, and user experience. By integrating with our platform, you agree to comply with this Policy and all applicable laws and regulations.
2. Security Requirements
All applications integrating with Finatic must implement appropriate security measures, including but not limited to:
- Secure storage and transmission of all data using industry-standard encryption (minimum TLS 1.2)
- Implementation of secure authentication mechanisms
- Regular security assessments and prompt remediation of vulnerabilities
- Secure handling of API keys and credentials
- Implementation of appropriate access controls
- Monitoring for suspicious activities and security incidents
You must promptly notify Finatic of any security breaches or vulnerabilities that could affect the security of Finatic's services or user data.
3. Data Privacy Requirements
Applications must respect user privacy and handle user data responsibly:
- Collect only the data necessary for the application's functionality
- Obtain explicit consent from users before accessing their financial data
- Provide clear and accurate privacy policies that explain data collection and usage
- Implement data minimization practices
- Allow users to access, correct, and delete their data
- Maintain data accuracy and keep records up to date
- Implement appropriate data retention and deletion policies
Applications must comply with all applicable privacy laws and regulations, including but not limited to GDPR, CCPA, and other regional privacy requirements.
4. User Experience Guidelines
Applications integrating with Finatic must provide a high-quality user experience:
- Clearly communicate the application's functionality and how it uses Finatic's services
- Provide clear instructions for connecting to Finatic
- Implement appropriate error handling and user feedback
- Maintain reasonable performance and response times
- Design accessible interfaces that follow best practices
- Provide responsive customer support
Applications should not mislead users about their functionality or relationship with Finatic.
5. Financial Regulations Compliance
Applications that provide financial services or handle financial data must comply with all applicable financial regulations:
- Obtain all necessary licenses and registrations for financial activities
- Implement appropriate Know Your Customer (KYC) and Anti-Money Laundering (AML) procedures
- Comply with applicable tax reporting requirements
- Adhere to financial data security standards
- Maintain accurate financial records
- Implement appropriate risk management procedures
Developers are responsible for understanding and complying with all financial regulations applicable to their applications.
6. Prohibited Activities
The following activities are strictly prohibited when using Finatic's services:
- Illegal activities of any kind
- Fraudulent or deceptive practices
- Unauthorized access to user accounts or data
- Scraping or bulk collection of data beyond authorized scope
- Sharing or selling user data without explicit consent
- Creating applications that compete directly with Finatic's core services
- Misrepresenting the relationship between your application and Finatic
- Activities that could damage Finatic's reputation or brand
Finatic reserves the right to terminate access for applications engaged in prohibited activities.
7. Compliance Monitoring and Enforcement
Finatic monitors applications for compliance with this Policy through various means:
- Regular reviews of application functionality and data usage
- Automated monitoring of API usage patterns
- User feedback and complaints
- Security and compliance audits
If we identify compliance issues, we may take one or more of the following actions:
- Notify you of the issue and request remediation
- Require changes to your application
- Temporarily suspend your access to our services
- Permanently revoke your access to our services
- Take legal action if necessary
8. Policy Updates
Finatic may update this Policy from time to time to reflect changes in our services, legal requirements, or best practices. We will notify developers of significant changes through our developer portal, email, or other appropriate channels.
Continued use of our services after policy updates constitutes acceptance of the revised Policy. If you do not agree with the updated Policy, you must stop using our services.
9. Contact Information
If you have questions about this Policy or need assistance with compliance, please contact us at:
Finatic Inc.
Miami, FL 33101
compliance@finatic.com