LEGAL REFERENCE

How cd22com Handles Your Personal Data

At cd22com, your privacy shapes every decision we make about data handling. This policy explains what we collect when you open an account, how we secure it, and...

Account Data ProtectedPakistani Payment PrivacySecure Data StorageTransparent CollectionYour Rights, Your Control
cd22com How cd22com Handles Your Personal Data

What This Privacy Policy Covers at cd22com

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

PRIVACY CONTACT PATHS

Reach Our Privacy Team at cd22com

If you have questions about how your data is used, stored, or shared, our privacy support team is here to help. You can reach us through any of the channels below and we will respond within 48 hours for all data-related queries from Pakistan and supported regions.

Team online

Email Privacy Team

Send your data request or privacy concern directly to our dedicated privacy email address. We acknowledge every request within 24 hours and resolve standard queries within 48 hours for accounts active in supported Pakistani regions.

Live Chat Support

Open the chat widget inside your account dashboard to speak with a support agent trained on data and privacy matters. Chat is available around the clock so you can raise a concern the moment it comes up, without waiting for an email reply.

In-Account Request Form

Use the Privacy Request form under your account settings to submit a formal access, correction, or deletion request. Submissions are logged automatically and routed to our data team, giving you a reference number to track progress at any time.

POLICY TRUST SIGNALS

Why You Can Rely on Our Privacy Practices

We built cd22com's privacy framework around the specific needs of Pakistan-based account holders. Every trust signal below reflects a concrete practice we apply daily, not a generic pledge copied from a template.

Encrypted Storage

All personal records, including mobile wallet references for JazzCash, Easypaisa, SadaPay and Raast transactions, are stored using AES-256 encryption at rest. Encryption keys rotate on a regular schedule and are held separately from the data they protect.

No Third-Party Sale

We do not sell, rent, or trade your personal information to any external marketing company. Data shared with payment processors is limited strictly to what is needed to clear your deposit or withdrawal and nothing further reaches outside parties.

Access Control Audits

Internal access to your account data is limited to staff with a verified operational need. We run quarterly access-control audits and revoke permissions automatically when a team member changes role or leaves the organisation.

Transparent Data Log

You can view a log of every data-access event tied to your account from within the account settings panel. This log shows which system or team accessed your record, when, and for what documented purpose.

Breach Response Plan

If a data incident ever affects your account, we notify you within 72 hours of confirming the breach, describe what was exposed, and outline the steps we are taking to contain it. Notification goes to your registered email or phone number on file.

Regular Policy Review

We review this privacy policy every six months and update it whenever our data practices change or applicable regulation in Pakistan or supported regions evolves. The effective date at the top of the policy always reflects the most recent revision.

How This Policy Aligns Across cd22com Pages

Our privacy commitments are consistent whether you arrive at this page from the homepage, the account settings panel, or any other section of cd22com. The seven dimensions below...

Data Collection Scope
Every page on cd22com that collects data references the same collection categories defined here — name, contact, payment channel identifier — with no silent additions elsewhere on the site.
Retention Periods
Retention timelines stated in account FAQs and help articles match the periods defined in this policy exactly. We do not apply different retention rules to different sections of the platform.
Payment Channel References
JazzCash, Easypaisa, SadaPay and Raast are referenced consistently as Pakistani payment rails across all policy and help content, with the same data-handling description applied to each.
User Rights Language
The rights described here — access, correction, deletion — appear in identical form in our account settings panel tooltips and in the help centre articles covering data management.
Contact Details
The privacy email address and in-account form path shown on this page are the same contact routes listed in every other cd22com page that mentions privacy or data queries.
Jurisdiction Wording
All references to geographic scope use the phrase 'supported regions where local law permits' consistently, with no page using broader or narrower scope language than what this policy defines.
Policy Update Notices
When this policy changes, a site-wide notice appears for active account holders regardless of which page they land on, so the update reaches you even if you do not revisit this page directly.
POLICY LAYOUT FEATURES

Key Elements of the cd22com Privacy Framework

The privacy framework at cd22com is structured so you can locate any commitment quickly. Each element below represents a distinct layer of the policy as it applies to...

Clear Data Categories We categorise collected data into three clear groups: identity data...
Purpose Limitation Every data item we hold is tied to a documented...
Withdrawal Verification Flow When you withdraw to JazzCash or Easypaisa, we verify your...
Cookie and Session Data Session cookies on cd22com expire when you close your browser...
Minor Account Prevention During registration, we collect a date of birth to confirm...
Data Portability You can request a structured export of your personal data...

Your Privacy Questions About cd22com Answered

We collect your name, email address, phone number, and date of birth at registration. Once you link a payment method, we also store the wallet identifier for JazzCash, Easypaisa, SadaPay or Raast — enough to process your transactions securely.

Payment channel identifiers are encrypted with AES-256 before storage and are never written to application logs in plain text. Access to payment records is restricted to the transaction-processing system and a small verified team.

Yes. Submit a deletion request through the Privacy Request form in your account settings or email our privacy team. We process standard deletion requests within 30 days, subject to any retention obligations under applicable law in supported regions.

We share data only with payment processors needed to clear your JazzCash, Easypaisa, SadaPay or Raast transactions, and with security providers who help us detect fraud. No data is sold or passed to marketing companies under any circumstances.

We retain your records for the period required by applicable regulation in supported regions where local law permits, typically up to five years for transaction records. After that period expires, your data is permanently deleted from our systems.

Yes. We display a site-wide notice to active account holders whenever the policy is updated and send an email to your registered address summarising the key changes. The effective date at the top of this page always reflects the latest revision.

Log into your account, go to Settings, and use the Data Access section to view a summary of your stored information. For a full structured export, submit a request through the in-account Privacy Request form and we will deliver it within five working days.