Legal
Privacy policy
Last updated: July 16, 2026
Who we are and what this covers
GemiFX is operated by EZCA (the "Company", "we", "us"). This policy covers the GemiFX website, web dashboard, and GemiFX applications that link to it.
GemiFX provides trading-automation software and a dashboard. A third-party funded-account provider issues the trading account and sets its current account and payout rules. Partner selection and issuance happen in a separate operating contour. GemiFX is not that provider, a broker, or a custodian of your trading funds.
Contact us about privacy at [email protected].
Data we collect
Account data. Your email address, display name, authentication method, and a unique account identifier when you register or sign in. If an identity provider gives us a relay address instead of your usual email, we receive that relay address.
Funded-account journey data. The plan or account size you choose, request and provisioning status, account identifiers, applicable rule/status data, and connection state. The product does not expose provider selection or direct provider checkout.
Automation and trading data. Strategy settings, risk controls, orders, fills, positions, account status, performance data, payout eligibility or history, pauses, failures, and technical events needed to operate and explain the service.
Support data. Messages and files you choose to send us, plus the account, order, and diagnostic details needed to investigate your request. Please never send a password or full payment-card number to support.
Chat assistant data. Chat messages and the recent conversation context you send to the Jemi assistant. This content is sent to the configured AI model provider to generate a reply, so do not include passwords, payment-card details, or other information you do not want processed for support.
Security and technical data. IP address, browser or device type, timestamps, request and error logs, and security signals used to keep the service reliable and protect accounts.
Optional website analytics and advertising measurement
We load the tools in this section only after you choose Allow optional tracking in the cookie notice. Choosing Essential only keeps them off.
PostHog. We use PostHog for product analytics and session replay. It can receive product events, page paths, browser/device information, and a pseudonymous account UID after you sign in. Our website does not send your account email or display name to PostHog. All form inputs and rendered text are masked in session replay, and URL query values are removed from PostHog events and recordings.
Meta Pixel. We use Meta Pixel to measure visits, checkout steps, and advertising results. Meta may receive page and event information, browser/device and network information, and identifiers from Meta cookies or similar technologies. Our Pixel event payloads do not include your GemiFX account email or display name. Meta may associate activity with its own identifiers under its policies.
These records are pseudonymous, not anonymous: a stable UID, cookie, or device identifier may distinguish one account or browser from another.
How and why we use data
- create and secure your GemiFX account;
- record your account request and show the confirmed partner handoff and provisioning progress;
- operate, monitor, pause, and support the automation you enable;
- show verified account, trading, rule, and payout data;
- respond to support, privacy, refund, and deletion requests;
- prevent fraud, abuse, and security incidents; and
- with your consent, understand product usage and measure advertising results.
Depending on the context and your location, we process data to provide the service you request, comply with law, protect our legitimate interests in security and reliability, or based on your consent. You can withdraw optional analytics/advertising consent without losing access to essential product functions.
Who receives data
- Google Firebase for account authentication and related infrastructure;
- Apple and Google when you choose their sign-in services;
- Vercel and Cloudflare for website hosting, delivery, DNS, and security;
- PostHog for consent-gated product analytics and masked session replay;
- Meta for consent-gated advertising measurement through Meta Pixel;
- AI model providers such as Anthropic, OpenRouter, or DeepSeek, depending on the configured Jemi provider, to process chat messages and return assistant replies;
- Telegram for limited operator notifications about signups and access requests, which can include the contact details submitted;
- the separate account partner only where needed to coordinate the account request and handoff; provider selection and checkout are not offered in GemiFX; and
- communication and infrastructure providers that help us send service messages and operate support.
We may also disclose data when required by law, to protect users or the service, or as part of a corporate transaction subject to appropriate safeguards. The separate account partner may have its own relationship and privacy notice with you.
Cookies and local storage
The website uses an essential __session cookie to keep signed-in areas secure. Your browser also stores gemifx-cookie-consent-v2 in localStorage to remember whether you allowed optional tracking.
PostHog does not initialise or send analytics before consent, and Meta Pixel is not loaded before consent. If you allow them, they may use cookies or similar browser storage as described above. You can change or withdraw consent at any time using the controls below, without losing access to essential product functions.
Cookie preferences
No optional tracking choice is currently saved.
Retention, security, and international processing
We retain account and service records while needed to provide the service, resolve disputes, meet legal obligations, and protect users. Retention varies by record type and purpose. Deletion may not remove records that must be kept for legal, fraud-prevention, accounting, or dispute purposes; remaining data is restricted to those purposes and removed under our retention schedule.
In-app deletion removes the core GemiFX trading profile only after open exposure is closed and GemiFX-controlled execution access is detached. The button does not automatically erase a separate website access-request record, submit erasure requests to optional analytics or advertising services, or erase records independently held in the separate account-partner contour. Email the privacy address above for those records; we will coordinate the applicable request after verifying your identity.
We use access controls, encryption in transit, monitoring, and other reasonable safeguards. No internet service can promise absolute security. Service providers and the account partner may process data in countries other than yours; where required, we use contractual or other lawful transfer safeguards.
Your choices and rights
Depending on your location, you may have rights to access, correct, delete, port, or restrict personal data, and to object to processing or withdraw consent. Email [email protected] from your account address. We may need to verify your identity. You may also complain to your local data-protection authority.
We do not knowingly offer GemiFX accounts to children. You must meet the minimum legal age in your jurisdiction and any higher eligibility requirement of the applicable funded-account program.
Changes
We may update this policy as the service or law changes. We will update the date above and provide additional notice when required.