Trustgrid, Inc.
Effective Date: June 1, 2026

1. About This Policy

Trustgrid, Inc. (“Trustgrid,” “we,” “our,” or “us”) is incorporated under the laws of the State of Delaware and headquartered at 12710 Research Blvd, Suite 365, Austin, TX 78759.

Trustgrid provides a Network-as-a-Service platform purpose-built for fintech and technology companies that need secure, managed connectivity to financial institutions, on-premises systems, and other private environments.

This Privacy Policy describes what personal information we collect, how we use and share it, and the rights you have with respect to it. It applies to visitors of our website at www.trustgrid.io, users of our customer portal at portal.trustgrid.io, and contacts who communicate with us directly.

By using our website or services, you acknowledge that you have read this policy. If you do not agree, please discontinue use of our website and services.

2. Scope

This policy covers personal information collected through:

  • Our public website at www.trustgrid.io
  • Our customer portal at portal.trustgrid.io
  • Direct communications with our team by phone, email, or other means

3. Information We Collect

3.1 Information You Provide

We collect information you give us directly, including:

  • Website contact form: Name, company, email address, phone number, and message content.
  • Portal account registration: First name, last name, email address, and a password you create.
  • Portal node management content: Node information including IP address, routing information, and network statistics.
  • Direct communications: Information you share with us by email or phone.

3.2 Information Collected Automatically

When you visit our website, we and third-party services embedded in our site may automatically collect technical information such as IP address, browser type, pages visited, and referring URL.

Our website uses Google Site Kit, which may collect usage data subject to Google’s Privacy Policy.

Our contact form is powered by a third-party service provider (LeadConnectorHQ) that processes form submissions on our behalf.

3.3 Payment Information

We do not collect or store payment card data directly. Payments are processed by a third-party payment processor. Trustgrid does not have access to your full payment card number.

4. How We Use Your Information

We use the information we collect to:

Provide and Manage Our Services: To set up and operate customer portal accounts and deliver network connectivity services. Legal Basis (GDPR): Performance of a contract.

Respond to Inquiries: To follow up on messages submitted through our contact form or sent to us directly. Legal Basis (GDPR): Legitimate interests.

Send Service Communications: To notify you of service updates, security matters, and administrative information. Legal Basis (GDPR): Performance of a contract; legitimate interests.

Maintain Security and Compliance: To monitor for unauthorized access, investigate incidents, and meet our obligations under applicable law and our SOC 2 and PCI-DSS compliance programs. Legal Basis (GDPR): Legitimate interests; legal obligation.

Improve Our Website and Services: To understand how our site is used and identify areas for improvement. Legal Basis (GDPR): Legitimate interests.

Comply with Legal Obligations: To meet requirements under applicable law, including the Gramm-Leach-Bliley Act (GLBA) and other applicable regulations. Legal Basis (GDPR): Legal obligation.

We do not sell personal information to third parties.

5. How We Share Your Information

We share personal information only in the following circumstances:

Service Providers: We use third-party companies to help operate our website and deliver our services, including website analytics, CRM, and payment processing. These providers process data only on our behalf and are required to protect it appropriately.

Customer Agreements: Where Trustgrid acts as a data processor or sub-processor under a written agreement with a customer, we process personal data in accordance with that agreement and the customer’s instructions.

Legal Requirements: We may disclose information where required by law, court order, or government authority, or to protect the rights, property, or safety of Trustgrid, our customers, or others.

Business Transfers: In connection with a merger, acquisition, or sale of assets, personal information may transfer as part of the transaction. We will provide notice as required by applicable law.

6. International Data Transfers

Trustgrid is based in the United States. If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, your personal information may be transferred to and processed in the United States.

We rely on the following mechanisms for such transfers:

EU-U.S. Data Privacy Framework (DPF)

Trustgrid has self-certified under the EU-U.S. Data Privacy Framework, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework, as administered by the U.S. Department of Commerce.

We are committed to applying the DPF Principles to personal data received from the EEA, UK, and Switzerland in reliance on the DPF.

If there is any conflict between the terms in this Privacy Policy and the DPF Principles, the DPF Principles shall govern.

To learn more about the DPF program or to view our certification, visit:

https://www.dataprivacyframework.gov

Standard Contractual Clauses

Where required, we use Standard Contractual Clauses approved by the European Commission, or equivalent transfer instruments for UK and Swiss transfers, to govern international transfers of personal data.

7. Data Retention

We retain personal information for as long as needed to fulfill the purposes described in this policy, maintain our relationship with you, and comply with our legal and compliance obligations.

When information is no longer needed, we delete or anonymize it.

8. Security

Trustgrid maintains an information security program designed to protect personal information from unauthorized access, disclosure, alteration, and destruction.

Our security practices include:

  • SOC 2 Type II certification with annual independent audits covering security, availability, and confidentiality controls
  • Zero trust network architecture with implicit deny
  • Certificate-based mutual authentication for all platform connections
  • TLS mutual authentication encrypting all data in transit across control and data planes
  • Role-based access controls limiting internal access to personal data

No security program is completely foolproof. While we apply commercially reasonable measures to protect your information, we cannot guarantee absolute security.

9. Your Privacy Rights

9.1 EEA, UK, and Swiss Residents

If you are located in the EEA, UK, or Switzerland, you have the following rights under applicable data protection law:

  • Access: Request a copy of personal data we hold about you.
  • Rectification: Request correction of inaccurate or incomplete data.
  • Erasure: Request deletion of your personal data, subject to applicable exceptions.
  • Restriction: Request that we limit processing of your data in certain circumstances.
  • Portability: Receive your data in a structured, machine-readable format where technically feasible.
  • Objection: Object to processing based on legitimate interests.
  • Withdraw Consent: Withdraw consent at any time where processing is based on consent.

To exercise any of these rights, contact us at [email protected].

You also have the right to lodge a complaint with your local data protection authority.

9.2 DPF Recourse and Dispute Resolution

In compliance with the DPF Principles, Trustgrid commits to resolve complaints about our privacy practices from
EU, UK, and Swiss individuals. Please contact us first at [email protected].

Trustgrid has designated BBB National Programs as its independent recourse mechanism (IRM). If we have not
resolved your complaint to your satisfaction, you may contact BBB National Programs at no charge through their
DPF dispute resolution process at www.bbbprograms.org/dpf-complaints.

Pursuant to the DPF Program, EU, UK, and Swiss individuals have the right to obtain our confirmation of whether
we maintain personal information relating to you in the United States. Upon request, we will provide you with
access to the personal information that we hold about you. You may also correct, amend, or delete the personal
information we hold about you. An individual who seeks access, or who seeks to correct, amend, or delete
inaccurate data transferred to the United States in reliance on the DPF Program should direct their query to
[email protected] . If requested to remove data, we will respond within a reasonable timeframe. We will also
provide an individual opt-out choice, or opt-in for sensitive data, before we share your data with third parties
other than our agents, or before we use it for a purpose other than which it was originally collected
or subsequently authorized. To request to limit the use and disclosure of your personal information,
please submit a written request to [email protected]

If you are an EU, UK, or Swiss Individual, where we transfer your personal data to third party service providers
who perform services for us or on our behalf, we are responsible for the processing of that data by them and
shall remain liable if they process your personal data in a manner inconsistent with the DPF Principles, unless we
prove that we are not responsible for the event giving rise to the damage. 

As a last resort, and subject to the conditions set forth in the DPF Principles, you may invoke binding arbitration
before the DPF Panel. For more information, see Annex I of the DPF Principles at
https://www.dataprivacyframework.gov.

The U.S. Federal Trade Commission has jurisdiction over Trustgrid’s compliance with the EU-U.S. Data Privacy
Frameworks. In certain situations, we may be required to disclose personal data in response to lawful requests
by public authorities, including to meet national security or law enforcement requirements.

10. Gramm-Leach-Bliley Act (GLBA)

Trustgrid provides connectivity services to fintech companies and financial institutions.

To the extent we handle nonpublic personal information (NPI) subject to GLBA in the course of those services, it is our policy to safeguard and keep confidential all such NPI except as necessary to provide contracted services or as permitted by law.

Trustgrid maintains an information security program that addresses the safeguard requirements of the GLBA Safeguards Rule, including risk assessment, implementation of appropriate controls, monitoring, and response to security incidents.

Trustgrid does not store customer application data or financial transaction data. All such data flows through encrypted tunnels and remains within customer-controlled infrastructure.

11. PCI-DSS

Trustgrid’s platform supports PCI-DSS compliance for customers that process, transmit, or store cardholder data by providing encrypted, segmented network connectivity consistent with PCI-DSS requirements.

Trustgrid does not store, process, or transmit cardholder data as part of its own operations.

Payments for Trustgrid services are handled by a third-party payment processor, and Trustgrid does not have access to full payment card numbers.

12. Cookies and Tracking

Our website uses cookies and similar tracking technologies.

These include technologies necessary for the site to function, analytics tools (including Google Site Kit) that help us understand how the site is used, and the third-party service that powers our contact form.

You can control cookies through your browser settings, though disabling certain cookies may affect site functionality.

13. Children’s Privacy

Our website and services are not directed to children under the age of 13.

We do not knowingly collect personal information from children.

If you believe we have done so, please contact us at [email protected] and we will promptly delete the information.

14. Changes to This Policy

We may update this policy from time to time.

When we make material changes, we will update the effective date and, where appropriate, notify registered portal users.

Continued use of our website or services after an update constitutes your acknowledgment of the revised policy.

15. Contact Us

For questions, concerns, or to exercise your privacy rights, please contact us:

Trustgrid, Inc.
Attn: Privacy
12710 Research Blvd, Suite 365
Austin, TX 78759

Email: [email protected]
Phone: 888.308.8995

For unresolved DPF complaints, contact our independent recourse mechanism:

BBB National Programs — DPF Dispute Resolution

https://bbbprograms.org/programs/all-programs/dpf/ProcessConsumerComplaints