Introduction
OmniCore Digital Solutions ("OmniCore", "we", "us" or "our") is committed to protecting your privacy. This Privacy Policy explains what personal data we collect, why we collect it, how we use and share it, and the rights you have in relation to it.
OmniCore provides digital banking and fintech technology — including our DBX digital banking platform, PayX payments, CrossPay cross-border payments, ConnectIQ integration, P2P lending and Luna AI — to banks and financial institutions. Our direct relationships are primarily with businesses. This policy covers the personal data we handle as a controller: mainly the data of website visitors, prospective and current business contacts, event attendees, partners, and job applicants.
Who we are
OmniCore Digital Solutions is the data controller for the personal data described in this policy. Our headquarters are in the United Arab Emirates, with delivery and operations offices in India, the United Kingdom, Qatar, Saudi Arabia, Bahrain and a business-development presence in the United States.
For any privacy question, or to exercise your rights, contact us at privacy@omnicoredigital.com.
Scope of this policy
This policy applies to our marketing and information websites at omnicoredigital.com and its subdomains, and to our interactions with business contacts, partners, event participants and applicants.
When we provide our platforms to a financial institution, that institution is the controller of the personal data of its own customers, and OmniCore acts as a processor on its behalf under a separate data processing agreement. This Privacy Policy does not govern how a bank uses your data within a service it operates — for that, please refer to the privacy notice of the institution you bank with.
Personal data we collect
Data you provide to us
- Contact and identity data — name, business email, phone number, job title, company name, and country, when you fill in a form, request a demo, contact us, or subscribe to updates.
- Communications — the content of messages, enquiries and correspondence you send us.
- Recruitment data — CV/résumé, work history, qualifications and any information you include when applying for a role.
- Event data — registration and participation details for webinars and events.
Data we collect automatically
- Device and usage data — IP address, browser type, device type, operating system, pages viewed, referring pages and interactions, collected through cookies and similar technologies (see our Cookie Policy).
- Approximate location — derived from your IP address for security and regional content.
Data from third parties
- Business contact information from partners, referrals and publicly available professional sources (for example, professional networking platforms), used to inform relevant business outreach.
We do not seek to collect special categories of data (such as health, religious or biometric data) through our Websites, and we ask that you do not submit such information to us.
How we use personal data
- respond to your enquiries, demo requests and support questions;
- provide, operate, secure and improve our Websites and services;
- manage business relationships with prospects, customers and partners;
- send you information and marketing about our products and events where permitted, from which you can opt out at any time;
- organise and run events and webinars;
- assess job applications and manage recruitment;
- analyse and improve website performance and content;
- comply with legal, regulatory and contractual obligations, and detect and prevent fraud and misuse.
Legal bases for processing
Where data protection law such as the EU/UK GDPR applies, we rely on the following legal bases:
| Purpose | Legal basis |
|---|---|
| Responding to enquiries and demo requests | Performance of a contract / steps prior to a contract, and our legitimate interests |
| Marketing communications | Consent, or legitimate interests for existing business contacts (with opt-out) |
| Website analytics and non-essential cookies | Consent |
| Securing and operating our Websites | Legitimate interests in running a safe, reliable service |
| Recruitment | Steps prior to entering an employment relationship, and consent |
| Legal and regulatory compliance | Compliance with a legal obligation |
Where we rely on consent, you may withdraw it at any time without affecting the lawfulness of processing carried out before withdrawal.
International transfers
OmniCore operates across multiple countries, so your personal data may be transferred to, and processed in, countries other than your own — including the UAE, India, the United Kingdom, the European Economic Area and the United States. Where we transfer data internationally, we put appropriate safeguards in place, such as the European Commission's Standard Contractual Clauses (or the UK equivalent) and equivalent contractual protections, to ensure your data remains protected.
Data retention
We keep personal data only for as long as necessary for the purposes for which it was collected, including to satisfy legal, accounting or reporting requirements. For example, we generally retain business-contact and enquiry data for the duration of the relationship and for a reasonable period afterwards, and recruitment data for a limited period unless a longer retention is agreed. When data is no longer needed, we delete or anonymise it.
Security
We maintain technical and organisational measures designed to protect personal data against unauthorised access, alteration, disclosure or destruction — including access controls, encryption in transit, network security, and staff training. No method of transmission or storage is completely secure, but we work continuously to protect your information and to respond appropriately to any security incident.
Your privacy rights
Depending on your location and applicable law, you may have the right to:
- access the personal data we hold about you;
- request correction of inaccurate or incomplete data;
- request deletion of your data in certain circumstances;
- object to, or request restriction of, certain processing;
- request portability of data you provided to us;
- withdraw consent where processing is based on consent;
- opt out of marketing at any time using the unsubscribe link or by contacting us;
- lodge a complaint with your local data protection authority.
To exercise any of these rights, email privacy@omnicoredigital.com. We may need to verify your identity before acting on a request, and we will respond within the timeframes required by applicable law.
Children's privacy
Our Websites and services are intended for businesses and professionals and are not directed at children. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will revise the "Last updated" date above and, where appropriate, provide additional notice. We encourage you to review this page periodically.