1. Introduction
MilaTech Pty Ltd ("we," "our," or "us"), a company registered in South Africa, respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you use the Mila-Ex unified cryptocurrency market data API (the "Service").
By accessing our Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
We collect only the data necessary to provide our SaaS solution, manage subscriptions, and ensure the security of our infrastructure.
A. Information You Provide
- Account Data: When you register, we collect your Full Name, Work Email, and Password.
- Billing Information: To access paid subscriptions or the 5-Day Free Test, we require a valid credit card. We do not store your full credit card number. All financial transactions are processed securely by Stripe, our third-party payment processor.
- API Credentials: We store the API keys generated via your dashboard to authenticate your requests.
B. Technical & Usage Data (Automated)
We automatically collect usage metrics to monitor system stability and enforce subscription quotas:
- API Volume: We track your total request volume to enforce monthly limits (e.g., 40,000 requests/month for Premium plans) and rate limits (e.g., 60 requests/minute).
- Device & Network Data: We collect IP addresses and User Agent strings to maintain our "Overall API Limit" of 10,000 requests per minute and to prevent DDoS attacks.
- AI Interactions: If you use Mila-Ex GPT, your natural language queries and the code snippets generated are processed to provide the AI integration service.
C. Analytics & Tracking
We use third-party tools to analyze user behavior and improve our platform. These tools may use cookies or similar technologies:
- Google Analytics 4 (GA4): To track website traffic, user sessions, and documentation usage.
- Microsoft Clarity: To generate heatmaps and session recordings to understand how users navigate our dashboard.
- Meta (Facebook) Pixel & X (Twitter) Pixel: To measure the effectiveness of our advertising campaigns and attribute conversions.
3. How We Use Your Information
We use your data for the following specific purposes:
- Service Delivery: To authenticate your API calls via the
x-api-key header and route your requests to the correct exchange (e.g., Binance, Luno, Valr). - Billing: To process monthly subscription fees for Explorer ($9.50), Pro ($39.50), and Premium ($54.50) plans via Stripe.
- Security: To enforce IP whitelisting, validate usage against your plan's quota, and prevent API abuse.
- Communication: To send system updates, breaking change notifications (e.g., exchange delistings), and technical support responses.
4. Data Storage & International Transfers
- Hosting: Our primary infrastructure is hosted on Amazon Web Services (AWS) in the eu-west-1 region.
- Data Transfer: As Mila-Tech Pty Ltd is based in South Africa, your data may be processed in South Africa and the European Union. We adhere to industry-standard data protection practices aligned with POPIA (South Africa) and GDPR (Europe).
5. Security of Your Data
We treat security as a core feature of our product:
- Encryption: All traffic is secured via 256-bit SSL (HTTPS) encryption.
- Read-Only Architecture: Our system is strictly "Read-Only." We do not accept, store, or process private keys, wallet seed phrases, or withdrawal permissions. We cannot execute trades or access your funds.
- Data Minimization: We only store the data strictly required to provide the service and maintain audit trails.
6. Third-Party Service Providers
We share data with specific third parties solely to facilitate our operations:
- Cloud Hosting: Amazon Web Services (AWS).
- Payment Processing: Stripe.
- Analytics: Google Analytics 4, Microsoft Clarity.
- Marketing Attribution: Meta (Facebook), X (Twitter).
- AI Services: OpenAI (provider for Mila-Ex GPT).
7. Your Rights
Under applicable laws, you have the right to:
- Access: Request a copy of the personal data we hold about you.
- Correction: Update your account details via the dashboard.
- Deletion: Request the deletion of your account and associated API keys by contacting support.
- Opt-Out: You may opt-out of marketing communications via the unsubscribe link in our emails. You may also disable cookies to prevent Analytics tracking, though this may affect dashboard functionality.
8. Contact Us
If you have questions about this Privacy Policy, please contact us: