DataWave LTD Privacy Policy

Privacy Policy

Effective Date: 01/05/2023 — Last Updated: 03/12/2025

At DataWave LTD ("we", "us", "our"), we are committed to protecting your privacy and ensuring the lawful and transparent processing of your personal data. This Privacy Policy explains what information we collect, how we use it, how we protect it, and your rights under applicable data protection laws, including the EU/UK GDPR.

1. Information We Collect

1.1 No Collection of Location or Precise Location Data

DataWave LTD does not collect, receive, infer, or process any form of location data, including GPS data, Wi-Fi or cell-tower based location, or any data capable of identifying an individual’s movements or physical whereabouts.

We do not obtain location data from third parties, data brokers, or partners.

1.2 Information Collected Directly by Our Platform

We only process limited data that is generated directly through your use of our own affiliate tracking platform.

This includes hashed IP addresses and hashed device identifiers. When your IP or device ID is received as a parameter, we irreversibly hash it before any processing or storage.

Hashing transforms the identifiers into a unique pseudonymised string, which cannot be reversed to the original IP or ID. We do not attempt to re-identify individuals or combine hashed data with other datasets.

2. Purposes and Legal Basis for Processing

2.1 Fraud Detection and Prevention

We process hashed identifiers to detect invalid traffic, prevent abuse, and maintain platform integrity.

Legal basis: Article 6(1)(f) GDPR – legitimate interests in preventing fraud and securing our platform.

2.2 Attribution and Minimal Advertising Functionality

Hashed identifiers are used to measure conversions and support attribution between affiliate partners.

Legal basis: Article 6(1)(f) GDPR – legitimate interests in providing and operating our affiliate tracking services.

3. No Third-Party Data Sources

We do not purchase, receive, or use any personal data from external data brokers, advertisers, or third-party datasets.

All information processed by DataWave LTD comes exclusively from interactions with our own platform.

4. Data Minimisation and Protection by Design

We minimise processed data by storing only hashed identifiers, collecting no location data, and preventing any form of re-identification.

Access to data is restricted, monitored, and subject to strict internal controls.

Our systems are designed to comply with GDPR principles of data minimisation, purpose limitation, and protection by design and default.

5. Data Security

We apply industry-standard organisational and technical safeguards, including encryption in transit and at rest, secure hashing mechanisms, strict access controls, and continuous monitoring.

While no system can guarantee absolute security, we take all reasonable steps to protect the data we process.

6. Data Retention

We retain hashed identifiers only for the minimum period required to fulfil fraud prevention and attribution purposes.

Retention period: 30 days.

After 30 days, all hashed identifiers are automatically deleted from our systems.

7. Sharing of Data

We do not share hashed identifiers or other data with third parties in a form that could identify an individual.

We may share aggregated and anonymised statistical insights with trusted partners. These datasets contain no identifiable information and cannot be traced back to any user.

8. International Data Transfers

DataWave LTD is headquartered in Israel, which is recognised by the European Commission as providing an adequate level of data protection.

Where applicable, transfers of personal data from the EU or UK to Israel comply with GDPR adequacy requirements.

9. Your Rights

Under data protection laws, you may exercise rights including access, rectification, erasure, objection to processing based on legitimate interests, restriction of processing, and the right to lodge a complaint with a supervisory authority.

You may request deletion of any data associated with your hashed identifier or object to its processing at any time.

10. EU/UK Privacy Representative (Article 27 GDPR)

We value your privacy and your rights as a data subject and have therefore appointed Prighter Group with its local partners as our privacy representative and your point of contact for the following regions:

  • United Kingdom (UK)
  • European Union (EU)

Prighter gives you an easy way to exercise your privacy-related rights (e.g. requests to access or erase personal data). If you want to contact us via our representative, Prighter or make use of your data subject rights, please visit the following website: https://app.prighter.com/portal/18916586143

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated “Last Updated” date.

Continued use of our services after updates indicates your acceptance of the revised policy.

12. Contact Us

DataWave LTD

Tel Aviv, Israel

Email: c@mydatawave.com

We are committed to safeguarding your privacy and ensuring transparent, compliant handling of all data processed by our platform.

Thank you for trusting DataWave LTD with your privacy. We are committed to safeguarding your information and continuously improving our practices to provide a secure and reliable service.