Legal

Privacy Policy

Watch Trust holds evidence about valuable objects, so the data you add is sensitive by nature. This page explains exactly what we process, why, for how long, and how you stay in control.

Last updated: 27 August 2026

Who is responsible

Watch Trust is operated by the Watch Trust team as data controller under the GDPR. For privacy requests write to privacy@watchtrust.app. The full legal entity details, including registered address, are provided on request to that address and to any supervisory authority.

What we process

  • Account data — email address, password (stored only as a hash), sign-in provider, timestamps of sign-in and confirmation.
  • Profile data — display name and optional professional details you choose to add.
  • Watch records — brand, reference, serial number, purchase details, provenance notes, condition assessments and stated values you enter.
  • Files — photos and documents you upload, such as invoices, warranty cards, service receipts and certificates.
  • Activity data — an append-only audit trail of actions on a record (creation, edits, verification, sharing, transfer) so history stays reconstructable.
  • Billing data — plan, subscription status and payment identifiers held by our payment provider. We never receive or store full card numbers.
  • Technical data — data strictly necessary to serve and secure the site, such as request logs and the session cookie.

Why we process it, and on which legal basis

  • Providing the service (Art. 6(1)(b) — contract): creating and storing your records, files, timelines, sharing links and transfers.
  • Account and billing administration (Art. 6(1)(b) and (c)): plan limits, invoices, statutory bookkeeping.
  • Security, fraud prevention and integrity of records (Art. 6(1)(f) — legitimate interest): audit logs, abuse detection, protection of verified evidence.
  • Professional verification (Art. 6(1)(b) and consent where you request it): sharing a specific record with the vetted professional you select.
  • Optional analytics (Art. 6(1)(a) — consent): only if you accept it in the cookie banner, and revocable at any time.

Who can see your data

Records are private by default. Your photos and documents live in private storage and are served only through short-lived signed links generated for you.

  • You, and anyone you explicitly grant access to.
  • A professional you select — only for the record you submitted, only for the duration of the case.
  • Anyone with a passport link you create — link-only, never indexed, limited to the fields you decide to show. Serial numbers stay masked unless you deliberately reveal them.
  • The new owner after a transfer you approve — history and the documents you selected transfer with the watch; your personal account data does not.
  • Platform administrators — only for moderation, fraud handling and support, and every access is written to the audit trail.

Processors and transfers

We use a small number of processors under Art. 28 GDPR: cloud hosting and database, private file storage, transactional email, an AI provider for the optional identification assistant, and a payment provider for subscriptions. Where a processor operates outside the EEA, transfers rely on Standard Contractual Clauses. The current list of processors is available on request at privacy@watchtrust.app.

The AI assistant

When you use identification assistance, the photos and details of that watch are sent to an AI provider to produce a suggestion. Suggestions are stored with the model name, a confidence value, a timestamp and their status. They are never a statement of authenticity and never grant a verified status. See data & security.

How long we keep it

  • Account and records: for as long as your account exists.
  • Files: until you delete them, except where a document is referenced by a verification, appraisal or service entry, in which case it is archived rather than erased to keep history intact.
  • Audit and verification history: retained as append-only evidence for the life of the record, including after a transfer.
  • Billing records: for the statutory retention period (generally 10 years).
  • Backups: rolling, with older copies expiring automatically.

Your rights

You have the right to access, rectify, erase and port your data, to restrict or object to processing, and to withdraw consent at any time. Write to privacy@watchtrust.app; we answer within one month. Erasure can be limited where evidence must remain verifiable or where law requires retention — in that case we tell you which part is kept and why. You may also lodge a complaint with your national supervisory authority.

Security

Access is enforced at the database level per record, files are private with signed time-limited access, verification and ownership history is append-only, and privileged actions are logged. Report a suspected vulnerability to security@watchtrust.app.

Children

The service is not intended for anyone under 16. We do not knowingly create accounts for minors.

Changes

If we change this policy in a way that affects you, we update the date above and notify account holders by email before the change takes effect.