Privacy Notice
How the Trusted PalmPay website and deployment programs handle personal information.
Last reviewed: 16 July 2026
Scope
This notice covers the public palmpay.mobile-id.vn website, workshop and PoC contact requests, and the privacy principles expected when a Trusted PalmPay deployment is designed. A bank or merchant production deployment will have its own role allocation, notices, consent records and contractual documentation.
Website data
The contact form may collect name, business email, phone, organization, role, area of interest, message, language, anti-abuse signals and a request reference. Do not submit biometric data, payment data, credentials, private keys, government identifiers or other restricted information through this website.
Purposes and basis
Mobile-ID uses contact information to validate, route and respond to the request; prevent abuse; maintain security records; and prepare a workshop or proposal. The lawful basis and retention period must be confirmed in the final production privacy notice for the relevant jurisdiction.
Biometric data in a deployment
Palm Print and Palm Vein data are sensitive. Recommended architecture separates biometric templates and matching services from wallet and transaction ledgers, minimizes raw-image retention, limits access by purpose and records consent/policy lifecycle. Device, SDK, server diagnostics and retention settings must be verified before go-live.
Sharing and processors
Website data may be handled by authorized Mobile-ID staff and approved hosting, email, CRM or security providers under appropriate controls. Production data sharing depends on the bank-merchant contract, licensed service providers, approved subprocessors and documented purposes.
Retention and security
Contact data should be retained only as long as necessary for the inquiry and documented business/legal requirements. Production retention must be configured by data category, purpose, consent state and applicable law. Security measures include access control, encryption, logging, monitoring and incident response.
Your choices and rights
Subject to applicable law, individuals may request access, correction, deletion, restriction, withdrawal of consent, objection or information about processing. Requests can be sent to info@mobile-id.vn. Identity verification may be required before acting.
International transfers and minors
Cross-border processing, if any, requires deployment-specific assessment and safeguards. The public website is directed to business contacts. A production service involving minors requires a dedicated legal basis, guardian workflow and age-appropriate notice.
Contact and changes
Privacy questions may be sent to info@mobile-id.vn or Mobile-ID at the address in the footer. Material changes will be reflected by the revision date shown on this page.
Identity sources and VNeID
Where an approved project uses VNeID or another identity source, the production privacy notice must identify the source, attributes, purposes, legal basis, consent/authorization path, recipients, retention, rights and controller/processor roles.
Level 9, Thuy Loi 4 Building, 286-288 Nguyen Xi Street, Binh Loi Trung Ward, Ho Chi Minh City
1900 6884
+84 28 3622 2982
info@mobile-id.vn