What data VIGILIX collects, how it is processed, which tools are involved, and your rights under Swiss law (nLPD).
VIGILIX processes only the data you actively provide when performing a screening. No data is collected passively (no tracking, no analytics cookies).
| Data element | Purpose | Stored? | Shared? | Retention |
|---|---|---|---|---|
| First and last name | Sanctions matching, PEP check, adverse news search | No | Partially* | Session only โ discarded immediately after response |
| Date of birth | Improve match accuracy, reduce false positives | No | No | Session only |
| Nationality / country | Refine adverse news search queries | No | Partially* | Session only |
| IP address | Web server routing (Nginx standard logs) | Temporarily | No | 7 days in Nginx access logs, then deleted |
| Browser / User-Agent | Standard HTTP header (not analyzed) | Temporarily | No | 7 days in Nginx logs, then deleted |
| Screening results / PDF | Generated on-demand, sent to browser | No | No | Never stored on server |
VIGILIX is built entirely on self-hosted or open-source components. No commercial SaaS analytics, advertising, or tracking services are used.
| Step | From | To | Data transmitted | Location |
|---|---|---|---|---|
| 1 | Your browser | VIGILIX server | Name, DOB, nationality (HTTPS encrypted) | ๐จ๐ญ Switzerland |
| 2a | Flask engine | Local sanctions cache | Name only (in-memory comparison) | ๐จ๐ญ Switzerland |
| 2b | Flask engine | Wikidata API | Name only | ๐ International |
| 2c | Flask engine | GDELT + SearXNG (parallel) | Name + risk keywords (anonymized) | ๐ International |
| 3 | VIGILIX server | Your browser | Screening results (HTTPS encrypted) | ๐จ๐ญ Switzerland |
| 4 | Your browser | Your device only | PDF report (generated server-side, never stored) | ๐จ๐ญ โ Your device |
VIGILIX processes personal data under the following legal bases, pursuant to the Swiss Federal Act on Data Protection (nLPD, revised version in force since September 1, 2023):
Legal basis: Legitimate interest (Art. 31 nLPD). Financial intermediaries subject to the Anti-Money Laundering Act (LBA/AMLA) have a legal obligation to screen clients against sanctions lists. Processing names for this purpose constitutes a legitimate interest that overrides the data subject's interest in privacy.
Legal basis: Legitimate interest (Art. 31 nLPD). Identifying negative media coverage related to financial crime, corruption, or sanctions is a recognized component of enhanced due diligence (EDD) under FATF recommendations.
Legal basis: Legitimate interest (Art. 31 nLPD) โ security monitoring and abuse prevention. Logs are retained for 7 days only.
As a data subject, you have the following rights under Swiss law. Note that because VIGILIX does not store screening queries or results, most rights can only be exercised in relation to server log data (IP address, timestamp).
For any privacy-related request or question, contact us at:
vigil.swiss@pm.meWe will respond within 30 days as required by the nLPD.