Effective Date: 25 May 2018
Mastercard International Incorporated and its affiliates (collectively, "Mastercard") respect your privacy.
This Global Privacy Notice describes the types of Personal Information we collect, the purposes for which we collect that Personal Information, the other parties with whom we may share it and the measures we take to protect the security of the data. It also tells you about your rights and choices with respect to your Personal Information, and how you can contact us about our privacy practices.
Our privacy practices may vary among the countries in which we operate to reflect local practices and legal requirements. Specific privacy notices may apply to some of our products and services. Please visit the webpage of the specific product or service to learn more about our privacy and information practices in relation to that product or service.
1. Personal Information We May Collect
"Personal Information" means any information relating to an identified or identifiable individual. Examples of Personal Information include: name, email address, IP address, personal account number and phone number. We may collect the following Personal Information:
For the purpose of this Global Privacy Notice, "Personal Information" means any information relating to an identified or identifiable individual. Examples of Personal Information include: name, email address, IP address, personal account number and phone number. We may obtain different types of Personal Information relating to you in the situations described below.Personal Information We Receive from Financial Institutions, Merchants, and Other Partners in Connection with Mastercard’s Products or Services
As a processor of payment transactions and provider of related services, we obtain a limited amount of information in connection with your payment transactions such as the personal account number, the merchant’s name, sort code and account number (where provided), and, location, the date and the total amount of transaction. Importantly, we generally do not need or collect the cardholder’s name to process a card transaction or other contact information to process payment transactions.
In addition, for certain products and services, your financial institutions, the merchants where you make a transaction or other partners may provide us with more information about you, or we may collect it directly from you to provide you with those products and services on their behalf, support their business or perform processing activities on their behalf.
Mastercard may provide you directly with products and services such as Connect Magazine and call centre services. To benefit from one or more of these products and services, you can submit information to us directly via various means including: (i) on our websites and digital assets, (ii) via telephone or other communications, or (iii) by signing up for a Mastercard product or service. We may also obtain Personal Information about you through your use of our products or services, from companies that use or facilitate our products or services, from publicly available sources, or from third party partners. Your Personal Information may also be passed on to us by your financial institution, merchant or other business partners.
Below is an overview of the types of Personal Information we may collect in relation to programs we offer directly to you. Each program differs, so where applicable, please refer to the relevant program-specific privacy notice for more information on the use of your Personal Information for that specific program.
In addition, we may collect or use Personal Information for fraud prevention and monitoring, risk management, dispute resolution and other related purposes. Such information may include the personal account number, merchant’s name and location, date and total amount of the transactions, IP address, fraud score, location data, merchant details, items purchased and information about the dispute.. We also aggregate some of your Personal Information to create models to identify past and potential future fraud patterns and offer advanced fraud and security features to financial institutions, merchants, customers and partners.Personal Information We Obtain from Your Interaction with Mastercard’s Ads, Websites, Apps or Other Digital Assets
We, our service providers and partners may collect certain information about you via automated means such as cookies and web beacons when you interact with our ads, mobile apps, or visit our websites, pages or other digital assets. The information we collect in this manner may include: IP address, browser type, operating system, mobile device identifier, geographical area, referring URLs and information on actions taken or interaction with our digital assets. A "cookie" is a text file placed on a computer’s hard drive by a web server. A "web beacon," also known as an Internet tag, pixel tag or clear GIF, is a technology that helps us identify when content has been accessed or visited.
We use this information to improve our online products and services by assessing how many users access or use our online products and services, which content, products and features of our online products and services most interest our visitors, what types of offers our customers like to see and how our online products and services perform from a technical point of view. For instance, we may use third-party web analytics services on our websites and mobile apps, such as those of Adobe Omniture. The analytics providers that administer these services use technologies such as cookies and web beacons to help us analyze how visitors use our websites and apps.
We, our service providers and partners may also collect information about you in connection with our marketing activities, including to improve user experience and tailor further communications. The information collected for these purposes may include your contact information (e.g., name, postal address, email address, phone number), electronic identification data (e.g., username, password, security questions, IP address), and data collected in the context of online marketing programs (e.g., personal characteristics, consumption habits and/or interests).
We, our service providers and partners may also collect information about you to provide you with content and advertising tailored to your individual interests. The information collected for these purposes may include details about things like the particular pages or ads you view on our websites and apps and the actions you take on our websites and apps.
In addition, some of our online products and services include advanced fraud prevention technology using behavioral-based data, such as keystroke timing, device accelerometer, scroll position and mouse-location.
Where required under applicable law, we obtain your consent prior to using the above automated means, and prior to sending you marketing communications, tailored content and advertisings.
Please see the "Your Rights and Choices" section of this Global Privacy Notice to learn about your choices.
Because there is not yet a consensus on how companies should respond to web browser-based do-not-track ("DNT") mechanisms, Mastercard does not respond to web browser-based DNT signals at this time. To learn more about browser tracking signals and DNT, visit http://www.allaboutdnt.com.Personal Information We Obtain when You Apply for a Job with Us
If you are applying for a job at Mastercard, we may collect certain Personal Information from your job applications on our Career website, such as your contact information (including name, postal address, email address and phone number), job history, curriculum vitae, contact details of your referees and any other Personal Information you choose to submit along with your application.Personal Information We Collect in the Context of Our Business Relationship with Financial Institution, Merchant or other Entity Partnering with Mastercard
We may collect Personal Information from individuals working for one of our business partners (including financial institutions, merchants, customers, suppliers, vendors and other partners), including name, job title, department and name of organization, business email and postal addresses, business telephone number, answers to security questions, security passwords and other credentials. We may use this information to provide products and services directly to financial institutions, corporate clients, merchants, customers and partners, to manage our business relationships and financial reporting, for franchise, product and/or service development and integrity, for marketing and to comply with applicable law, as well as for accounting, auditing and billing purposes.
2. How We May Use Your Personal Information
We may use your Personal Information to:
If you are in the European Economic Area or Switzerland, we will only use your Personal Information with your consent; as necessary to provide you with products and services; to comply with a legal obligation; or when there is a legitimate and overriding interest that necessitates the use.Learn more
We may use the Personal Information we obtain about you to:
If you are located in the European Economic Area ("EEA") or Switzerland, we will only process your Personal Information for the above purposes when we have a valid legal ground for the processing, including if:
We will not subject you to a decision based solely on automated processing that produces legal effects concerning you or similarly significantly affects you, unless you explicitly consented to the processing, the processing is necessary for entering into, or performance of a contract between you and Mastercard, or when we are legally required to use your Personal Information in this way, for example to prevent fraud.
If you provide us with any information or material relating to another individual, you must make sure that the sharing with us and our further use as described to you from time to time is in line with applicable laws, so for example you should duly inform that individual about the processing of her/his Personal Information and obtain her/his consent, as may be necessary under applicable laws.
Subject to our contractual commitments to our Financial Institution customers, we may share Personal Information with:
We do not sell or otherwise disclose Personal Information we collect about you, except as described in this Global Privacy Notice, as disclosed to you at the time of data collection or as described in our program specific privacy notice.
We transfer Personal Information globally within the Mastercard group of affiliated companies consistent with the terms of this Global Privacy Notice or as we otherwise disclose at the time the data is collected. If you are located in the EEA or Switzerland, we will transfer your Personal Information in accordance with the Mastercard Binding Corporate Rules available here or any other lawful data transfer mechanism.
We may also share your Personal Information:
4. Your Rights and Choices
Depending on your country, you may have the right or choice to:
If you are located in the EEA or Switzerland, you can exercise your rights by submitting a request as described in the "How to Contact Us" section below.Learn more
You have certain rights regarding the Personal Information we maintain about you and certain choices about what Personal Information we collect from you, how we use it, and how we communicate with you.
You can choose:
In certain jurisdictions, in particular if you are located in the EEA or Switzerland, you may have the right to:
Those rights may be limited in some circumstances by local law requirements.
If we fall short of your expectations in processing your Personal Information or you wish to make a complaint about our privacy practices, please tell us because it gives us an opportunity to fix the problem. To assist us in responding to your request, please give full details of the issue. We attempt to review and respond to all complaints within a reasonable time and as required under applicable law.
To update your preferences, ask us to remove your information from our mailing lists or submit a request to exercise your rights under applicable law, contact us as specified in the "How to Contact Us" section below.
5. Data Transfers
Mastercard is a global business. We may transfer your Personal Information to the United States and other countries which may not have the same data protection laws as the country in which you initially provided the information, but we will protect your Personal Information in accordance with this Global Privacy Notice, or as otherwise disclosed to you.
If you are located in the EEA, we will process your Personal Information in accordance with our Binding Corporate Rules and other lawful data transfer mechanisms.Learn more
Mastercard is a global business. We may transfer the Personal Information we collect about you to recipients in countries other than your country, including the United States, where we are headquartered. These countries may not have the same data protection laws as the country in which you initially provided the information. When we transfer your Personal Information to other countries, we will protect that information as described in this Global Privacy Notice, as disclosed to you at the time of data collection or as described in our program-specific privacy notice.
We comply with applicable legal requirements providing adequate safeguards for the transfer of Personal Information to countries other than the country where you are located. In particular, we have established and implemented a set of Binding Corporate Rules ("BCRs") that have been recognized by EEA data protection authorities as providing an adequate level of protection to the Personal Information we process globally. A copy of our BCRs is available here. We may also transfer Personal Information to countries for which adequacy decisions have been issued, use contractual protections for the transfer of Personal Information to third parties, such as the European Commission’s Standard Contractual Clauses or their equivalent under applicable law, or rely on third parties’ certification to the EU-U.S. or Swiss-U.S. Privacy Shield Frameworks where applicable. You may contact us as specified in the "How to Contact Us" section below to obtain a copy of the safeguards we use to transfer Personal Information outside of the EEA.
6. How We Protect Your Personal Information
We maintain appropriate security safeguards to protect your Personal Information and only retain it for a limited period of time.Learn more
The security of your Personal Information is important to Mastercard. We are committed to protecting the information we collect. We maintain administrative, technical and physical safeguards designed to protect the Personal Information you provide or we collect against accidental, unlawful or unauthorized destruction, loss, alteration, access, disclosure or use. We use SSL encryption on a number of our websites from which we transfer certain Personal Information.
We also take measures to delete your Personal Information or keep it in a form that does not permit identifying you when this information is no longer necessary for the purposes for which we process it, unless we are required by law to keep this information for a longer period. When determining the retention period, we take into account various criteria, such as the type of products and services requested by or provided to you, the nature and length of our relationship with you, possible re-enrolment with our products or services, the impact on the services we provide to you if we delete some information from or about you, mandatory retention periods provided by law and the statute of limitations.
You may choose to use certain features for which we partner with other entities that operate independently from Mastercard, such as social media and third-party websites. We are not responsible for the content, your use of, nor the privacy practices of those websites.Learn more
Our websites may provide links to other websites for your convenience and information. We may also allow you to choose to use certain features for which we partner with other entities. These websites and features, which may include social networking and geo-location tools, operate independently from Mastercard, and are clearly identified as such. They may have their own privacy notices or policies, which we strongly suggest you review. To the extent any linked websites or features you visit or use are not owned or controlled by Mastercard, we are not responsible for their content, any use of the websites, or the privacy practices of the websites.
Mastercard offers you the possibility to share, link to, or mention things on social media about Mastercard’s products and services. For example, you may "like" an offer via your Facebook account, or "tweet" an offer using Twitter. You may also choose to use certain features on our websites that can be accessed through, or for which we partner with, other entities that are not otherwise affiliated with Mastercard. These features, including geo-location tools, are operated by third parties and are clearly identified as such. Social media providers such as Facebook and Twitter, and these other third parties, are independent from Mastercard and do not necessarily share the same policy as Mastercard regarding the protection of privacy. Please verify their privacy notices if you decide to use their services. Mastercard cannot be held liable for any of these social media tools’ and third parties’ websites’ and apps’ content, use or privacy practices.
8. Updates to This Global Privacy Notice
This Privacy Notice may be updated periodically to reflect changes in our privacy practices.Learn more
This Global Privacy Notice may be updated periodically to reflect changes in our Personal Information practices. We will post a prominent notice on relevant websites to notify you of any significant changes to our Global Privacy Notice and indicate at the top of the Notice when it was most recently updated. If we update our Global Privacy Notice, in certain circumstances, we may seek your consent.
9. How to Contact Us
You can e-mail us, and our Data Protection Officer at firstname.lastname@example.org. If you are located in the EEA or Switzerland, Mastercard Europe SA is the data controller and you may submit your request to exercise your rights to your Personal Information portably submitting your request to email@example.com.Learn more
If you have any questions, comments or complaints about this Global Privacy Notice and our privacy practices, or would like to update your privacy preferences, please email us at: firstname.lastname@example.org or write to us at:
Global Privacy Office
Mastercard International Incorporated
2000 Purchase Street
Purchase, New York 10577
If you are located in the EEA or Switzerland, Mastercard Europe SA is the entity responsible for the processing of your Personal Information. You may submit your request to exercise your rights to your Personal Information by emailing us at: email@example.com, or write to us at:
Data Protection Officer
Mastercard Europe SA
Chaussée de Tervuren 198A
For enquiries about your Mastercard card and your purchase, you should contact your financial institution or merchant. More information about how to contact them can be found on their respective websites.
Bacs, Bacstel, Bacstel-IP, Direct Debit, ADDACS, AWACS, AUDDIS and AUDD are all registered trademarks of BACS Payment Schemes Limited. LINK LINK is a registered trademark of the LINK Scheme. Use of other trademarks is hereby acknowledged.
If you use this website, you accept this use licence.
Vocalink is pleased to grant you, as a user of this website, a nonexclusive, nontransferable, revocable, limited license to access and use this website and any materials which are Vocalink owned and made available on the website ("materials")in accordance with this use licence. Vocalink may terminate this license at any time for any reason and, in any such case, any materials may be deleted without notice to you.
The copyright, which exists in the design, appearance and content of this site, belongs exclusively to Vocalink Limited or another of the Vocalink group of companies unless specifically stated otherwise. No part of the design, appearance and content of this site shall be reproduced in any material or electronic form except in accordance with the provisions of the Copyright, Design and Patents Act 1988. Notwithstanding the above, you may print or download a copy of all or part of the site to a computer for your personal use and nothing in these terms shall prevent you from hyper-linking to the Vocalink home page or deep-linking to any content on the Vocalink website. All other usage is expressly prohibited without the prior written consent of the copyright owner. © 2018 Vocalink Limited, 1 Angel Lane, London, EC4R 3AB. All rights reserved.
You may print off one copy, and may download extracts, of any page(s) from our site for your personal use and you may draw the attention of others within your organisation to content posted on our site. You must not modify the paper or digital copies of any materials you have printed off or downloaded in any way, and you must not use any illustrations, photographs, video or audio sequences or any graphics separately from any accompanying text. Our status (and that of any identified contributors) as the authors of content on our site must always be acknowledged.
You must not use any part of the content on our site for commercial purposes without our express consent in writing.
Vocalink may at any time revise these terms and conditions by updating this posting. You are bound by any such revisions and should therefore periodically visit this page to review these current terms and conditions to which you are bound.
The information available from this website is provided on an "as seen" basis and no guarantee is given in respect of the information's accuracy or suitability for any use. Accordingly Vocalink accepts no liability for any direct or indirect loss caused to a person who acts or refrains from action as a consequence of obtaining the information and putting it to use. The supply of brochures and promotional materials are subject to availability.
The Vocalink group companies include, among others: Vocalink Limited (Company No. 06119048, VAT No. 907 9619 87) which is registered in England and Wales at registered office 1 Angel Lane, London, EC4R 3AB, United Kingdom, Voca Limited (Company No 1023742, VAT No. 907 9619 87) which is registered in England and Wales at registered office Drake House, Three Rivers Court, Homestead Road, Rickmansworth, Hertfordshire, WD3 1FX, United Kingdom, LINK Interchange Network Limited (Company No. 03565766, VAT No. 907 9619 87) which is registered in England and Wales at registered office Drake House, Three Rivers Court, Homestead Road, Rickmansworth, Hertfordshire, WD3 1FX, United Kingdom and Vocalink Holdings Limited (Company No. 06119036, VAT No. 907 9619 87) which is registered in England and Wales at registered office 1 Angel Lane, London, EC4R 3AB, United Kingdom.