Privacy Policy

Last updated: May 7, 2026

SkinID is a Swiss authentication platform that enables individuals to use a subdermal NFC cryptographic implant as a universal authenticator across digital and physical environments. We take your privacy seriously. This policy explains what data we collect, how we protect it, and your rights.

1. Data we collect

During the pre-launch phase (Insider, Pioneer, Pioneer Plus signups):

Your email address, your queue position, and your referral activity. For Pioneer Plus, your shipping address.

During product use (after launch):

2. Data we do NOT collect

3. Data processors

To deliver our service, we work with the following trusted partners under data processing agreements:

All processors are bound by contract to protect your data and may not use it for their own purposes. We do not transfer your data outside of Switzerland for storage.

4. How your data is protected

5. Data storage and jurisdiction

Your data is stored on a secured server hosted by Infomaniak in Switzerland. Switzerland provides strong data protection under the revised Federal Act on Data Protection (FADP) and is recognised internationally for its privacy standards. SkinID is a Swiss product, subject to Swiss data protection law. We do not transfer data outside of Switzerland.

6. Legal basis

We process your data on the basis of:

7. Retention periods

8. Your rights

9. For users in the European Union

If you are located in the European Union or European Economic Area, the General Data Protection Regulation (GDPR) applies to our processing of your personal data in addition to Swiss law. Under the GDPR, you have the following additional rights:

SkinID does not use automated decision-making or profiling. We do not use your data for marketing purposes. We do not share data with third parties for their own use.

10. Browser extensions and apps

The SkinID browser extension (Chrome) and native apps (Mac, Windows, iPhone) only activate on pages with login forms or when you initiate authentication. They communicate exclusively with the SkinID server over HTTPS. They do not collect browsing history, read page content beyond login form detection, or transmit data to any third party. The iPhone app uses Core NFC to read your implant. No data is sent to Apple.

11. The NFC implant

The SkinID implant uses a DESFire EV3 NFC cryptographic chip with AES-128 mutual authentication, encased in biocompatible glass (Schott 8625). It communicates via standard ISO 14443 protocol. The read operation is entirely passive and does not write to or modify the implant's storage beyond reading the cryptographic UID. The implant contains no battery and is powered passively by the NFC field. MRI compatibility may vary by chip generation: always inform your radiologist of the implant before any MRI examination.

12. Changes to this policy

We may update this policy as SkinID evolves. The “last updated” date at the top will reflect any changes. Continued use of SkinID after changes constitutes acceptance of the updated policy.

13. Contact and complaints

For privacy-related questions: support@skinid.ch

If you believe your data protection rights have not been respected, you have the right to lodge a complaint with the Federal Data Protection and Information Commissioner (FDPIC): www.edoeb.admin.ch