Privacy Policy
How Hollywood Vault collects, uses, and protects your personal and financial information.
Last Updated: January 2026
1. Introduction
Hollywood Vault, Inc. ("Hollywood Vault," "we," "us," or "our") is a financial technology company offering premium credit card products and related banking services. We are committed to protecting the privacy and security of your personal and financial information. This Privacy Policy explains what information we collect, how we use it, the choices you have, and the safeguards we have in place to protect your data.
This Privacy Policy applies to all Hollywood Vault credit card products—including the Gold, Platinum, Diamond, and Black Diamond cards—as well as our website, mobile application, and related services (collectively, the "Services"). By applying for or using any of our Services, you acknowledge that you have read, understood, and agreed to the practices described in this policy.
Hollywood Vault is headquartered at 6801 Hollywood Boulevard, Los Angeles, California 90028. We are a financial institution subject to federal and state privacy laws, including the Gramm-Leach-Bliley Act (GLBA), the California Consumer Privacy Act (CCPA), and the European Union General Data Protection Regulation (GDPR) where applicable.
2. Information We Collect
We collect information that you provide directly to us, information we collect automatically when you use our Services, and information we obtain from third parties. The categories of information we collect include:
Personal Information
- Full legal name, date of birth, and Social Security Number (SSN) or Individual Taxpayer Identification Number (ITIN)
- Residential address, mailing address, and contact details (email, phone)
- Government-issued identification (driver's license, passport, or state ID)
- Employment information, income, and financial assets
Financial Information
- Credit history, credit score, and credit report data obtained from consumer reporting agencies
- Bank account numbers, routing numbers, and payment instrument details
- Transaction history, purchase amounts, merchant categories, and payment locations
- Account balances, credit utilization, payment history, and reward point balances
Device & Usage Information
- IP address, device type, operating system, and browser type
- Geolocation data derived from your IP address or device GPS (with consent)
- Pages visited, click patterns, session duration, and referral URLs
- Mobile app usage data, push notification preferences, and device identifiers
Information from Third Parties
We may receive information about you from consumer reporting agencies (such as Equifax, Experian, and TransUnion), identity verification services, fraud prevention databases, co-branded partners, and payment networks (including Visa and Mastercard). This information is used to evaluate your application, service your account, detect and prevent fraud, and comply with legal obligations.
3. How We Use Your Information
We use the information we collect for the following business and commercial purposes:
- Processing and evaluating your credit card application, including creditworthiness assessments and identity verification
- Servicing and administering your credit card account, including billing, payments, statements, and reward redemptions
- Detecting, preventing, and investigating fraud, unauthorized transactions, money laundering, and other financial crimes
- Communicating with you about your account, policy changes, security alerts, and promotional offers (where permitted by law)
- Personalizing your experience, including tailored rewards, merchant offers, and spending insights
- Conducting analytics, research, and product development to improve our Services
- Complying with legal, regulatory, and contractual obligations, including tax reporting and law enforcement requests
- Servicing and collecting on your account, including through third-party collection agencies if necessary
4. Legal Basis for Processing
For residents of jurisdictions governed by the GDPR, we process your personal data under the following legal bases:
- Performance of a contract: processing necessary to issue and service your credit card account
- Legal obligation: processing required to comply with banking, anti-money laundering (AML), and tax regulations
- Legitimate interests: processing for fraud prevention, network security, and product improvement, balanced against your privacy rights
- Consent: processing for optional activities such as marketing communications and certain analytics, which you may withdraw at any time
6. Data Retention
We retain your personal and financial information for as long as your account is active or as necessary to provide our Services. We also retain information after account closure for the periods required by law, including:
- Transaction records: 7 years (per federal banking regulations)
- Identity verification records: 5 years after account closure
- Tax-related documents: 7 years
- Fraud investigation records: up to 10 years
- Marketing consent records: until you withdraw consent, plus 3 years
When information is no longer needed, we securely delete or anonymize it in accordance with our data retention schedule.
7. Data Security
We employ industry-standard physical, technical, and administrative safeguards to protect your personal and financial information. Our security measures include:
Encryption
256-bit AES encryption for data at rest and TLS 1.3 for data in transit across all systems.
Access Controls
Role-based access, multi-factor authentication, and least-privilege principles for all internal systems.
Continuous Monitoring
24/7 security operations, real-time fraud detection, and automated anomaly detection on all transactions.
Compliance & Audits
Annual SOC 2 Type II audits, PCI DSS Level 1 certification, and regular penetration testing.
Despite our efforts, no security system is impenetrable. In the event of a data breach affecting your information, we will notify you and the appropriate authorities in accordance with applicable law.
8. Your Privacy Rights
Depending on your jurisdiction, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you
- Correction: Request that we correct inaccurate or incomplete information
- Deletion: Request that we delete your personal information (subject to legal retention requirements)
- Portability: Receive your data in a structured, machine-readable format
- Opt-out of sale: Direct us not to sell or share your personal information (we do not sell your data)
- Limit processing: Restrict or object to certain processing of your data
- Withdraw consent: Withdraw consent for processing based on consent at any time
To exercise any of these rights, contact our Privacy Office using the information in Section 12. We will respond within 30 days (or as required by applicable law).
10. Children's Privacy
Our Services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately, and we will take steps to delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. We will notify you of material changes by posting the updated policy on our website and, where required, by email or account message. The "Last Updated" date at the top of this page indicates when the policy was last revised.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact our Privacy Office:
Hollywood Vault Privacy Office
Email: privacy@hollywoodvault.com
Phone: 1-800-VAULT-PI (1-800-828-5874)
Mail: Hollywood Vault, Inc., Attn: Privacy Office, 6801 Hollywood Boulevard, Los Angeles, CA 90028
Data Protection Officer: dpo@hollywoodvault.com
Questions about your privacy? We're here to help.