Skip to main content

Legal

Privacy Policy

How your personal data is handled across the Digital Identity Platform.

Demo prototype — this policy text is illustrative placeholder content for design review, not legal advice.

Last updated: January 2026

Our approach

The Digital Identity Platform is built on privacy by default. Connected services receive only the minimum attributes needed for the transaction you requested.

Your identity data stays under the control of the Government of Sint Maarten and is never sold or used for advertising.

What we process

Identity attributes verified against the Civil Registry, such as your name, date of birth and national identifier.

Contact details you provide for notifications and account recovery.

Authentication and signature events, kept as an audit trail for security and accountability.

Attribute sharing and consent

Before a connected service receives your attributes, you see which fields are requested and why, and you can decline.

Consent decisions are recorded so you can review which services you authorised.

Retention

Identity records are retained for as long as your eID is active, in line with national records legislation.

Audit logs are retained for a fixed statutory period and then securely destroyed.

Security

Signing and authentication keys are protected by PKI and hardware security modules.

Multi-factor authentication is required before any sensitive action, and all access is logged and monitored.

Your rights

You may request access to your data, ask for corrections to inaccurate details, and object to specific processing.

Corrections to Civil Registry data are handled by the Civil Registry through the Public Service Centers.