Skip to main content
Ninth Wave logo

Ninth Wave

GDPR evidence

Ninth Wave's open finance software solutions deliver secure data exchange through a single point of

ninth-wave.comFinance and accountingLast verified 17 Sep 2026
GDPR mark, CertReports state No public evidenceNo public evidence

Ninth Wave and GDPR

CertReports found no public GDPR evidence for Ninth Wave as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

ExpiredInactive
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
10 Nov 2020
Scope
Information you provide. When you connect your financial accounts with a financial application client of Ninth Wave or otherwise connect your financial accounts through Ninth Wave, where applicable, we collect and transmit to the financial application identifiers and login information required by the financial institution of your account, such as your username and password, or a security token. In some cases, we also collect and transmit to the financial application your phone number, email address, security questions and answers, and one-time password (OTP) to help verify your identity before connecting your financial accounts. For certain financial applications and where the End User has expressed consent, we may also store such information, subject to this Policy. When providing this information, you give the financial application and Ninth Wave the authority to act on your behalf to access and transmit your End User Information from the relevant financial institution or other entity that provides your financial accounts. You may also provide us with identifiers and other information, including your name, email address, and phone number. Information we collect from your financial accounts. The information we receive from the financial institutions that maintain your financial accounts varies depending on the specific Ninth Wave product, as well as the information made available by those financial institutions. But, in general, we process and transmit the following types of identifiers, commercial information, and other personal information from your financial product and service providers: • Account information, including financial institution name, account name, account type, account ownership, branch number, IBAN, BIC, and account and routing numbers; • Information about account balances, including current and available balance; • Information about credit accounts, including due dates, balances owed, payment amounts and dates, and transaction history; • Information about investment accounts, including transaction information (such as the amount, date, payee, type, quantity, price, location, and involved securities, and description of the transaction), type of assets, identifying details about the assets, quantities, prices, fees; and • Identifiers and information about the account owner(s), including name, email address, phone number, date of birth, and address information. The data from your financial accounts includes information from all your accounts accessible through a single set of account credentials. How We Use Your Information We use your End User Information for a number of business and commercial purposes, including to operate, improve, and protect the services we provide, and to develop new services. More specifically, we use your End User Information: • To operate, provide, and maintain our services; • To improve, enhance, modify, add to, and further develop our services; • To protect you, financial applications, our partners, Ninth Wave, and others from fraud, malicious activity, and other privacy and security-related concerns; • To develop new services; • To provide customer support to you or the financial application you use, including to help respond to your inquiries related to our service or the financial applications; • To investigate any misuse of our service, including criminal activity or other unauthorized access to our services; and For other notified purposes with your consent.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026Ninth Wave, Inc.: Inactive
Live pagesha256 c6bd578d65
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is Ninth Wave GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Change history

  1. 18 Sep 2026First indexed by CertReports1 evidence row across 1 framework entered the index.

Alternatives with GDPR evidence

Similar vendors (shared product tags or the Finance and accounting category) whose GDPR row is verified or vendor-stated, ranked by similarity.