Can you confirm how you store (long term) and bank account information (identifiers) e.g do you hash the value and store the hash?
The reason I ask is that the privacy policy says you will delete data after services are no longer used, but the referral programme refers to someone not connecting an account used by a previous member. Just wondered how you are matching this up while adhering to your privacy policy?
PS: For the avoidance of doubt, I’m not trying to cheat the system, I just noticed it when looking at the referrals page