TrueFiat is an exchange service that claims to handle swaps between cryptocurrencies, stablecoins, e-payment systems, bank transfers, and cash. The site runs on Nuxt (a single-page app), comes in two language versions — English and Russian — and has a personal account area, a referral program, a partner API for monitoring sites, and a separate offer for merchants (accepting payments).
The list is wide and clearly aimed at the Russian-speaking market and CIS/Europe:
The terms are set up as a public offer: under clause 1.5, the agreement counts as accepted the moment you submit an order, and under clause 5.13 it's additionally confirmed with the "I have read and agree to the terms" button. The document consists of a "Parties to the Agreement" section and sections 1–8, plus a separate KYC/AML policy.
On its own, this is a decent set of documents for an exchanger: there's the subject of the agreement, the parties' obligations, exchange procedures, liability, force majeure, and two AML policies. But the quality and balance of these documents is exactly where the service raises the most questions.
| Clause | What it says | What it means in practice |
|---|---|---|
| Clause 5.14 | Funds that arrive without a prior order become the property of the service if no one contacts the administration within a month. | The most controversial clause in the whole block. Basically, it means "stuck" transfers become the service's property once the deadline passes. Other exchangers use this as protection against "junk" transfers, but it looks harsh: a client who, for whatever reason, doesn't write in within a month may lose the right to their money. |
| Clause 5.4 | If the amount doesn't match, the exchange is put on hold and an extra fee of +5% of the amount applies (minimum 5 USD). | An extra charge for the tiniest mismatch — say, when the bank took a transfer fee along the way. The $5 minimum means it can really sting on smaller amounts. |
| Clause 5.6 | A refund is processed within two days, with 5% of the exchange amount withheld. | Refunds are almost never free, but 5% is the top end of "normal" for the market. |
| KYC/AML policy | If you refuse verification, a refund is possible within three business days, and a fee of up to 5% plus network fees may be withheld. | Combined with clause 5.6, the total "penalty" for a failed transaction can reach 5–10% of the amount. Worth keeping in mind. |
| Clause 6.1 | If funds are sent to the wrong account, the transaction cannot be canceled and the money is not returned. | The risk is entirely on the client. A mistake in the details = lost money. All the more reason to double-check the payment details. |
| Clause 5.3 | The exchange cannot be canceled once it has started. | Once you've sent the funds, there's no "undo" — only a refund under clause 5.6. |
| Clause 4.3.4 | The service may refuse to serve a user without giving any reason. | Classic one-sided right. On its own it's typical for the market, but combined with the lack of a legal entity and any time commitments, it tips the balance even further toward the operator. |
| Clause 4.3.3 | The right to set discounts and change the fee amount. | Add clause 6.6 (the right to change the agreement at any time from the date of publication), and the terms can change right after you've placed your order. |
| Clause 6.6 | The administration may change the agreement at any time; changes take effect from the moment of publication. | It's a one-sided deal: it makes sense to screenshot the current version of the terms on the day of your exchange. |
| Clause 2.5 | The user guarantees they are not a US citizen or US tax resident. | The standard US market cutoff (crypto exchange is a regulated activity there). Not a problem in itself, but it confirms the service operates outside the US licensing framework. |
| Clauses 2.3–2.4, 2.6 | Confirmation of the legality of funds (KYT), no ties to money laundering or sanctioned countries, and the right to refuse users from countries under UN Security Council sanctions. | A standard AML package, nothing out of the ordinary. |
| Clauses 5.7, 5.10, 5.11 | Blocking for changing payment details or using someone else's account; for Wise/Revolut, the ID must be linked to the user's phone; payment delays must be agreed within an hour. | Technical requirements, but clause 5.7 is a real risk for anyone used to paying with someone else's card: you can get blocked, and by then your money is already with the service. |
Here's the picture: the service works, has a clear set of exchange directions, a public offer, and an AML policy. There's no evidence of bad faith, no complaints, and it's never landed on any blacklists.
But there's very little transparency: no legal entity, jurisdiction, license, or address; hidden WHOIS; reserves that look like window dressing; an "About" page describing someone else's brand; and several contract clauses clearly tilted in the operator's favor ("stuck" funds becoming the service's property under clause 5.14, 5% withholdings under clause 5.6 and in the KYC/AML policy, refusal without explanation under clause 4.3.4, one-sided changes under clause 6.6).
What would improve the assessment: disclosing the legal entity and jurisdiction, fixing the "About the service" page, real client reviews showing up, and a few months of clean history on independent monitoring services.
The service doesn't look outright scammy and it does work, but all things considered — no legal entity, zero public reputation, questionable contract clauses, and sloppy texts — you should treat it with caution and not send large sums there without checking it out first.
url
| domain | explore | registered | registrar | abuse email | score | average | |
|---|---|---|---|---|---|---|---|
| truefiat.pro | Aug. 3, 2025 | Dynadot Inc | [email protected] | 40/100 | 40.0 | ||
| Blacklist: NoCoin Hexxium QuidsUp URLhaus FadeMind MetaMask Phishunt Badd-Boyz BlackBook CoinMiner OpenPhish ThreatFox TweetFeed PhishRadar Scam Block Abuse Block Phishing DB ScamSniffer PhishDestroy Malware Block Phishing Army Toxic Domains Filters Heroes GlobalAntiScam Phishing Block Pi-hole Trojan Scam Blocklist Fraud Blocklist Pi-hole Malware Crypto Blocklist Pi-hole Phishing Ransomware Block CyberHost Malware Pi-hole Malicious Pi-hole C2 Servers Thread Intelligence PhishDestroy Community | |||||||
source
https://web.archive.org/web/20261002090419/https://www.truefiat.pro/en/about-us/
https://web.archive.org/web/20260804210628/https://www.truefiat.pro/en/rules/aml-kyc-policy/
https://web.archive.org/web/20261001122609/https://www.truefiat.pro/en/rules/AML Policy/
https://web.archive.org/web/20261001123227/https://www.truefiat.pro/en/rules/Regulations for the Exchange of Electronic Money/
https://web.archive.org/web/20261001123011/https://www.truefiat.pro/en/rules/Warranties and Liabilities of the Parties/
https://web.archive.org/web/20261002092227/https://www.truefiat.pro/en/rules/Services Provided/
Trust Rating
related to the category