Contents of this policy
- Introduction
- The Company Behind These Services
- Information We Collect
- How We Collect Information
- How We Use Your Information
- Legal Bases for Processing
- Sharing and Disclosure
- International Data Transfers
- Data Retention
- Data Security
- Your Privacy Rights
- Privacy for Children
- Cookies and Similar Technologies
- Third-Party Services and Links
- Changes to This Policy
- Contact Information
01.Introduction
KIMYOU ENTERPRISE LIMITED respects the privacy of every visitor to our website and every client, partner and individual who interacts with our services. This policy sets out the principles we follow when handling personal information, the categories of information we may collect, the purposes for which we use it, and the choices available to you.
The enterprise computer systems design, computer integrated systems design and related technical services described on this website are developed and operated by the developer Kimyou, acting for and on behalf of KIMYOU ENTERPRISE LIMITED. Where this policy refers to our services, it refers to the software platforms, integration work, architecture consulting, managed operations and advisory services delivered by our company.
This policy applies to personal information collected through our website at https://www.kimyou.buzz, through email and telephone correspondence, and through the delivery of our professional services. By using our website or engaging our services, you acknowledge that you have read and understood the practices described in this policy.
We review this policy on a regular basis and update it whenever our practices or legal obligations change. The date at the top of the page shows the most recent revision. Material changes will be communicated clearly, and continuing to use our services after such changes constitutes acceptance of the revised policy.
02.The Company Behind These Services
The company responsible for the processing described in this policy is KIMYOU ENTERPRISE LIMITED, a company organised and operating under the laws of Hong Kong. Our registered office address is 4/F, BLK L, 1 LOK SHAN RD, To Kwa Wan, Hong Kong (HK).
For the purpose of applicable privacy and data protection legislation, KIMYOU ENTERPRISE LIMITED acts as a data controller when we determine the purposes and means of processing personal information. In certain client engagements, we may act as a processor on behalf of a client organisation that remains the controller of the information involved.
If you have any question about this policy or about how your personal information is handled, the contact details set out in the final section of this policy are the correct channel for reaching our privacy team. We aim to respond to every request within a reasonable time and usually within one month of receipt.
Because our business is built on trust, the commitments in this policy are more than legal formality. They reflect the standard of care we apply to the data of every person who deals with our company, from a single inquiry through a multi-year operations engagement.
03.Information We Collect
The information we collect depends on how you interact with us. We limit collection to information that is genuinely necessary for the purposes described in this policy, and we do not collect personal information by stealth or for unrelated purposes.
When you visit our website, we may collect technical information automatically, including your internet protocol address, browser type and version, operating system, referring pages, pages viewed, the date and time of each visit, and similar diagnostic data. This information is collected through server logs and standard website technologies.
When you contact us, whether through the website contact form, by email at feedback@kimyou.buzz, or by telephone at +15178588199, we may collect your name, your email address, your telephone number, the subject of your inquiry, the content of your message, and any other information you choose to share with us.
When you engage our services, we may collect business contact details, billing and invoicing information, project requirements, technical configuration data, and correspondence records necessary to plan, deliver and support the work. We collect only the information needed for the engagement and treat sensitive categories of information with additional care.
04.How We Collect Information
We collect personal information in three principal ways: directly from you, automatically from your device, and from legitimate business sources.
Information you provide directly includes the details you submit through the website contact form, the contents of email messages you send to our team, and information you give us during telephone conversations, meetings or project workshops. This category also includes information you provide when responding to our questions or requesting documentation.
Information collected automatically is gathered when you browse our website. Our servers record standard request data, and we may use cookies and similar technologies as described in the dedicated section of this policy to understand how visitors use the site and to improve the experience.
Information from business sources may come from public corporate registries, from colleagues who refer you to us, or from business partners introducing a potential engagement. We only use such information for legitimate business purposes that are consistent with the expectations of the individuals concerned.
05.How We Use Your Information
We use personal information for the following purposes, and we do not use it for any purpose that is incompatible with these descriptions.
First, we use information to respond to inquiries. When you contact us through the website, by email or by telephone, we use your contact details and message content to understand your requirement, prepare a response, and discuss whether our services are a good fit for your needs.
Second, we use information to deliver and manage services. This includes planning projects, preparing statements of work and contracts, building and integrating systems, providing support and managed operations, and issuing invoices and handling payments for work performed.
Third, we use information to maintain and improve our website and services. Analysis of aggregated usage patterns helps us identify faults, improve navigation, and invest in the capabilities that matter to the enterprises we serve.
Fourth, we use information to meet legal and regulatory obligations, including accounting and tax obligations, compliance with applicable laws, and the defence of our legal rights where necessary.
Finally, we may use information to communicate service-related notices, including updates to this policy, security notifications affecting systems we operate, and administrative messages that are necessary for the proper running of a professional relationship.
06.Legal Bases for Processing
We process personal information only where we have a lawful basis to do so. The basis we rely on depends on the purpose of the processing and the nature of our relationship with you.
For most interactions, we rely on legitimate interest. It is in our legitimate interest, and in the interest of the enterprises we serve, to respond to inquiries, deliver contracted services, maintain secure and reliable systems, and grow our business in a responsible manner. We balance this interest against your rights and freedoms and stop processing where your interests override ours.
Where we enter into a contract with a client, we process the information necessary to perform that contract, including project management records, invoicing data and correspondence related to the engagement. Failing to provide such information would make it impossible for us to deliver the agreed services.
Where we are required to comply with a legal obligation, such as accounting or tax records, we process the information required by that obligation and retain it for the periods those laws demand.
Where consent is required by law, we obtain your consent before processing and honour your right to withdraw that consent at any time, without affecting the lawfulness of processing that already took place.
07.Sharing and Disclosure
We do not sell, rent or trade personal information. We share personal information only in the limited circumstances described below, and each recipient is bound by confidentiality and lawful use obligations.
We share information with service providers who support our business, including email and communication platforms, project management tools, hosting and infrastructure providers, payment processors, and professional advisers. These providers receive only the information necessary to perform their role and may not use it for their own purposes.
Where a client engages us to build or operate systems, we may process information on behalf of that client as a processor. In such cases, the client remains the controller, our use is governed by the client agreement, and we follow the client instructions as documented.
We may disclose information where required by law, regulation or court order, or where we reasonably believe disclosure is necessary to protect our rights, the safety of any person, or to detect and prevent fraud or security incidents.
In the event of a reorganisation, merger, acquisition or sale of assets, personal information may be transferred to a successor entity. We will require the successor to observe the commitments in this policy or provide notice of any different arrangements.
08.International Data Transfers
KIMYOU ENTERPRISE LIMITED operates from Hong Kong and serves clients in multiple regions. Personal information may therefore be stored, processed and accessed in locations other than the place where it was originally collected.
When information is transferred across borders, we take steps to protect it with a level of care equivalent to the level applied in the location of collection. This may include standard contractual protections, data processing agreements, and technical safeguards such as encryption.
We evaluate the security, confidentiality and legal environment of any destination before relying on it for the handling of personal information. Where a client has specific transfer requirements under their own regulatory framework, we work with them to put appropriate arrangements in place.
You should be aware that any information you provide to us, including information submitted through our website, may be transmitted to and stored on infrastructure operated in locations that may not have data protection laws equivalent to those of your home jurisdiction.
09.Data Retention
We retain personal information only for as long as it is needed for the purposes for which it was collected, or as long as required by law.
Inquiries and correspondence are retained for a limited period, generally no longer than two years after the last contact, unless a project engagement begins. Website technical logs are retained for a short operational period, typically up to twelve months, and are used only for security and performance purposes.
Client engagement records, including contracts, invoices, project documentation and correspondence, are retained for the period required by our accounting and tax obligations and by the terms of the client agreement, and in no case longer than reasonably necessary to protect our legitimate business interests.
When personal information is no longer required, we delete it in a secure manner or anonymise it so that it can no longer be associated with an identifiable person. Retention periods are reviewed regularly against our policies and applicable law.
10.Data Security
We apply organisational and technical measures appropriate to the sensitivity of the information we hold. Security is treated as a governance discipline rather than a one-time project, and our controls are reviewed and tested on a continuing basis.
Technical controls include encryption of data in transit and at rest where appropriate, access controls that limit information to personnel who need it for their role, monitoring of systems for suspicious activity, and secure configuration of the infrastructure we operate.
Organisational controls include confidentiality obligations for all staff, training on information handling, defined incident response procedures, and oversight of any third party given access to information on our behalf.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. In the event of a security incident affecting personal information, we will take reasonable steps to contain the impact, investigate the cause, and notify affected individuals and relevant authorities where required by law.
11.Your Privacy Rights
Depending on the jurisdiction in which you reside, you may have rights over the personal information we hold about you. We honour these rights to the extent required by applicable law and respond to every verified request.
You may have the right to access the personal information we hold about you and to receive a copy of it. You may have the right to request correction of inaccurate or incomplete information. You may have the right to request deletion of information where it is no longer necessary or where you object to its processing.
You may have the right to object to processing based on legitimate interest, to request restriction of processing in certain circumstances, and to receive the information you provided in a structured, machine-readable format where applicable.
To exercise any of these rights, contact us using the details in the final section of this policy. We may ask you to verify your identity before acting on a request, and we will respond within the timeframes required by law. You also have the right to lodge a complaint with a relevant supervisory authority if you believe our handling of your information is not lawful.
12.Privacy for Children
Our website and services are directed at business enterprises and professionals, and they are not designed for or directed at children. We do not knowingly collect personal information from children.
If you are a parent or guardian and you believe that a child under the applicable age of consent has provided personal information to us, please contact us using the details at the end of this policy. We will take reasonable steps to delete the information from our records and to prevent any further collection from the child.
We encourage parents and guardians to supervise their children online and to remind them never to provide personal information to websites without permission. Protecting the privacy of young people is a responsibility we take seriously.
13.Cookies and Similar Technologies
Our website uses cookies and similar technologies to support basic functionality and to understand how the site is used. A cookie is a small text file stored on your device by your browser.
We use essential cookies where necessary to operate the site, and we may use analytical technologies that collect aggregated, non-identifying data about visits, such as which pages are viewed and how visitors arrive. We do not use advertising cookies on this website.
You can control cookies through your browser settings, including blocking or deleting them. If you disable cookies, the website will continue to function for its core purpose, although some convenience features may be affected.
Because our website is a corporate site rather than a consumer service, the amount of tracking we employ is minimal. We prefer simple, honest operation over elaborate data collection, and we review our use of such technologies whenever this policy is updated.
14.Third-Party Services and Links
Our website may contain links to external websites, including client sites, professional resources and partner platforms. This policy applies only to information collected on our own website and through our direct communications.
When you follow a link to a third-party website, you leave the control of KIMYOU ENTERPRISE LIMITED, and the privacy practices of that website apply instead. We encourage you to read the privacy policy of every website you visit before providing any personal information.
Third-party service providers that support our operations, such as email and hosting providers, may process information on our behalf. Their use is governed by our agreements with them and by the commitments described in this policy.
We do not accept responsibility for the content or privacy practices of any external website, and references to third parties do not imply an endorsement of their information handling by our company.
15.Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, in technology, or in legal requirements. When we make material changes, we will update the effective date at the top of this page and take reasonable steps to bring the change to your attention.
Changes become effective when the revised policy is posted on this website, unless a different date is stated. Continued use of our website or services after a revision indicates your acceptance of the updated terms.
We encourage you to review this policy periodically so that you remain informed about how we protect the information you entrust to us. The version that applies to any particular engagement is the version in effect on the date the engagement begins, unless we agree otherwise in writing.
16.Contact Information
If you have any question about this Privacy Policy, about the personal information we hold about you, or about exercising any of your rights, please contact us using the details below.
4/F, BLK L
1 LOK SHAN RD
To Kwa Wan, Hong Kong (HK)
Email: feedback@kimyou.buzz
Telephone: +15178588199
Please describe your request clearly so that we can respond accurately and quickly. We will confirm receipt, verify your identity where necessary, and reply within the timeframes required by applicable law.