Privacy Policy

How PrimeHyperIQ collects, uses, and protects your data

Last Updated: January 15, 2025

We built PrimeHyperIQ to help businesses improve their financial workflows. That means we handle sensitive business information, and we take that responsibility seriously.

This policy explains what data we collect, why we need it, how we use it, and what rights you have. We've tried to write this in plain language rather than legal jargon because we think you deserve to actually understand what happens with your information.

Information We Collect

When you work with us, we collect different types of information depending on how you use our services. Here's what that looks like in practice.

Information You Give Us Directly

When you sign up or use our platform, you provide us with basic business details. This includes your company name, contact information, and the specific services you're interested in. If you're setting up payment processing, we'll need relevant banking or financial account details.

Information We Collect Automatically

Our systems track how you interact with our platform so we can improve the experience and fix problems. This includes things like which features you use most, when you log in, what browser you're using, and your IP address.

Data Type What We Collect Why We Need It
Account Information Name, email, company details, phone number To create and manage your account, communicate with you
Financial Data Transaction records, payment information, account numbers To process payments and optimize your workflows
Usage Information Login times, feature usage, click patterns To improve our platform and troubleshoot issues
Technical Data IP address, browser type, device information For security monitoring and platform optimization
Communication Records Support tickets, emails, chat logs To provide support and improve our service

Important: We only collect data that helps us provide or improve our services. We don't collect information just because we can, and we don't sell your data to third parties.

How We Use Your Information

Everything we collect serves a specific purpose. We don't use your data for random marketing experiments or unrelated business ventures.

  • Operating and maintaining your account and providing the services you requested
  • Processing transactions and managing your financial workflows
  • Communicating with you about your account, service updates, or support issues
  • Improving our platform based on how people actually use it
  • Detecting and preventing fraud, security threats, or technical problems
  • Complying with legal requirements and responding to lawful requests from authorities
  • Analyzing usage patterns to develop new features that might help you

When we say we use data to "improve our platform," here's what that actually means: we look at which features get used frequently and which ones cause confusion. We track error messages to fix bugs. We monitor performance to keep things running smoothly. That's it.

Legal Basis for Processing (Taiwan Context)

Taiwan's Personal Data Protection Act requires us to have a lawful reason for processing your information. Here's where we stand on that.

  • Contractual Necessity: We need certain data to provide the services you signed up for. Without your account information and financial data, we literally can't do what you hired us to do.
  • Legitimate Interest: We have valid business reasons to process some data, like preventing fraud or improving security. These reasons are balanced against your privacy rights.
  • Legal Obligation: Taiwan law requires us to maintain certain records for tax purposes and regulatory compliance. We're not thrilled about it either, but that's the deal.
  • Your Consent: For anything optional, like marketing communications or non-essential features, we ask for your explicit permission first.

Data Sharing and Disclosure

We don't sell your data. Full stop. But we do share information with specific partners and service providers when necessary.

Service Providers

We work with third-party companies that help us operate our platform. This includes cloud hosting providers, payment processors, and security services. These companies only get access to the data they need to do their specific jobs, and they're contractually required to protect it.

Legal Requirements

If Taiwan authorities issue a lawful request for information, we have to comply. We'll notify you when possible unless legally prohibited from doing so. We also might disclose information if necessary to prevent fraud or protect someone's safety.

Business Transfers

If PrimeHyperIQ gets acquired or merges with another company, your data would be part of that transaction. The new owners would still be bound by this privacy policy unless they get your consent for changes.

We review all our service providers annually to make sure they're maintaining appropriate security standards. If a provider fails that review, we find a replacement.

Data Security Measures

Security isn't just a checkbox for us. We've implemented multiple layers of protection because financial data requires serious safeguards.

  • All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption
  • Access to client data is restricted to employees who genuinely need it for their work
  • Our systems are monitored around the clock for suspicious activity or unauthorized access attempts
  • We conduct regular security audits and penetration testing by independent third parties
  • Employee access is logged and reviewed, with multi-factor authentication required for all accounts
  • Our infrastructure is hosted in secure, certified data centers with physical security controls
  • We maintain incident response procedures and can act quickly if something goes wrong

That said, no system is completely invulnerable. We do everything reasonably possible to protect your data, but we can't guarantee absolute security. If we experience a data breach that affects your information, we'll notify you promptly and explain what happened, what data was involved, and what steps we're taking.

Your Privacy Rights

You have significant control over your data. These aren't just theoretical rights—we've built systems to actually make them work in practice.

Access Your Data

You can request a copy of all personal data we hold about you. We'll provide it in a readable format within 30 days.

Correct Information

If something we have is wrong or outdated, you can update it yourself through your account settings or ask us to fix it.

Delete Your Data

You can request deletion of your personal data. We'll comply unless we have a legal obligation to keep certain records.

Restrict Processing

You can ask us to limit how we use your data in certain situations, like if you're disputing the accuracy of information.

Data Portability

You can get your data in a machine-readable format to transfer it to another service provider if you want.

Object to Processing

You can object to how we process your data for certain purposes, particularly marketing activities.

To exercise any of these rights, contact us using the information at the bottom of this page. We'll respond within 30 days. If your request is complex or you've made multiple requests, we might need an extra 60 days, but we'll let you know if that's the case.

Data Retention and Deletion

We don't keep your data forever. Different types of information have different retention periods based on legal requirements and business needs.

  • Account Information: Retained while your account is active, plus seven years after closure for tax and legal compliance
  • Transaction Records: Kept for seven years as required by Taiwan financial regulations
  • Communication Logs: Maintained for three years to support ongoing service improvements and dispute resolution
  • Usage Data: Aggregated and anonymized after 18 months, then kept indefinitely for analytics
  • Marketing Preferences: Retained until you unsubscribe, then deleted within 30 days

When you close your account, we start a deletion process. Some data gets wiped immediately. Other information goes into a 90-day grace period in case you change your mind. After that, everything except legally required records is permanently deleted.

If you want your data deleted sooner than our standard retention periods allow, contact us. We'll delete everything except what we're legally required to keep, and we'll explain exactly what has to stay and why.

International Data Transfers

Some of our service providers operate outside Taiwan, which means your data might be processed in other countries. This is common for cloud-based services, but it does create some considerations.

When we transfer data internationally, we use approved mechanisms like standard contractual clauses that require recipients to maintain appropriate protections. We only work with providers in countries with adequate data protection laws or those who contractually agree to meet Taiwan's standards.

Our primary data processing happens in Taiwan and we try to minimize international transfers when possible. But modern infrastructure sometimes requires using services hosted elsewhere, particularly for things like content delivery networks or backup systems.

Cookies and Tracking

We use cookies and similar technologies to keep our platform functioning and to understand how it's being used. Here's what that means in practical terms.

Essential Cookies

These are necessary for basic functionality. They remember that you're logged in, maintain your session, and keep your preferences. Without these, the platform wouldn't work.

Analytics Cookies

We use these to track which features get used and how people navigate the platform. This helps us find problems and make improvements. You can opt out of analytics tracking in your account settings.

What We Don't Do

We don't use advertising cookies or track you across other websites. We're not interested in building profiles of your browsing behavior outside our platform.

Changes to This Policy

We update this policy when our practices change or when laws require it. When we make significant changes, we'll notify you by email and give you a chance to review the updates before they take effect.

Minor updates—like clarifying existing practices or fixing typos—might not warrant an email, but we'll always update the "Last Updated" date at the top. If you're concerned about privacy, it's worth checking this page occasionally.

If you disagree with changes to this policy, you have the right to close your account. We'd rather you stay, obviously, but we won't hold your data hostage.

Children's Privacy

Our services are designed for businesses, not children. We don't knowingly collect information from anyone under 18. If we discover we've accidentally collected data from a minor, we'll delete it immediately.

If you're a parent or guardian and believe your child has provided us with personal information, please contact us right away.

Questions About Your Privacy?

If something in this policy is unclear, if you want to exercise your privacy rights, or if you have concerns about how we handle data, we want to hear from you. Seriously.

Address
No. 562, Huarong Road
Gushan District, Kaohsiung City
Taiwan 804