This privacy policy explains how Lianhuiying Technology Limited, a company registered in Hong Kong with its registered office at Rm 18, 8/F, PETER LEUNG INDL BLDG, 103 WAI YIP ST, Kwun Tong, Hong Kong (HK), collects, uses, and protects personal information when you interact with our website and services. The website, the contact forms, and all of the digital services described in this policy are designed, developed, and operated by the developer LianhuiTech. We respect the privacy of every visitor, client, and partner, and we are committed to handling your information with care, transparency, and accountability. This policy sets out the types of information we hold, the reasons we process it, the choices available to you, and the steps we take to keep your data secure. Please read this policy carefully before using our website or engaging our services, and keep a copy for your records. By using the website or providing information to us, you acknowledge the practices described in this document. If you do not agree with any part of this policy, you should not use our website or provide personal information to us.
This policy applies to personal information collected through our website at www.lianhuitech.mom, through direct enquiries made by email, phone, or in person, and through the delivery of our professional services, including computer systems design, computer integrated systems design, data engineering, platform engineering, and managed care. It also covers information we receive from clients, suppliers, and partners in the course of providing services to them. The policy does not apply to information collected by third party websites that we may link to, or to information controlled by organisations that process data on their own behalf. Where we act as a service provider for a client, we process information in line with the instructions of that client, and their own privacy practices may also apply to the information we handle for them. This policy is written for a general audience, and we keep its language simple and clear so that every reader can understand how their information is treated. If you have any doubt about whether this policy applies to your situation, please contact us and we will be glad to clarify how your information would be handled.
We may collect several categories of personal information depending on how you interact with us. Contact information includes your name, email address, phone number, and the name of your organisation. Account and identity information includes login details, user identifiers, and the permissions granted within systems that we design, integrate, or operate. Technical information includes internet protocol addresses, browser type, device information, pages visited, and interaction logs collected when you browse our website. Service information includes project details, requirements, preferences, business objectives, and any information you provide during a consultation or service engagement. Payment information may be collected when we invoice for services, although our payment processors handle most card details and we do not store them on our own systems. We also collect feedback, testimonials, and communication records that arise naturally in the course of working together. Where you provide us with information about other people, such as the details of colleagues or end users of a system we build, we expect you to have the authority to share that information and to inform those people about how their data will be used. We only collect information that is relevant to the purpose for which it is used, and we avoid asking for more than we actually need.
We collect personal information through several channels. You provide information directly when you complete our contact form, send us an email, call our team, attend a meeting, sign a contract for services, or provide materials during an engagement. We collect information automatically when you visit our website through cookies, server logs, and similar technologies that record your activity and preferences. We may also receive information from third parties such as business partners, referral sources, event organisers, and public directories, always in line with applicable law. During service delivery, our engineers may collect technical information from the systems we are asked to design, integrate, or manage, and that information is handled under the terms of the relevant engagement and the agreements we have with the client. Where information is provided by a third party on your behalf, we rely on that party to have obtained the necessary consent and to have informed you of their disclosure to us. We record the source of information where we receive it from someone other than you, so that our handling remains transparent and traceable. We do not buy personal data from data brokers, and we do not enrich our records with private information obtained without permission.
We use personal information for clearly defined purposes. We respond to enquiries, prepare proposals, and manage client relationships from first contact to final invoice. We deliver, maintain, and support the services you have engaged us to provide, including system design, integration, hosting, platform engineering, and managed care. We improve our website and services by analysing how visitors use them and by identifying ways to make them more useful and secure. We send important notices about our services, including security updates, maintenance windows, and changes to our terms. We may send occasional marketing communications where you have chosen to receive them, and you can opt out at any time without affecting our service to you. We comply with legal and regulatory obligations, including tax, accounting, and anti fraud requirements. We also protect the security of our systems and the information we hold, detecting and preventing unauthorised access or misuse. We do not sell your personal information to anyone, and we do not use it for purposes that are incompatible with those described in this policy. Where we rely on your consent for a particular use, we will stop that use as soon as you withdraw consent.
We process personal information on lawful bases that are appropriate to the purpose of each use. We process information to perform a contract with you, for example when you engage us to design, build, or manage a system, and to take steps at your request before entering into that contract. We process information where you have given consent, for example when you subscribe to updates or accept optional cookies, and you may withdraw consent at any time. We process information where necessary to comply with our legal obligations under the laws of Hong Kong and other jurisdictions where we operate, including obligations around taxation, accounting, and professional conduct. We also process information for our legitimate interests, which include running our business, providing quality services, protecting our systems, and communicating with clients, provided that those interests do not override your rights and freedoms. Where we rely on legitimate interests, we balance our objectives against your expectations and your right to privacy before we process any information. We can explain the specific basis for any particular use of your information upon request, and we will not rely on consent as a basis where another more appropriate basis already applies.
As a Hong Kong based company serving clients around the world, your personal information may be transferred to, and processed in, countries outside your home country. The internet infrastructure, cloud platforms, and support teams that help us deliver services may be located in different regions, including places where we or our service providers maintain data centres. We take reasonable steps to ensure that any international transfer of personal information is protected by appropriate safeguards, including standard contractual clauses where required, and that the receiving parties maintain standards of protection that are adequate under applicable law. By providing your personal information, you understand that it may be transferred and processed internationally for the purposes described in this policy. We review our transfer arrangements regularly to ensure they remain effective and lawful, and we will update this policy if the applicable rules change. Where we transfer information on behalf of a client, we follow the transfer instructions in our agreement with that client and apply the same safeguards. If you would like to know more about the safeguards that apply to international transfers of your information, please contact us using the details at the end of this policy.
We keep personal information only for as long as it is needed for the purposes for which it was collected. Enquiry and contact records are retained while the relationship is active and for a reasonable period afterwards so that we can respond to follow up questions and maintain continuity. Contract and delivery records are retained for the period required by accounting, tax, and legal rules, which is typically several years after the end of the engagement. Log and technical data are kept for shorter periods, usually no longer than necessary for security monitoring and analytics. When information is no longer needed, we delete it securely or remove identifiers that tie it to a particular person. We set retention periods based on the nature of the information, the reason it was collected, and the obligations we have to you and to regulators. We apply the same retention discipline to information that we process on behalf of clients, and we return or delete that information at the end of an engagement in line with our agreements. Retention decisions are reviewed regularly so that we do not hold information for longer than necessary.
We apply technical and organisational measures to protect personal information from loss, misuse, unauthorised access, alteration, and disclosure. These measures include access controls that limit who can reach sensitive information, encryption of data in transit and at rest where appropriate, monitoring of our systems for unusual activity, regular review of our security practices, and training for our team on handling information responsibly. We conduct risk assessments when designing new systems and when making significant changes to existing ones, and we build security controls into the systems we design for clients from the very first design session. Although no method of transmission or storage can be guaranteed to be completely secure, we work hard to maintain appropriate safeguards and to respond promptly if a potential vulnerability is identified. If we become aware of a security incident affecting your information, we will investigate it and, where required by law, inform you and the relevant authorities. We also encourage anyone who spots a vulnerability in our website or services to report it to us directly so that we can address it quickly.
You have rights over the personal information we hold about you. You may request access to the information we hold, a copy of it, and details of how we use it. You may ask us to correct information that is inaccurate or incomplete. You may request that we delete information where it is no longer needed or where you have withdrawn consent. You may ask us to restrict processing in certain circumstances, and you may object to processing that is based on our legitimate interests. You may also request that we transfer your information to another service in a structured, machine readable format where technically feasible. To exercise any of these rights, contact us using the details at the end of this policy. We will respond within the period required by applicable law and may ask you to verify your identity first to protect your information from unauthorised access. We will not charge a fee for the reasonable exercise of your rights, although we may charge a small fee if a request is manifestly unfounded or excessive. You may also complain to the Office of the Privacy Commissioner for Personal Data in Hong Kong if you believe your privacy has not been respected.
Our website and services are directed at businesses and professional organisations, and we do not knowingly collect personal information from children. We do not design our services for children, and we do not seek to attract children as users of our website. If you are a parent or guardian and you believe that a child has provided personal information to us, please contact us using the details at the end of this policy. If we learn that we have collected personal information from a child without appropriate consent, we will take steps to delete that information promptly and to prevent further collection. We encourage parents and guardians to supervise the online activities of children and to guide them in using the internet safely and responsibly. We keep our handling of information about children under review and follow the guidance issued by the relevant authorities in Hong Kong. If you are under eighteen years of age, we encourage you to review this policy with a parent or guardian before providing any personal information to us.
Our website and our services may contain links to third party websites, tools, and platforms that are not operated by us. This policy applies only to information we collect and control, and it does not cover the practices of third parties. When you follow a link to a third party site, we encourage you to read their privacy policy to understand how they handle your information. We also integrate certain third party services, such as hosting, analytics, and communication tools, in the delivery of our own services. Where those services process personal information on our behalf, we have agreements in place that require them to process it only for our purposes and to protect it appropriately. We review the third parties we rely on to ensure that their security and privacy practices meet a reasonable standard, and we replace providers who do not meet our expectations. We are not responsible for the content, practices, or policies of third party websites, and the inclusion of a link does not imply endorsement of that site or its owners. Where you access our services through a third party platform, the privacy practices of that platform will also apply.
We take reasonable steps to ensure that the personal information we hold is accurate and up to date. You can help us in this effort by telling us promptly when your contact details or other information change. Where we hold information that is no longer accurate, we will correct it without unreasonable delay, provided that we are able to verify the correct details. If you believe that information we hold about you is inaccurate or incomplete, you may ask us to update it, and we will make the correction or record your request where correction is not possible. Keeping accurate information matters to us because it supports reliable service delivery, correct invoicing, and clear communication, and because inaccurate data can lead to poor decisions. We regularly review the information we hold and remove records that are outdated, duplicated, or no longer relevant to the purposes for which they were collected. When we rely on information supplied by you, we aim to confirm important details in writing so that both sides share the same understanding of the record.
We do not use automated decision making, including profiling, to make decisions that produce legal effects or similarly significant effects on you. The information we collect about website visitors is used for analytics and security, and we review those analytics as summary data rather than as individual profiles. Where a client asks us to build an automated decision feature into a system, that feature is governed by the agreement between the client and the end user, and we build it in line with applicable law and with the client instructions. We will inform you if this position changes and we begin to use automated decision making in a way that affects you as an individual. Until then, every decision that matters to you is made by a person who can explain it, and you can always contact us to discuss how a decision affecting you was reached. We believe that automated decisions should always be explainable, and we design the systems we build so that the reasons behind any automated outcome can be reconstructed and audited where necessary.
We may update this privacy policy from time to time to reflect changes in our services, technology, or legal requirements. When we make material changes, we will update the effective date at the top of this page and, where appropriate, notify you by email or by a notice on our website. We encourage you to review this policy periodically so that you stay informed about how we protect your information. Your continued use of our website or services after changes take effect means that you accept the updated policy. If we intend to use your personal information for a purpose that is materially different from the purposes described when it was collected, we will seek your consent before doing so where required by law. We will also keep earlier versions of this policy available for reference where it is practical to do so, so that you can see how our practices have developed. We date every version of this policy clearly so that there is never any doubt about which version applies at a particular time.
If you have questions about this policy, or if you wish to exercise any of your privacy rights, please contact us. You can reach us by email at service@lianhuitech.mom or by phone at +12187993162. Our registered address is Lianhuiying Technology Limited, Rm 18, 8/F, PETER LEUNG INDL BLDG, 103 WAI YIP ST, Kwun Tong, Hong Kong (HK). Our team is available during business hours, Monday to Friday, 09:00 to 18:00 (Hong Kong Time). We aim to respond to all privacy enquiries within one business day and to resolve any concerns promptly and fairly. When you contact us about a privacy matter, please provide enough detail for us to locate the information in question and to verify that you are entitled to make the request. If you are not satisfied with our response, you may raise your concern with the Office of the Privacy Commissioner for Personal Data in Hong Kong, and we will cooperate fully with any investigation.