Introduction
LINK YIP TRADING DEVELOP LIMITED (referred to in this policy as the Company, we, us, or our) operates as a computer systems design and computer integrated systems development company based in Hong Kong. Our registered office is located at Rm 103, G/F, CHEVALIER COML CTR, 8 WANG HOI RD, Kowloon Bay, Hong Kong (HK). The websites, trading platforms, and integrated systems covered by this policy are developed and operated by our development team under the direction of the developer LinkYip.
This Privacy Policy explains how we collect, use, store, protect, and disclose personal information when you visit our websites, use our services, or otherwise interact with our company. We are committed to handling personal information responsibly and in accordance with the Personal Data (Privacy) Ordinance of Hong Kong and other privacy laws that apply to our international operations.
Please read this policy carefully before using our websites or services. By using our websites or services, you acknowledge that you have read and understood the practices described in this document. If you do not agree with any part of this policy, you should not use our websites or services, and you may contact us if you have questions about your situation.
Information We Collect
Information you provide to us
When you contact us through our websites, request a consultation, or correspond with our team, we may collect your name, email address, telephone number, company name, job title, and the contents of your message. When we enter into a project agreement, we may collect additional business details such as banking information, tax registration numbers, and trade references that are necessary to complete the engagement and to perform due diligence.
Information we collect automatically
When you visit our websites, our servers may record technical information such as your internet protocol address, browser type, operating system, referring pages, and the dates and times of your visits. We use cookies and similar technologies as described in a later section of this policy. This technical information helps us keep the websites secure, diagnose faults, and understand how visitors use the pages.
Information from partners and public sources
We may receive information about you from business partners, credit agencies, trade references, and public registries when we perform due diligence for a trading or systems project. This information is used to verify the identity and standing of the parties we work with and to meet our legal and compliance obligations.
Information from our systems
Where we build or operate systems for a client, we may process data generated by those systems, including user accounts, access logs, and transaction records. In these cases we act on behalf of the client, and our processing is governed by the agreement we have signed with that client and by this policy where it applies to our own activities.
How We Use Your Information
We use the personal information we collect for the following purposes. We respond to your enquiries and provide the services you request, including consultations, quotations, project delivery, training, and ongoing support. We administer our business relationship, including invoicing, payments, and contract management. We improve our websites, services, and the quality of the work we deliver by reviewing usage patterns and client feedback.
We meet legal and regulatory obligations that apply to a company operating in Hong Kong and serving international markets, including tax, accounting, anti money laundering, and sanctions requirements. We protect the security of our systems and the rights of our company and its clients. We send you relevant updates, service notices, or other communications that you have asked for or that are necessary to the operation of a service you use.
We do not sell personal information to third parties, and we do not use your information for advertising purposes without your separate consent. Where we rely on legitimate interests as the basis for processing, we balance those interests against your rights and freedoms before processing begins, and we keep a record of that assessment.
Legal Basis for Processing
We process personal information on the following legal bases, which are consistent with the requirements of the Personal Data (Privacy) Ordinance of Hong Kong and with the principles of the General Data Protection Regulation of the European Union where that regulation applies to you. We record the basis on which each category of processing is carried out so that our practices remain transparent and reviewable.
Consent
Where you have given clear permission for a specific use of your information, for example when you subscribe to our updates or agree to a particular use of your data, we process on the basis of that consent. You may withdraw your consent at any time without affecting the lawfulness of processing that occurred before the withdrawal.
Contract
Where processing is necessary to perform an agreement with you, or to take steps at your request before entering into an agreement, we process on the basis of that contract. This includes preparing quotations, delivering projects, and providing support.
Legal obligation
Where we must process information to comply with laws that apply to us, including tax and anti money laundering rules, we process on the basis of that legal obligation. Compliance records are kept for the periods required by the relevant law.
Legitimate interests
Where processing is necessary for our legitimate business interests, such as operating our websites, securing our systems, and developing our services, and those interests are not overridden by your rights, we process on the basis of legitimate interests. You may request information about the assessment we carry out, and you may object to processing based on legitimate interests at any time.
International Data Transfers
Our operations are based in Hong Kong, and the trading and systems projects we deliver regularly involve partners, vendors, and data centres in other countries. When we transfer personal information across borders, we take reasonable steps to ensure that the information receives a level of protection equivalent to the protection it receives in Hong Kong.
Where we engage providers in other jurisdictions, we rely on contracts that include data protection clauses, on adequacy decisions where they apply, or on other safeguards recognised by law. The websites you visit, the services we host, and the communications you exchange with our team may pass through servers located in more than one country.
By using our services, you acknowledge that your information may be processed in Hong Kong and in the countries where our service providers operate. If you have questions about a particular transfer, please contact us using the details at the end of this policy, and we will provide the information available about the safeguards that are in place for that transfer.
Data Retention
We keep personal information only for as long as necessary to fulfil the purposes described in this policy, to provide the services you have requested, and to meet legal, tax, and accounting requirements. The retention period for a particular set of information depends on the nature of the information and the reason it was collected.
Contact and correspondence records are generally kept for the life of our business relationship and for a reasonable period afterwards so that we can respond to follow up questions and references. Contract, invoicing, and accounting records are kept for the periods required by Hong Kong law and by applicable tax rules, which can extend beyond the end of the relationship. Access logs and technical records are kept for a limited period, typically not more than two years.
When information is no longer needed for any permitted purpose, we delete it or anonymise it in a way that means it can no longer identify a person. Where we process information on behalf of a client, the retention terms set out in our agreement with that client govern how long the information is kept, and we delete or return it in accordance with that agreement.
Data Security
We protect personal information with administrative, technical, and physical safeguards appropriate to the sensitivity of the information. These safeguards include access controls that restrict which members of our team can view data, encryption in transit and at rest for sensitive records, secure storage for paper documents, and monitoring of our systems for unauthorised activity.
Our team members are trained on confidentiality and responsible data handling, and our agreements with clients and suppliers include confidentiality obligations. We review our security arrangements regularly and adjust them as threats and technology change.
No method of transmission over the internet and no method of storage is completely secure. While we work to protect your information using commercially reasonable measures, we cannot guarantee the absolute security of any information you transmit to us. You also play a part in security by keeping your passwords private and by reporting any suspicious activity to us promptly. If we become aware of a security incident affecting personal information, we will take steps to contain the impact and will notify affected individuals and regulators as required by law.
Your Privacy Rights
Subject to the requirements of applicable law, you have the following rights in relation to the personal information we hold about you. We will honour these rights to the extent the law permits and will explain our decision clearly when we are unable to act on a request.
Right of access
You may request a copy of the personal information we hold about you, together with information about how and why it is processed.
Right to correction
You may ask us to correct information that is inaccurate or incomplete. We will update our records promptly once the correction is confirmed.
Right to erasure
You may ask us to delete personal information where there is no longer a legal basis or legal obligation for us to keep it.
Right to restrict processing
You may ask us to limit how we use your information in certain circumstances, for example while a correction or objection is being assessed.
Right to data portability
Where technically possible, you may request a structured, machine readable copy of information you have provided to us, so that it can be moved to another provider.
Right to object
You may object to processing that is based on legitimate interests, or to processing for direct marketing, and we will stop such processing unless we can demonstrate compelling legitimate grounds that override your interests.
To exercise any of these rights, contact us using the details at the end of this policy. We will respond within the period required by law, which is usually within forty days. We may ask you to verify your identity before acting on a request, and we may decline requests that are manifestly unfounded, excessive, or restricted by law, in which case we will explain the reasons for the decision.
Privacy for Children
Our websites and services are directed to businesses and professional users, and they are not designed for children. We do not knowingly collect personal information from children under the age of sixteen.
If you believe that a child has provided us with personal information without the consent of a parent or guardian, please contact us using the details at the end of this policy, and we will investigate promptly. If we become aware that we have collected personal information from a child, we will delete that information as soon as reasonably possible and will take steps to prevent a recurrence.
Because our services are business to business in nature, most of the information we handle relates to individuals acting in a professional capacity on behalf of a company. Where we nonetheless encounter information relating to children, for example in a database that we manage on behalf of a client, we follow the instructions of that client and apply the safeguards described in this policy to the information we control directly.
Third-Party Services
Our websites and services may include links to websites, platforms, and tools operated by third parties, including payment gateways, video conferencing services, document signing platforms, and partner systems. This Privacy Policy does not apply to those third parties.
When you follow a link to an external service, the privacy practices of that service provider govern your information. We encourage you to read the privacy policy of any third party before you provide information to it, so that you understand how it will handle your data.
Where we integrate third party tools into systems we build for clients, we select providers carefully and include data protection commitments in our agreements with them. However, the operation of those tools remains subject to the terms and privacy practices of the third party. If you have concerns about a specific integration, please ask us, and we will explain how the tool handles data and where its terms are available for review.
Data Breaches
In the unlikely event of a data breach affecting personal information, we will act without delay to contain the incident and assess the risk to affected individuals. Our incident response procedure sets out the steps our team follows to secure the affected systems, preserve evidence, and determine what information was involved.
We will notify the Privacy Commissioner for Personal Data in Hong Kong where the breach is likely to result in a risk to the rights and freedoms of individuals, as required by law. Where the breach creates a high risk to affected individuals, we will also notify the individuals concerned directly, including details of the nature of the breach, the categories of information affected, the measures we have taken, and the steps they can take to protect themselves.
Where we process information on behalf of a client and a breach affects data managed under that relationship, we will notify the client promptly so that the client can fulfil its own notification duties. Our incident response procedures are reviewed regularly and tested as part of our quality programme.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, the services we offer, or legal requirements. When we make material changes, we will post the revised policy on this page and update the date shown at the top of the document.
Where a change is significant and we hold a valid contact address for you, we may also send you a notice by email so that you are aware of what has changed. Your continued use of our websites or services after the revised policy takes effect constitutes your acceptance of the updated terms.
We encourage you to review this page periodically so that you remain informed about how we protect your information. The version of this policy that applies to you is the one in effect at the time you use the relevant website or service, unless we have agreed otherwise in writing.
Contact Us
If you have any questions about this Privacy Policy, about the personal information we hold, or about the exercise of your rights, please contact us using the details below, and we will respond promptly.
Company name: LINK YIP TRADING DEVELOP LIMITED.
Registered address: Rm 103, G/F, CHEVALIER COML CTR, 8 WANG HOI RD, Kowloon Bay, Hong Kong (HK).
Email address: info@merius.lol.
Telephone number: +13093969826.
Business hours: Monday to Friday, 09:00 to 18:00 Hong Kong Time.
You also have the right to lodge a complaint with the Privacy Commissioner for Personal Data in Hong Kong if you consider that we have not handled your personal information properly. We ask that you give us the opportunity to resolve any concern first, and we will deal with your enquiry fairly and without delay.