Legal information
Privacy Policy
This policy explains how VERLIX LIMITED, operator of VYRELLO, handles personal data in connection with this website and related business enquiries.
1. Who we are and scope
VYRELLO is operated by VERLIX LIMITED, registered at RM 12, 1/F., CORE 45, 43 TSUN YIP STREET, KWUN TONG, HONG KONG. In this policy, “we”, “us” and “our” refer to VERLIX LIMITED.
This policy applies to this website, business correspondence and any early-access or product service that expressly links to it. A separate collection notice may be provided where a particular form or service requires additional information.
2. Personal data we may handle
We collect only data reasonably necessary for the purpose made clear at the point of collection. Depending on how you interact with us, this may include:
- identity and business contact data, such as your name, work email, company and role;
- enquiry data and correspondence you send to our support email;
- store platform, expected creative volume and use-case information if an early-access form is activated;
- product, brand, likeness, voice or other content you are authorised to provide when a product service becomes available;
- technical and security data, such as IP address, browser type, timestamps and access logs generated by hosting infrastructure; and
- the essential browser-storage preference described in our Cookie Policy.
3. Current website form
The early-access form on the current website is a demonstration interface. Its entries are not transmitted to us or stored by the website. If submission is enabled later, we will display a collection notice before or at the time of collection and update this policy where necessary.
4. How we use personal data
We may use personal data only for purposes directly related to our operations, including:
- responding to enquiries and evaluating requested partnerships or early access;
- providing, securing, supporting and improving an agreed service;
- verifying identity, authority, likeness and voice consent for digital-avatar workflows;
- preventing abuse, fraud, impersonation and security incidents;
- meeting contractual, accounting, regulatory and legal obligations; and
- sending product or marketing communications only where the required notice and consent have been provided.
5. Direct marketing
We will not use personal data for direct marketing without first providing the information required by applicable law and obtaining the required consent or indication of no objection. You may opt out at any time, without charge, by emailing us. We do not sell personal data or provide it to another party for that party’s direct marketing.
6. Service providers and disclosures
We may appoint hosting, security, communications, storage, payment or professional-service providers to process data only for defined business purposes and under appropriate confidentiality, security and retention controls. We may also disclose data where required by law, to protect legal rights or safety, or in connection with a corporate transaction subject to appropriate safeguards.
We do not authorise service providers to use customer assets to train public or shared generative-AI models.
7. Cross-border processing
Some service providers may process data outside Hong Kong. Where this occurs, we will take contractual or other practicable steps to require a level of protection consistent with this policy and applicable law. We will disclose material transfer arrangements in a service-specific notice where required.
8. Retention and deletion
We keep personal data no longer than reasonably necessary for the stated purpose, subject to legal or contractual retention requirements. Our operating targets are:
- general enquiries: up to 24 months after the last substantive interaction;
- access and security logs: normally up to 12 months, unless needed to investigate an incident;
- website preference storage: until you clear browser storage; and
- customer assets: for the service period, followed by deletion or return under the applicable order terms, with any limited backup retention disclosed there.
9. Security
We apply administrative, technical and organisational measures proportionate to the data and risk, including access controls, secure transmission, least-privilege access, supplier controls and incident handling. No system is completely secure, and you should avoid sending sensitive information that we have not requested.
10. Your rights and requests
Subject to the Personal Data (Privacy) Ordinance (Cap. 486) and other applicable law, you may ask whether we hold your personal data and request access to or correction of it. You may also request deletion or restriction where applicable, withdraw a voluntary consent, or object to direct marketing.
Send privacy requests to verlixv6@gmail.com. We may verify your identity and authority before acting on a request. Any lawful fee for a formal data-access request will not be excessive.
11. Children
The website and planned business services are intended for business users and are not directed to children. Do not submit a child’s likeness, voice or personal data without verifiable authority and all legally required guardian consent.
12. Changes and contact
We may update this policy to reflect operational or legal changes. The “Last updated” date will identify the current version. Material changes will be highlighted where practicable. Questions or complaints may be sent to verlixv6@gmail.com or by post to RM 12, 1/F., CORE 45, 43 TSUN YIP STREET, KWUN TONG, HONG KONG.