1. Scope
This policy applies to the public HK Compliance Hub website and to the restricted workspace used by the site operator to manage it. General readers do not need to register for a site account.
It does not apply to third-party websites or platforms you reach through a link. They have their own privacy policies and data-handling rules.
2. Information that may be handled
To provide, secure and improve the site, relevant service providers may handle standard technical information such as IP address, browser and device information, request time, pages visited, referrer URL, error information and security logs. This is generally used for security, abuse prevention, caching, performance and aggregated statistics.
If you contact the site by email, Telegram or another channel, we receive the name, contact details, message content and attachments that you choose to provide.
If GitHub Discussions (giscus) comments are enabled, comments, public GitHub profile information and information connected with those comments are handled by GitHub and giscus under their own terms, and may be visible in a public discussion.
3. Purposes and approach
Information is handled only to the extent reasonably necessary to operate and secure the site, respond to enquiries, manage reader discussion, prevent spam or abuse, understand aggregated use and meet applicable legal obligations.
The site does not sell visitor personal data or deliberately build visitor profiles for behavioural advertising.
4. Service providers and international processing
Hosting, content delivery, security, authentication, file storage or comments may be supported by third-party providers, such as Cloudflare, OpenAI/ChatGPT, GitHub or communications platforms. These providers may process information outside Hong Kong in order to provide their services.
Information is shared with providers only as reasonably necessary for site functions, responding to your request, complying with law, or protecting the site and its users.
5. Retention, security and choices
Technical logs are generally retained according to the relevant provider’s standard retention periods. Correspondence and contact records are kept for as long as needed to handle the enquiry, retain appropriate business records or as permitted by law. Content and files in the operator’s workspace are controlled by the operator and may be deleted when no longer needed.
You can manage cookies through your browser, although disabling necessary cookies or security features may affect your experience. You may choose not to use comments, not to contact the site through third-party platforms, or not to provide non-essential information when contacting us.
6. Access, correction and deletion
To the extent permitted by applicable law, you may request access to, correction of or deletion of personal data held directly by the site. Please email saiwanhaamyu@gmail.com with enough information to identify the relevant record.
Where data is controlled by GitHub, Telegram, an email provider or another third-party platform, you may need to make your request directly to that platform.
7. Changes to this policy
This policy may be updated as site functions, service providers or applicable requirements change. The “Last updated” date at the top of the page shows the most recent revision.