VibrantPulse operates under Taiwan's Personal Data Protection Act and international privacy standards. We believe transparency builds trust — that's why we've written this policy in plain English, not legal jargon.
What makes us different: We collect only what we need for system management services, never sell your data, and give you full control over your information. No hidden clauses, no surprise uses of your data.
Information We Collect
Business Information You Provide
When you contact us or use our system management services, we collect:
- Contact details (name, email, phone number, company name)
- Business address and operational information
- Technical requirements and system specifications
- Communication preferences and service needs
Technical Data We Automatically Collect
| Data Type | Purpose | Retention |
|---|---|---|
| IP Address & Location | Security monitoring, service optimization | 12 months |
| Device Information | System compatibility, technical support | 24 months |
| Website Usage Data | Improve user experience, performance analysis | 18 months |
| System Performance Logs | Service delivery, troubleshooting | 36 months |
Service-Related Information
During our system management work, we may access or process data necessary for service delivery. This includes system configurations, performance metrics, and operational logs. We treat all client system data with the highest level of confidentiality.
How We Use Your Data
We use collected information for specific, legitimate business purposes aligned with our system management services:
Primary Uses
- Service Delivery: Providing system management, technical support, and consulting services
- Communication: Responding to inquiries, sending service updates, and maintaining client relationships
- System Optimization: Analyzing performance data to improve service quality and efficiency
- Security Protection: Monitoring for threats, preventing unauthorized access, and ensuring data integrity
Legal Basis for Processing (Taiwan PDPA Compliance)
Under Taiwan's Personal Data Protection Act, we process personal data based on:
- Consent for marketing communications and optional services
- Contract performance for service delivery and technical support
- Legitimate business interests for security monitoring and service improvement
- Legal compliance for record-keeping and regulatory requirements
We never use your data for purposes beyond what's necessary for our system management services or what you've explicitly agreed to.
Data Sharing and Third Parties
We maintain strict control over your data and share it only when necessary for service delivery or legal compliance.
When We Share Data
- Service Providers: Cloud hosting, security monitoring, and technical infrastructure partners operating under strict data processing agreements
- Legal Requirements: Government authorities when required by Taiwan law or valid legal process
- Business Transfers: In unlikely event of merger or acquisition, with advance notice to clients
- Security Incidents: Law enforcement for investigating cyberattacks or data breaches affecting our clients
What we never do: Sell your data to marketers, share information with competitors, or use your data for unrelated business purposes. Your trust is more valuable than any potential revenue from data sales.
Third-Party Service Providers
Our carefully selected partners include cloud infrastructure providers, security monitoring services, and communication platforms. All partners sign comprehensive data processing agreements and undergo regular security audits. We maintain full accountability for their handling of your data.
Data Protection and Security
System security isn't just our business — it's our expertise. We apply enterprise-grade protection to all client data.
Technical Safeguards
- AES-256 encryption for data at rest and TLS 1.3 for data in transit
- Multi-factor authentication and role-based access controls
- Regular security audits, penetration testing, and vulnerability assessments
- Automated backup systems with geographic redundancy
- Real-time monitoring and incident response protocols
Organizational Measures
Our team follows strict data handling procedures, including background checks for staff with data access, regular privacy training, and clear protocols for data processing activities. We maintain detailed logs of all data access and processing activities.
Breach Notification: In the unlikely event of a data security incident, we'll notify affected clients within 72 hours and provide detailed information about the incident, our response, and steps to protect your interests.
Your Privacy Rights
Taiwan's Personal Data Protection Act grants you specific rights regarding your personal information. We've made exercising these rights straightforward.
Access Your Data
Request a complete copy of personal information we hold about you, including how we obtained it and how we use it.
Correct Inaccuracies
Update or correct any personal information that's incomplete, outdated, or incorrect in our systems.
Delete Your Data
Request deletion of your personal information when it's no longer necessary for service delivery or legal compliance.
Restrict Processing
Limit how we use your data while maintaining essential service delivery and legal obligations.
Data Portability
Receive your data in a structured, machine-readable format for transfer to another service provider.
Withdraw Consent
Opt out of marketing communications or optional data processing activities at any time.
How to Exercise Your Rights
Contact us at contact@vibrantpulse.dev with your request. We'll respond within 30 days and may need to verify your identity for security purposes. There's no charge for reasonable requests, though we may charge a fee for excessive or repetitive requests.
Data Retention and Deletion
We keep your data only as long as necessary for service delivery, legal compliance, or legitimate business purposes.
Retention Periods
- Active Client Data: Maintained during service relationship plus 12 months for transition support
- Communication Records: 3 years for service history and support continuity
- System Logs: 12-36 months depending on security and performance requirements
- Financial Records: 5 years per Taiwan tax and accounting regulations
- Marketing Contacts: Until you unsubscribe or request deletion
When retention periods expire, we securely delete data using industry-standard methods that make recovery impossible. We can provide certificates of deletion upon request.
International Data Transfers
While VibrantPulse operates primarily in Taiwan, some data processing occurs internationally through our service providers.
Cross-Border Data Protection
When we transfer data outside Taiwan, we ensure adequate protection through:
- Standard contractual clauses approved by Taiwan authorities
- Adequacy decisions recognizing equivalent privacy protection
- Certification schemes and binding corporate rules
- Explicit consent for transfers to countries without adequate protection
Current International Partners: We work with cloud providers in Japan and Singapore, both recognized as providing adequate data protection. All transfers are covered by comprehensive data processing agreements.
Policy Updates and Changes
We review and update this privacy policy annually or when significant changes occur to our data practices.
When we make material changes, we'll notify active clients by email at least 30 days in advance. We'll also post updates on our website with clear explanations of what changed and why.
Continued use of our services after policy updates indicates acceptance of the changes. If you disagree with updates, you can exercise your data deletion rights or discontinue services.
Privacy Questions and Concerns
We're here to help with any privacy-related questions or concerns.
Email:
contact@vibrantpulse.dev
Phone:
+886-2-2256-1483
Address: No. 163號,
Shijian Rd, Banqiao District, New Taipei City, Taiwan 220
Business Hours:
Monday-Friday, 9:00 AM - 6:00 PM (Taiwan Standard Time)
We respond to privacy inquiries within 2 business days.
If you're not satisfied with our response to privacy concerns, you have the right to file a complaint with Taiwan's National Development Council or other relevant privacy authorities.