Legal

Privacy policy

VenusPay Limited (“VenusPay”, “we”) respects and values the privacy of every user. This Privacy Policy explains how we handle your personal data under the Personal Data (Privacy) Ordinance (Cap. 486) of Hong Kong.

Last updated: 1 June 2026 · Effective: 1 June 2026

1. Data we collect

  • (a) Merchant registration: company name, business registration number, directors’ identity documents, bank account details
  • (b) Transaction data: amount, time, payment method, terminal ID
  • (c) Technical data: terminal IP address, device identifiers, browser type

2. Purposes

  • (a) Account approval, KYC and anti-money-laundering checks
  • (b) Providing VenusPay acquiring and settlement services
  • (c) Risk assessment and fraud detection
  • (d) Complying with the HKMA, Inland Revenue Department and other regulators
  • (e) Improving products and customer service

3. Sharing

We do not sell personal data to third parties. We may share data with: (a) card schemes (Visa, Mastercard); (b) acquiring banks; (c) regulators and law enforcement; (d) service providers (cloud providers, KYC vendors).

4. Protection

AES-256 encryption, PCI-DSS Level 1. Multi-layer access control, penetration testing and staff confidentiality agreements. Card numbers are tokenised and never stored in plaintext.

5. Retention

Seven years after the contract ends, in line with the Anti-Money Laundering and Counter-Terrorist Financing Ordinance. Thereafter the data is securely deleted or anonymised.

6. Your rights

You may: (a) access your personal data; (b) request correction; (c) request deletion; (d) withdraw consent. Write to privacy@venuspay.com.hk.

7. Cookies and tracking

We use cookies to improve experience, analyse traffic and promote services. You may refuse them in your browser, which may affect some features.

8. Data Protection Officer

privacy@venuspay.com.hk