Privacy Policy for VIIXIM
1. Introduction
At VIIXIM, we prioritize the security and privacy of our clients' data. This Privacy Policy outlines how we collect, use, and protect information through our IT Asset Disposition (ITAD) software and services.
2. Information We Collect
-
Account Data: Contact information such as name, email address, and company details provided during registration.
-
Asset Data: Information regarding the IT assets you process through our software, including serial numbers, specifications, and market valuation data.
-
Usage Data: Technical data such as IP addresses, browser types, and interaction patterns with our software platform.
3. How We Use Your Information
-
Automated Grading: To run assets against global secondary market prices in real-time and determine profitable disposition paths.
-
Service Improvement: To optimize our AI-driven valuation models and software interface.
-
Communication: To provide technical support, security alerts, and updates regarding your asset returns.
4. Data Security & Disposition
As a software-driven ITAD firm, data security is our core mission.
-
Data Destruction: We adhere to industry-standard data sanitization protocols for all hardware processed through our services.
-
Encryption: All information transmitted through our platform is protected using industry-standard encryption.
5. Sharing of Information
We do not sell your data. We only share information with third-party partners (such as logistics or recycling vendors) necessary to complete the ITAD process, or when required by law.
6. Your Rights
Depending on your location, you may have the right to access, correct, or delete your personal data. Please contact us to exercise these rights.
7. Contact Us
For questions regarding this policy, please reach out through our website or contact our privacy officer.
8. EU General Data Protection Regulation (GDPR) Clauses
If you are located in the European Economic Area (EEA), the following additional clauses apply to you:
-
Lawful Basis for Processing: We process your personal data under the following legal bases:
-
Contractual Necessity: To provide our ITAD services and software as agreed in our contract.
-
Legitimate Interests: To improve our AI-driven automated grading and ensure the security of our platform.
-
Legal Obligation: To comply with tax, audit, and hardware disposal regulations.
-
Consent: Where you have explicitly opted in to receive marketing communications.
-
-
Your GDPR Rights: As an EU data subject, you have the following rights:
-
Right of Access: You can request a copy of the personal data we hold about you.
-
Right to Rectification: You can ask us to correct inaccurate or incomplete information.
-
Right to Erasure ("Right to be Forgotten"): You can request that we delete your data under certain conditions.
-
Right to Data Portability: You can request your data in a structured, machine-readable format.
-
Right to Object: You can object to our processing of your data for direct marketing or legitimate interests.
-
-
Data Processor Responsibilities (ITAD Specific):
-
Instruction-Based Processing: When we handle your retired IT assets, we act as a Data Processor and only perform data sanitization based on your documented instructions.
-
Sub-processors: We only engage third-party logistics or recycling vendors (sub-processors) with your prior written authorization and under strict data protection agreements.
-
Certificates of Destruction: Upon completion of data sanitization, we provide a Certificate of Destruction as legal evidence of compliance with GDPR Article 17.
-
-
International Data Transfers: If we transfer your data outside the EEA (e.g., to our US servers), we ensure a similar degree of protection by using Standard Contractual Clauses (SCCs) approved by the European Commission.
-
Data Breach Notification: In the event of a high-risk data breach, we will notify the relevant supervisory authority within 72 hours of discovery.