VELLOE

Legal

Privacy Policy

How VELLOE collects, uses, stores, and protects personal information when you visit our website or engage with our services.

Last updated: 24 July 2026

VELLOE respects your privacy and is committed to protecting personal information in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and UK GDPR where they apply. This Privacy Policy explains who is responsible for your data, what we collect, our legal bases, and the choices available to you.

1. Data Controller

The data controller responsible for personal information processed through https://velloe.tech and related pages (the "Website") is VELLOE, registered and operating under the laws of Singapore, with its principal place of business in Singapore (APAC Headquarters).

References to "VELLOE," "we," "us," or "our" in this Privacy Policy mean VELLOE and its affiliates involved in Website operations or responding to your request, unless a separate entity is identified in a signed client agreement.

For privacy inquiries, data subject requests, or questions about this policy, contact hello@velloe.tech.

2. Scope and Regional Applicability

This Privacy Policy applies to personal information collected through https://velloe.tech and related pages, contact forms, marketing communications, events, and pre-contractual discussions with VELLOE.

This policy does not apply to third-party websites, platforms, or services linked from our Website. Those services are governed by their own privacy policies.

Where we deliver professional services under a separate agreement, client-specific data handling may also be governed by contractual terms, statements of work, and applicable regulatory obligations.

If you are located in the European Economic Area (EEA) or United Kingdom, GDPR and UK GDPR rights apply to our processing of your personal information as described in Sections 11 and 15. Nothing in this policy limits mandatory rights available under your local law.

3. Information We Collect

Information you provide directly

  • Identity and contact details: name, business email address, phone number, company name, job title, and country
  • Inquiry content submitted through contact forms, demo requests, event registrations, or email correspondence
  • Recruitment or partnership materials, including résumés or supporting documents where applicable
  • Marketing preferences and any other information you choose to provide when communicating with us

Information collected automatically

  • Technical identifiers and device data, including IP address, browser type, operating system, and language settings
  • Usage data such as pages viewed, referring URLs, session duration, scroll depth, and interaction patterns
  • Approximate location derived from IP address
  • Cookie, pixel, tag, and analytics data as described in Section 6

Information from third parties

  • Analytics and tag management providers that help us measure Website performance, where enabled with consent
  • Security and anti-abuse services, including Google reCAPTCHA v3, to protect forms and submissions
  • Publicly available business information or referrals where permitted by law

4. How We Use Information

We use personal information for the following purposes:

  • Responding to inquiries, providing service information, and managing commercial discussions
  • Operating, maintaining, securing, and improving the Website and our digital experiences
  • Measuring engagement, campaign performance, and user experience through analytics tools, where permitted
  • Detecting, preventing, and addressing fraud, abuse, security incidents, and technical issues
  • Complying with legal obligations, regulatory requests, and enforceable contractual commitments
  • Sending service-related or marketing communications where permitted by law and your preferences

6. Cookies and Tracking Technologies

We use cookies, pixels, tags, and similar technologies to operate the Website and, with your consent, to measure usage through tools such as Google Tag Manager and related analytics tags.

On your first visit, we display a cookie preference banner allowing you to accept or reject non-essential analytics cookies. Strictly necessary cookies may still be used to secure the Website and remember your cookie choice.

You can also manage cookies through your browser settings. Disabling certain cookies may affect Website functionality.

  • Strictly necessary cookies: security, load balancing, and storage of cookie consent preferences
  • Analytics cookies: traffic measurement and performance insights, enabled only after consent where required
  • Functional cookies: remembering preferences that improve user experience, where enabled
  • Marketing or measurement cookies: campaign effectiveness analysis, only where enabled and permitted

7. How We Share Information

VELLOE does not sell personal information. We may share information only as described below:

  • Service providers and subprocessors supporting hosting, analytics, communications, CRM, security, or IT operations, under data processing agreements where required
  • Google LLC and its affiliates for reCAPTCHA and analytics services, subject to their policies and our instructions
  • Professional advisers such as legal, accounting, or insurance providers, where necessary
  • Affiliates or group companies involved in delivering services, subject to consistent privacy standards
  • Regulators, courts, or law enforcement when required by law or to protect rights, safety, and security
  • Successors in connection with a merger, acquisition, restructuring, or asset transfer, subject to this policy or equivalent protections

8. International Data Transfers

VELLOE operates globally. Personal information may be processed in countries other than your country of residence, including Singapore and locations where our service providers maintain infrastructure (such as the United States).

Where GDPR or UK GDPR applies and personal information is transferred outside the EEA or UK without an adequacy decision, we implement appropriate safeguards such as Standard Contractual Clauses (SCCs), data processing agreements, and supplementary measures where required.

You may request further information about applicable transfer safeguards by contacting us at the address in Section 16.

9. Data Retention

We retain personal information only for as long as necessary for the purposes described in this policy, unless a longer retention period is required or permitted by law. Typical retention periods include:

  • Contact form and sales inquiries: up to 24 months from last meaningful interaction, unless a client relationship continues
  • Marketing consent records: for the duration of consent plus up to 3 years for compliance evidence
  • Analytics data: according to configured tool retention settings, typically up to 14 months where analytics cookies are accepted
  • Security and server logs: generally 90 days to 12 months, depending on operational and legal requirements
  • Contract and client records: for the life of the engagement plus any statutory limitation or audit period

10. Security

We maintain administrative, technical, and organizational measures designed to protect personal information against unauthorized access, loss, misuse, alteration, or disclosure.

No method of transmission or storage is completely secure. While we work to protect your information, we cannot guarantee absolute security.

11. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal information:

  • Access: request confirmation of processing and a copy of personal information we hold about you
  • Rectification: request correction of inaccurate or incomplete information
  • Erasure: request deletion, subject to legal and contractual limitations
  • Restriction: request that we limit processing in certain circumstances
  • Objection: object to processing based on legitimate interests or direct marketing
  • Data portability: receive personal information you provided in a structured, commonly used format where applicable
  • Withdraw consent: where processing is based on consent, without affecting prior lawful processing
  • Lodge a complaint: with your local supervisory authority, in addition to contacting us directly

12. Children's Privacy

Our Website and services are intended for business and professional audiences and are not directed to children under 16 years of age. We do not knowingly collect personal information from children.

If you believe a child has provided personal information to us, please contact us so we can take appropriate action.

14. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or business operations. The "Last updated" date at the top of this page indicates when the policy was last revised.

Material changes will be posted on this page. Where required by law, we will provide additional notice.

15. EEA and UK Contacts

VELLOE serves business visitors globally, including from the EEA and UK. For GDPR-related inquiries, including requests to exercise your rights, contact hello@velloe.tech.

Where Article 27 GDPR requires an EU representative and one has been appointed, details will be published in this section or provided upon request. We will respond to verified requests within applicable statutory timeframes.

16. Contact Us

If you have questions about this Privacy Policy or wish to exercise your privacy rights, contact:

  • Privacy inquiries: hello@velloe.tech
  • General contact: hello@velloe.tech
  • Website: https://velloe.tech/privacy-policy

Questions about our legal policies? Contact hello@velloe.tech.