Privacy Policy
Last Updated & Effective: January 1, 20261. Data Controller Information
The entity responsible for processing your personal data on this domain is:
2. Core Data Processing Principles
We adhere strictly to key data protection principles in all processing activities:
- Lawfulness, Fairness, and Transparency: Personal data is processed lawfully and transparently.
- Purpose Limitation: Collected data is restricted to specified, explicit, and legitimate reporting and operational purposes.
- Data Minimization: We only collect information strictly necessary to perform service duties.
- Accuracy: Information is kept accurate and updated where applicable.
- Storage Limitation: Personal identifiers are deleted or anonymized as soon as retention periods expire.
- Integrity and Confidentiality: Data is secured using modern TLS encryption and strict internal access controls.
3. Categories of Personal Data Collected
3.1 Voluntarily Provided Information
When you contact us via contact forms or send direct email transmissions to , we collect personal data you choose to provide, including your full name, business or personal email address, subject matter, company affiliation, and the full content of your inquiry.
3.2 Automatically Collected Technical Data
When you navigate through our platform, our web servers automatically collect standard technical diagnostic logs, which may include:
- Your Internet Protocol (IP) address (anonymized where required by local regulations).
- Browser type, version, language settings, and operating system.
- Device type, display resolution, and user-agent strings.
- Referring URL, entrance/exit pages, time spent on individual startup profile pages, and timestamps.
4. Legal Bases for Data Processing
We process your personal data under the following recognized legal grounds:
- Consent (GDPR Art. 6(1)(a)): You provide express consent when submitting a contact form or agreeing to non-essential cookies.
- Legitimate Interests (GDPR Art. 6(1)(f)): Processing essential technical server logs to ensure network security, defend against cyber threats, and improve site performance.
- Legal Obligations (GDPR Art. 6(1)(c)): Complying with statutory corporate bookkeeping or legal reporting requirements under applicable law.
5. Purposes of Processing
We use your personal information solely for the following business purposes:
- To respond to press inquiries, evaluation requests from AI startups, and user support tickets.
- To analyze web performance, measure article popularity, and optimize site layout across mobile and desktop devices.
- To safeguard platform infrastructure against malicious bots, unauthorized scraping, and DDoS attacks.
- To comply with legal obligations and enforce our Terms of Service.
6. Data Retention Schedules
Personal information is retained only as long as necessary to fulfill the purposes for which it was collected:
- Inquiry Records: Retained for up to 12 months following full resolution of your query, after which records are deleted.
- Server Logs: Technical log files are automatically purged or anonymized within 90 days.
- Cookie Data: Preference choices stored in your local storage remain until cleared manually or automatically based on cookie expiration schedules.
7. Data Sharing & Third-Party Processors
does not sell, rent, or monetize your personal data to advertisers or third-party brokers. Data may be processed by trusted infrastructure vendors under binding data processing agreements (DPAs):
- Hosting & Cloud Infrastructure: High-security server networks hosting domain files and contact endpoints.
- Content Delivery & Security (CDN): Edge caching networks used to accelerate page loading and filter cyber threats.
- Legal Compliance Disclosure: Disclosure required by enforceable court orders or law enforcement subpoenas.
8. Cross-Border International Transfers
As operates globally out of Hong Kong while profiling European and Nordic AI ecosystems, data may be transferred across international borders. Where European data is transferred outside the European Economic Area (EEA), we implement Standard Contractual Clauses (SCCs) approved by the European Commission to ensure an equivalent level of privacy protection.
9. Data Subject Rights
Under applicable global privacy frameworks (including GDPR), you possess the following enforceable data rights:
- Right of Access: Request a copy of all personal data held about you.
- Right to Rectification: Request correction of inaccurate or incomplete records.
- Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data where retention is no longer necessary.
- Right to Restrict Processing: Request temporary suspension of data processing under specific disputes.
- Right to Data Portability: Receive a structured, machine-readable copy of your personal details.
- Right to Object: Object to processing based on legitimate interest grounds.
- Right to Withdraw Consent: Revoke consent for non-essential data collection at any time.
To exercise any of these rights, email our Data Privacy Officer directly at . We will respond to valid requests within 30 days.
10. Children's Privacy
Chroniclemediadck is a B2B and technology analytics publication intended for adult readers, industry researchers, and investors. We do not knowingly collect personal data from individuals under 16 years of age.
11. Security Safeguards
We deploy robust technical and organizational security measures, including HTTPS/TLS 1.3 encryption for data in transit, strict access control limits, and periodic security scans, to protect your data against accidental loss or unauthorized access.
12. Policy Revisions & Contact
We reserve the right to modify this Privacy Policy to reflect evolving legal standards or operational site updates. Any modifications will be posted here with an updated "Last Updated" date. For privacy questions, reach out to us at: