Privacy Policy
Provided by Helios Media Limited (Hong Kong) · Effective date: June 2026
This Privacy Policy explains how Helios Media Limited handles personal data of the Customer’s account holders and representatives (“account data”). The handling of personal data of the Customer’s own contacts processed through the Service is governed by the Data Processing Agreement, under which Helios acts as processor and the Customer as controller.
1. Controller and contact
For account data, the controller is Helios Media Limited, Business Registration No. 80633859, Hong Kong. Privacy contact: alessandro@zanusmedia.com.
2. What we process and why
We process account and billing data (name, business contact details, login, payment references, usage logs) to provide, secure, bill and support the Service, and to meet legal obligations. Legal bases (where the GDPR applies) are performance of the contract, our legitimate interests in operating and securing the Service, and legal obligation.
3. Sub-processors and disclosure
We do not sell personal data and do not use it for purposes of our own beyond providing the Service. We engage sub-processors in the categories described in Annex 1, under contract and for the Service only, and disclose data to authorities where legally required. The current list of named sub-processors is available to customers on request.
4. International transfers
Helios is located in Hong Kong and uses sub-processors located outside the EEA/UK. Where personal data is transferred from the EEA, UK or Switzerland, we rely on the Standard Contractual Clauses and equivalent UK/Swiss mechanisms, with supplementary measures as appropriate.
5. Retention
We retain account data for the duration of the relationship and as required by law (including accounting), then delete or anonymise it.
6. Your rights
Where applicable law grants them, individuals may request access, rectification, erasure, restriction, portability and objection, and may lodge a complaint with their supervisory authority. Requests may be sent to the privacy contact above.
7. Security
We apply technical and organisational measures appropriate to the risk, consistent with Article 32 GDPR.
