IPvise Privacy Policy

IPvise values the privacy and rights to personal information of every user. This Policy is applicable under the laws of the People's Republic of China (excluding Hong Kong, Macau, and Taiwan). This Policy sets out how we may process your information when you access or use the IPvise website, applications, AI generation software, project canvas, database, credits and subscriptions, paid plans, and all related services. In accordance with statutory requirements including the Personal Information Protection Law, we shall honsestly disclose our rules for data collection, application, storage, sharing, and cross-border transfer.

1. Scope of Application

This Policy applies to the IPvise services operated by [Ipmotion (HK) Branding and Consulting Limited] that link to this Policy. Third-party websites, third-party payment platforms, third-party login services, and other independently provided services are each governed by their respective privacy policies. Where IPvise engages third parties to assist in providing the Service, we shall assume corresponding management responsibilities in accordance with this Policy and applicable law.

This Policy covers the canvas projects, text, images, videos, material uploading, database, AI assistant, credits, and account functions in the current testing interface, and the subscription plans and one-time credit packages planned for launch. Should a public content community, public sharing and interaction, audio generation, digital avatars, or other new functions be launched, we will inform the users about respective functions prior to their deployment.

2. Information We May Process

When you use specific functions, we may process information that is necessarily related to those features. The table belowindicates items that require further verification prior to official release.

Information Category Examples and Sources Primary Purpose Pre-Release Verification Items
Account and Identity-Related Information Account identifiers, nicknames, profile pictures, login methods, email addresses or phone numbers actively provided by users; in the case of third-party login, account association information returned by the login service Account creation, login, account security, user communication Actual registration fields, login service providers, returned fields, whether regional identity verification requirements apply
Project and User Content Canvas projects, prompts, AI assistant conversations, uploaded images, videos, and other materials (which may include audio), generated results, asset library content, and download-related records Executing generation and editing requests, saving projects, displaying and downloading results, supporting issue resolution Storage scope, deletion pathways, whether all features are fully launched
Subscription and Credits Information Plans, credits balance, credits source, consumption and compensation records, order status, renewal or cancellation status Displaying entitlements, completing purchases, issuing or deducting credits, processing refunds or disputes Actual payment channels, order fields, retention periods
Payment-Related Records Order identifiers, amounts, currencies, payment results, renewal, cancellation and refund status, and necessary transaction result information returned by payment service providers Confirming transaction results, financial records, after-sales support, and fraud prevention List of payment service providers, whether payment instrument details are accessed
Device, Network, and Operational Information IP addresses, general region inferred from IP addresses, browser or device type, system version, access times, page or feature operation logs, error and security logs Ensuring service operation, troubleshooting, security identification, language settings, regional service availability assessment, and compliance processing Actual data fields collected, purpose of regional inference, Cookie and analytics tool configuration
Support and Rights Request Information Customer service communications, reports, complaints, appeals, infringement notices, personal information requests, and identity verification materials Responding to requests, handling disputes, protecting rights, fulfilling legal obligations Processing channels, response timelines, and retention periods
Minors and Guardian Information Age confirmation, guardian consent, and contact information provided by the user or guardian Implementing minors protection, processing guardian requests, restricting high-risk features Age verification and guardian consent interactions

Note 1: If you upload, process, or request the generation of content containing identifiable portraits, voices, identity information, or information of minors, such information may constitute sensitive personal information or be subject to special protection in certain jurisdictions. You must ensure that you have a lawful basis for processing. Where required by applicable law, we will provide enhanced prompts, obtain separate consent, or take other necessary protective measures.

Note 2: You must ensure that you have obtained lawful authorization from the natural persons depicted in any materials before uploading them; failure to do so is prohibited. The foregoing constitutes sensitive personal information; IPvise processes the information solely for the purpose of providing generation services and will not use it for any other purpose without authorization.

3. Purposes and Legal Bases for Processing

We process information only to the extent necessary to achieve the following purposes:

  • Creating, maintaining, and protecting accounts, identifying login status, and providing account functions.
  • Receiving prompts and materials to complete AI conversations, image or video generation, editing, project saving, asset management, and download requests.
  • Displaying, calculating, and managing plan entitlements, orders, subscriptions, auto-renewal status, credits issuance, deductions, and compensation.
  • Completing payment result confirmation, renewals, cancellations, refund processing, and necessary transaction risk identification.
  • Ensuring service security and stability, detecting fraud, abuse, illegal content, infringement risks or abnormal access, and handling failures and security incidents.
  • Providing language support, regional service availability, or necessary compliance support based on available regions and applicable rules.
  • Responding to customer service requests, refund disputes, complaints and reports, infringement notices, appeals, and personal information rights requests.
  • Fulfilling applicable legal obligations, cooperating with lawfully submitted requests, and establishing, exercising, or defending legal rights.

Depending on applicable law and your location, the legal bases for processing may include performance of a contract with you, your consent, fulfillment of legal obligations, protecting your or another person's vital legitimate interests, and maintaining service security and reasonable operational interests within the scope of users' reasonable expectations and subject to appropriate safeguards. Where your consent or separate consent is required, we will inform you through the corresponding page or process.

4. Processing Boundaries for User Content

To fulfill your requests, ensure service security, and carry out the purposes described in this Policy, the system may carry out necessary automated processing of user content.

Only in circumstances where it is necessary — such as providing customer support, troubleshooting, handling reports or infringement complaints, identifying security risks, responding to rights requests, anti-fraud measures, illegal content security review, processing personal information rights applications submitted by users, cooperating with law enforcement investigations, or fulfilling legal obligations — may authorized personnel view limited content related to the specific matter. Actual access controls, authorization scope, logs, and internal procedures should be verified prior to official release.

5. Permissions, Cookies, and Similar Technologies

Where features such as material uploading, file downloading, or future mobile functions are provided, the Service may require access to files, photo libraries, camera, microphone, or storage permissions actively selected by you. We will request authorization through system or product interfaces before using the relevant permissions. If you decline to grant authorization, the corresponding features may become unavailable, but this will not affect features that do not require such permissions.

The website or application may use necessary Cookies, local storage, or similar technologies to maintain login status, ensure account security, save preferences, and keep the service functioning properly. Where analytics or other optional technologies are used, we will provide appropriate notices or choices in accordance with applicable law.

The actual permissions list, Cookie types, analytics tools, opt-out methods, and corresponding display pages require verification prior to official release.

6. Entrusted Processing, Sharing, and Third-Party Services

To provide the Service, we may provide information to, or entrust the processing of information to, service providers in the following categories to the extent necessary:

Category of Recipient or Processor Information That May Be Processed Purpose
Login and Authentication Service Providers Login requests, account association identifiers, and authentication return information Completing login, account association, and security verification
Generation Capability Service Providers Prompts, materials submitted by users, parameters required for generation tasks, returned results, and necessary task identifiers Completing generation or editing tasks as requested by you
Cloud Infrastructure, Storage, and Network Service Providers Account identifiers, project and asset files, operational logs, backup, or security information Hosting the service, saving projects and results, ensuring availability and security
Payment Service Providers Order identifiers, amounts, currencies, payment results, and information required for refund or subscription management Completing payments, renewals, cancellations, and refund processing
Security Review and Anti-Fraud Service Providers Input content, generated results, account or device risk signals, and review conclusions Preventing illegal, harmful, infringing, fraudulent, or abusive activity
Customer Service and Notification Service Providers Contact information, communication content, request materials, notification status Providing support, sending necessary service notifications, and handling disputes
Necessary Website Operational Analytics Service Providers Device and operational information, access events, and basic performance information Evaluating service operation, troubleshooting, and improving availability

Payment service providers may directly process payment instrument information. IPvise may receive records necessary for order completion, subscription management, refund processing, and transaction security. The actual scope of payment data sharing should be verified and disclosed based on the integration solution prior to official release.

We may also process or disclose necessary information in the following circumstances: with your instruction or consent; in connection with corporate mergers, acquisitions, restructurings, or asset transfers with appropriate safeguards in place; in response to requests from authorities with lawful jurisdiction; and to protect the legitimate rights, interests, and safety of users, service providers, or third parties.

The final Policy should, after verification, provide an applicable list of third-party providers or a means of accessing such list, including service provider names, processing scenarios, scope of information, and contact information requirements. This document does not pre-confirm any specific vendor as having been engaged for IPvise services.

7. Cross-Border Processing and Regional Rules

When IPvise provides services to different regions, relevant information may be processed in different countries or regions due to the location of the service entity, users, infrastructure, or functional service providers. The actual pathways, recipients, protective mechanisms, and user rights regarding cross-border processing shall be supplemented by legal counsel in accordance with applicable law after technical and vendor arrangements are confirmed, and users shall be separately notified or their consent obtained where required.

For users in mainland China, where personal information is to be provided to overseas recipients, we will fulfill the applicable procedures, notifications, and rights safeguards to the extent required by applicable law. This document does not represent that any specific cross-border provision has currently taken place.

8. Retention of Information

We will retain relevant information for the period necessary to achieve the purposes described in this Policy, and retain necessary records to the extent required by law, dispute resolution, financial record-keeping, security audits, or rights protection. Upon expiry of the retention period or completion of the processing purpose, we will delete or anonymize the relevant information in accordance with applicable law, except where continued retention is permitted or required by law.

Prior to official release, retention periods or criteria should be specified for accounts, project materials and generated results, conversations, orders and subscriptions, credits ledgers, payment records, security logs, customer service complaints, and post-cancellation records.

9. Information Security

We will implement management and technical measures proportionate to the processing risks to protect information. Such measures may include access control, permission management, transmission and storage protection, security logging, anomaly detection, backup and recovery, and vendor management.

Internet transmission and information storage carry inherent security risks. You should safeguard your account credentials, avoid uploading sensitive materials that you are not authorized or do not need to process, and promptly contact us upon discovering any security anomaly.

In the event of a personal information security incident that is required by law to be notified to you, we will inform you of the relevant circumstances, potential impacts, and measures taken or recommended, in accordance with applicable law.

10. Your Rights and Choices

Depending on applicable law, you may have the following rights:

  • To inquire about or access information we process about you, and to obtain a copy under applicable conditions.
  • To correct or supplement inaccurate or incomplete information.
  • To request deletion of information or cancellation of your account; however, information that is required by law to be retained or that is necessary for the processing of pending matters may temporarily be unavailable for deletion.
  • To withdraw consent for processing based on consent; withdrawal does not affect the validity of processing carried out prior to withdrawal.
  • To request an explanation of the processing rules described in this Policy and to submit complaints regarding processing activities.
  • To restrict processing, object to processing, or request a portable copy of your data under conditions prescribed by applicable law.

When you link your account via a third-party login service, you may manage the association through the means provided by the relevant service or by the Service at the time. Unlinking the association generally affects subsequent login or information receipt methods and does not affect processing that has already been lawfully carried out prior to unlinking or records that are required to be retained by law.

You may submit requests via: [info@ipvise.com]. To protect account security, we may verify your identity prior to processing your request.

11. Protection of Minors' Information

Users under the age of 14 must have their guardian complete the contact information and provide separate guardian authorization by checking the relevant box online before registering or using the Service; high-risk features including paid services, AI generation, and material uploading are prohibited until such authorization is obtained. Users who have not reached the age of majority in their jurisdiction should use the Service with the consent and guidance of their guardians. Guardians should monitor the materials uploaded, content generated, paid subscriptions, credits consumed, and external use of generated results by those in their care.

Restrictions for users aged 14–18: Large-value credits subscriptions and auto-renewals are restricted; consumption requires secondary confirmation from a guardian.

If we become aware that we have processed minors' information without the guardian consent required by applicable law, we will take measures including restricting processing, deleting information, or implementing other protective measures in accordance with applicable law. Guardians may submit requests to access, correct, delete, or cancel a related account via: [info@ipvise.com].

Where features involving minors' portraits, voices, or other potentially specially protected materials are concerned, an assessment should be conducted prior to the launch of such features and the publication of the Policy as to whether dedicated prompts, separate consent, or feature restrictions are required.

12. Policy Updates and Electronic Notices

We may update this Policy due to service changes, technological adjustments, or changes in applicable law. Where a change materially affects your rights and interests, we will notify you via page prompts, in-platform messages, email, or other published electronic means, and will indicate the update or effective date. Where separate consent is required to be obtained by applicable law, such consent will be obtained in accordance with the law.

Necessary notices relating to subscription status, transaction results, security incidents, rights request processing, and service management may also be sent via the aforementioned electronic means.

13. Contact Us

If you have any questions about this Policy, the processing of personal information, or rights requests, you may contact us through the following:

  • Personal Information Controller / Data Controller: [Ipmotion (HK) Branding and Consulting Limited]
  • Registered Address: [UNIT 1502, 15/F 9 WALNUT ST, TAI KOK TSUI, HONG KONG]
  • Privacy Requests Email: [info@ipvise.com]
  • Complaints and Appeals Channel: [info@ipvise.com]
  • Data Protection Representative or Supervisory Authority Complaint Information for Applicable Regions: [info@ipvise.com]