Privacy Policy
Last Updated: September 2026 | Effective for all services operated by XCLOUD NETWORK TECH CO., LTD.
1. Identification of the Data Controller
This Privacy Policy governs the processing of personal data by XCLOUD NETWORK TECH CO., LTD. (referred to as "XCLOUD", "we", "our", or "us"), a company duly incorporated in Cambodia under DUNS ID 673057054, with registered headquarters at:
Independence Street, Sihanoukville, 18204, Cambodia
DUNS: 673057054
Phone: +855 88 559 8999
Data Protection Contact: [email protected]
2. Information We Collect
When you visit our website, submit quotation requests, or engage our engineering services, we may collect the following categories of information:
- Contact Information: First name, last name, corporate email address (*@yourcompany.com), business phone number, and physical company address.
- Technical & Workload Information: Project requirements, server capacity specs, GPU model inquiries, datacenter space estimates, and network topology requirements.
- Usage & Device Telemetry: IP address, browser type, operating system, referring URL, and analytics logs to ensure security and prevent fraudulent access.
3. Purpose and Legal Basis for Processing
We process your data for the following legitimate business purposes:
- Fulfilling Contractual Inquiries: Providing hardware price quotes, technical specifications, and delivery logistics plans.
- Customer Support & Engineering: Providing 24/7 technical support, on-site installation coordination, and SLA maintenance.
- Legal & Regulatory Compliance: Complying with international trade compliance, export regulations, tax filings, and Cambodian commercial law.
4. Data Sharing & International Transfers
XCLOUD NETWORK TECH CO., LTD. does not sell, rent, or trade your personal data to third parties. We may share necessary transaction details solely with authorized logistics partners, customs clearance brokers, and official hardware distributors (e.g. NVIDIA authorized supply partners) strictly to execute your procurement orders.
5. Data Retention & Security Measures
We implement state-of-the-art technical and organizational measures, including AES-256 encryption at rest, TLS 1.3 encryption in transit, strict role-based access control, and continuous security auditing. Inactive commercial inquiry data is retained only for the duration required by applicable statutory limitation periods.
6. Your Rights
Depending on your jurisdiction (including rights under GDPR and applicable data protection regulations), you have the right to request access to, rectification of, or erasure of your personal data, as well as the right to restrict or object to processing. To exercise these rights, please email our Data Protection Officer at [email protected].