B Braco

Privacy Policy

Last updated: August 14, 2026

On this page

  1. Introduction
  2. Who We Are
  3. Scope of This Policy
  4. Information We Collect
  5. How We Collect Information
  6. How We Use Your Information
  7. Legal Bases for Processing
  8. Cookies and Similar Technologies
  9. Third Party Service Providers
  10. Data Retention
  11. Data Security
  12. International Data Transfers
  13. Your Privacy Rights
  14. Privacy for Children
  15. Do Not Track Signals
  16. Changes to This Policy
  17. How to Contact Us

Introduction

This Privacy Policy describes how Braco, the computer systems design practice operated by BRACO LIMITED, collects, uses, stores, and protects personal information. Braco builds integrated computer systems for businesses, and in the course of that work we may come into contact with information about individuals, including our clients, their employees, and visitors to this website. We take the privacy of that information seriously, and this document explains the choices you have about how your data is handled.

By using the website at www.braco.hair or by engaging our services, you acknowledge that you have read and understood this Policy. We encourage you to review the full text below so that you are comfortable with the way we treat personal information. If you disagree with any part of this Policy, please contact us before continuing to use our services, and we will do our best to address your concerns directly.

Who We Are

Braco is a computer systems design studio that plans, builds, and operates integrated infrastructure for growing companies. We specialize in the Computer Systems Design and Related Services industry, which forms part of the broader Professional, Scientific, and Technical Services sector. Our work covers systems architecture, cloud infrastructure, data integration, automation, cybersecurity, and managed operations.

BRACO LIMITED
Rm 1005 10/F BOSS COML CTR
28 FERRY ST
Yau Ma Tei, Hong Kong (HK)

For the purposes of applicable data protection laws, BRACO LIMITED acts as the controller of the personal information described in this Policy. You can reach us at any time using the contact details provided in the final section of this document.

Scope of This Policy

This Policy applies to personal information that we process when you visit our website, contact us by email or telephone, request a consultation, subscribe to our newsletter, or enter into a service agreement with us. It also applies to the limited categories of personal information that we may process on behalf of our clients when we design, deploy, or operate their systems.

This Policy does not apply to third party websites or services that we may link to from our website. When you leave our site and visit another property, the privacy practices of that property govern the information you provide there. We are not responsible for the content or practices of any external site, and we recommend that you read the privacy policies of those third parties before sharing your information with them.

Information We Collect

We collect several categories of information depending on how you interact with us. The categories described below are collected only as needed, and we strive to limit the information we hold to what is necessary for the purposes described in this Policy.

Information You Provide Directly

When you contact us, we may collect your name, email address, telephone number, company name, job title, and the contents of any message you send. If you engage us for a project, we may also collect billing details, project requirements, and the names and contact information of individuals on your team who will work with us.

Information Collected Automatically

When you visit our website, our servers may automatically record certain technical information, including your internet protocol address, browser type, operating system, the pages you view, the time and date of your visit, and the referring website. This information is used to understand how visitors use our site and to keep the site secure.

Information We Process for Clients

In the course of delivering our services, we may have access to data stored on our clients systems. We treat that data as the property of our clients and process it strictly under the instructions set out in our service agreements.

How We Collect Information

We collect personal information through several channels. The primary channel is direct communication, including the contact form on our website, email messages, telephone calls, and in person meetings. When you send us a message or request a consultation, the information you include is collected and stored so that we can respond to you.

We also collect information automatically through the normal operation of our website and our infrastructure. This includes server logs and, where applicable, the use of cookies and similar technologies as described later in this Policy. In addition, we may receive information from third parties, such as publicly available business directories or referral partners, but only where such information is lawfully available and relevant to a project you have asked us to consider.

We do not knowingly purchase lists of personal information from data brokers, and we do not engage in the sale of personal information to any third party for marketing purposes.

How We Use Your Information

We use the personal information we collect for a number of specific and limited purposes. First, we use it to respond to your inquiries and to provide the services you have requested. This includes preparing proposals, scoping projects, delivering systems design work, and managing ongoing operations.

Second, we use contact information to communicate with you about your project, including sending status updates, invoices, and important notices about the services we provide. Third, we use technical information to operate and improve our website, to diagnose problems, and to maintain the security of our systems.

Where you have subscribed to our newsletter or otherwise consented, we may use your email address to send you occasional updates about our work, industry developments, or events that we believe will be relevant to you. You may unsubscribe from these communications at any time using the link provided in each message.

We also use aggregated and anonymized information to analyze trends and to measure the effectiveness of our website. This information is combined with data from many visitors and does not identify you individually. We do not use your personal information to make automated decisions that produce legal or similarly significant effects concerning you.

Legal Bases for Processing

We process personal information only where we have a valid legal basis to do so. The bases we rely on depend on the circumstances of each interaction. Where you have entered into or requested a service agreement with us, we process personal information as necessary for the performance of that contract, including responding to your requests before a contract is formed.

In some cases we rely on your consent, for example when you subscribe to our newsletter or agree to receive marketing communications. You may withdraw consent at any time without affecting the lawfulness of processing carried out before the withdrawal. We also rely on our legitimate interests in certain situations, such as maintaining the security of our website, preventing fraud, and improving the quality of our services, provided that those interests are not overridden by your rights and freedoms.

Finally, we may process information to comply with legal obligations, such as retaining records required by tax or regulatory authorities.

Cookies and Similar Technologies

Cookies are small text files placed on your device when you visit a website. Our website uses a minimal set of cookies and similar technologies to function correctly and to help us understand how the site is used. We do not use cookies to track your activity across unrelated websites for advertising purposes.

You can control cookies through the settings in your browser. Most browsers allow you to refuse cookies, to delete existing cookies, or to be notified when a cookie is set. Please note that disabling cookies may affect the functionality of certain parts of our website. For more information about managing cookies, consult the help documentation for your browser.

Where we use analytics tools that rely on cookies or similar technologies, we configure those tools to minimize the amount of personal information collected and to respect the privacy preferences you express through your browser.

Third Party Service Providers

We work with a limited number of third party service providers who help us operate our business, such as hosting providers, email services, payment processors, and analytics vendors. These providers receive access to personal information only as necessary to perform their functions on our behalf, and they are contractually required to protect that information and to use it solely for the purposes we specify.

We do not sell, rent, or otherwise disclose personal information to third parties for their own marketing purposes. We may share information with professional advisers such as lawyers or accountants where necessary, with law enforcement or regulators where required by law, or with a successor organization in the event of a merger, acquisition, or sale of our business.

A current list of the categories of service providers we use is available upon request. If you have questions about a specific provider, please contact us using the details below.

Data Retention

We retain personal information only for as long as is necessary to fulfill the purposes described in this Policy, unless a longer retention period is required or permitted by law. The specific period depends on the nature of the information and the context in which it was collected.

For example, information related to an active client engagement is retained for the duration of the engagement and for a reasonable period afterward to allow us to respond to questions, meet our contractual obligations, and comply with legal and accounting requirements. Information you provide through a general inquiry, where no engagement results, is typically retained for a shorter period before it is deleted or anonymized.

When personal information is no longer needed, we take steps to delete it securely or to render it anonymous so that it can no longer be linked to you.

Data Security

We apply appropriate technical and organizational measures to protect personal information against unauthorized access, alteration, disclosure, or destruction. These measures include access controls, encryption of data in transit and at rest where appropriate, network monitoring, and regular review of our security practices.

Our team follows the principle of least privilege, which means that employees and contractors receive access to personal information only when their role requires it. We also provide training to our staff on the importance of confidentiality and on the correct handling of personal information.

While we take reasonable steps to protect your information, no method of transmission or storage is completely secure. We cannot guarantee the absolute security of any information, and you should take care to protect your own credentials and devices when communicating with us.

In the event of a security incident that affects your personal information, we will notify you and the relevant authorities where we are required to do so, and we will take prompt steps to contain the incident and to prevent a recurrence.

International Data Transfers

Our primary place of business is Hong Kong, but we may use service providers located in other countries, and we may deliver services to clients in jurisdictions around the world. As a result, personal information may be transferred to, and processed in, countries other than the country in which you reside.

When we transfer personal information across borders, we take steps to ensure that an appropriate level of protection is maintained in accordance with applicable law. This may include relying on contractual clauses recognized as adequate by data protection regulators, or other safeguards appropriate to the circumstances.

If you have questions about where your information is processed or about the safeguards that apply to a particular transfer, please contact us using the details provided below.

Your Privacy Rights

Depending on your location, you may have certain rights regarding your personal information. These rights can include the right to access the information we hold about you, the right to request correction of inaccurate information, the right to request deletion of your information, the right to restrict or object to certain processing, and the right to data portability.

You may also have the right to withdraw consent at any time where we rely on consent as our legal basis, and the right to lodge a complaint with a supervisory authority if you believe that we have not handled your information lawfully.

To exercise any of these rights, please contact us using the details in the final section of this Policy. We will respond to your request within the timeframes required by applicable law, and we may ask you to verify your identity before we take action.

Privacy for Children

Our website and services are intended for businesses and adult professionals. We do not knowingly collect personal information from children under the age of 16, and we do not direct our services toward children. If you are under the age of 16, please do not submit personal information to us through the website or otherwise.

If we become aware that we have collected personal information from a child without appropriate parental consent, we will take steps to delete that information as quickly as possible. If you believe that a child has provided personal information to us, please contact us so that we can investigate and, where necessary, remove the information.

Do Not Track Signals

Some browsers offer a Do Not Track feature that sends a signal to websites indicating that you do not wish to be tracked. There is currently no universally accepted standard for how websites should respond to these signals.

Our website does not alter its behavior based on Do Not Track signals at this time. However, as described elsewhere in this Policy, we do not track visitors across unrelated websites for advertising purposes, and our use of cookies and analytics is limited. We will continue to monitor developments in this area and update our practices as standards evolve.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, our services, or applicable law. When we make changes, we will revise the last updated date at the top of this page, and we will take reasonable steps to bring material changes to your attention.

Where a change is significant, we may provide additional notice, such as a prominent notice on our website or a direct email where we have your contact details. We encourage you to review this Policy periodically so that you remain informed about how we protect your information.

Your continued use of our website or services after a change takes effect constitutes your acceptance of the revised Policy.

How to Contact Us

If you have questions, concerns, or requests related to this Privacy Policy or the way we handle personal information, please contact us using any of the following methods. We are committed to responding promptly and resolving any concerns you may have.

BRACO LIMITED
Rm 1005 10/F BOSS COML CTR
28 FERRY ST
Yau Ma Tei, Hong Kong (HK)

Email: hello@braco.hair

Phone: +19787475363

Website: www.braco.hair

We will acknowledge your message as soon as possible and will work with you to address any concern in a fair and transparent manner.

B Braco

Computer systems design for modern companies.

Back to homepage Privacy Policy Terms of Service

© 2026 BRACO LIMITED. All rights reserved.