LEGAL & DATA GOVERNANCE

Privacy Policy

This Privacy Policy explains how Venomin, operated by Walletmix Limited, collects, processes, protects, and governs organizational and commercial information across our platform and connected ecosystem.

Last updated: August 29, 2026Operator: Walletmix Limited

01. Introduction & Operating Entity

Welcome to Venomin. Venomin is a commercial technology ecosystem, platform management center, and software provisioning portal. The Venomin website, portal, billing engine, and administrative interfaces are owned and operated by Walletmix Limited (“we”, “our”, “us”, or “Operating Entity”).

We respect the privacy of our business clients, enterprise evaluators, platform users, and partners. This Privacy Policy details the policies governing the collection, utilization, storage, and transfer of personal and organizational data when accessing venomin.com, initiating free trials, configuring SaaS subscriptions, requesting custom enterprise proposals, or managing customer accounts.

02. Information We Collect

Depending on your interaction with the Venomin platform, we may collect the following categories of information:

  • Account & Registration Data: Full name, corporate email address, encrypted password hash (via bcrypt with salt factor 12), designated role, phone number, and administrative contact preferences.
  • Organization & Commercial Details: Company or institutional name, business address, country of operation, industry vertical, estimated organizational scale (e.g. employee count, property units, bed count, or terminal volume), and tax/VAT identification where necessary for commercial invoicing.
  • Quotes, Orders & Subscription Records: Selected software editions, billing cycles, pricing calculations, discount authorizations, payment transaction references, invoice records, and license keys.
  • Platform Telemetry & Operational Logs: Aggregated usage metrics, active trial durations, browser type, IP address, operating system, timestamped session actions, and security audit logs required to maintain platform reliability and security.
  • Communications & Inquiries: Transcripts of project RFP submissions, demo requests, expert consultation briefs, and direct support messages exchanged through our designated communication channels.

03. How We Use Collected Information

We process collected information for legitimate commercial, operational, and contractual purposes, including:

Service Provisioning

Deploying sandbox instances, initializing multi-tenant environments, generating service JWTs, and providing single sign-on (SSO) launch links.

Commercial Billing

Processing subscription orders, delivering official pro-forma and settled invoice documents, and managing license renewal cycles.

Customer & Technical Support

Responding to RFP inquiries, troubleshooting provisioning blockers, providing onboarding assistance, and maintaining WhatsApp support.

Security & Fraud Prevention

Enforcing rate limits, preventing credential stuffing, monitoring administrative role changes, and verifying authorized access.

04. Product-Specific Architectural Data Boundaries

Principle of Data Minimization & Vertical Isolation

Venomin operates as a centralized commercial operations, license management, and authentication portal. The platform is architected and designed NOT to centrally ingest, harvest, or store sensitive operational domain records residing within connected vertical SaaS products.

VitaERP (Healthcare Operations)

Venomin manages licensing, tenant status, and subscription tier. Venomin does not routinely ingest or centrally store patient electronic medical records (EMR), clinical diagnoses, prescription histories, or confidential diagnostic files.

EduERP (Education & Campus Management)

Venomin handles institutional licensing and tenant orchestration. Venomin does not routinely ingest or centrally store student grade transcripts, child/minor demographic records, or detailed academic disciplinary logs.

CityERP (Municipal & Civic Management)

CityERP is subject to sovereign enterprise and government review gating. Venomin does not centrally ingest citizen National Identity (NID) biometric documents, citizen tax filings, or confidential municipal case files.

BizERP & ECOPOS (Enterprise & Retail)

Venomin processes master licensing and telemetry status. Venomin does not store raw payment card data, general ledger line items, employee payroll details, or individual retail cash drawer receipts.

Rentmix (Property & Lease Management)

Venomin processes commercial account records and subscription provisioning, keeping property lease documents and individual tenant agreements partitioned within the customer's product environment.

05. Information Sharing & Third-Party Disclosure

We do not sell, rent, or trade your personal or organizational data. We disclose information only under specific, controlled operational circumstances:

  • Service Providers & Infrastructure Partners: Cloud hosting, database infrastructure, and transactional email dispatch providers operating under strict confidentiality and data protection terms.
  • Product Integrations: Where you explicitly authorize a connection between Venomin and an integrated software platform via signed webhook or SSO token exchange.
  • Legal Obligations: When disclosure is reasonably required to comply with applicable laws, court orders, or governmental regulatory requests.

06. Technical Security Safeguards

Venomin employs defense-in-depth technical safeguards to protect stored and transmitted data:

Encryption in Transit

All traffic is secured via TLS 1.3 / HTTPS with HSTS headers and secure cyphers.

Stateless JWT Auth

HttpOnly, SameSite=Lax signed session cookies preventing client-side script interception.

Dual-Gate Safeguards

Strict production integration gates blocking unverified external product activations.

For detailed information regarding our technical security architecture, visit our Security Practices page.

07. Children & Minor Data

Venomin is a commercial B2B platform designed and intended solely for businesses, educational institutions, government bodies, and organizational representatives. We do not knowingly collect personal data directly from children under the age of 18. Where institutional clients utilize educational software (such as EduERP), all student and minor data processing is conducted within the institution's isolated, institution-controlled environment under the institution's applicable parental consent and data governance policies.

08. Payment Privacy & Venomin Pay Sandbox

Venomin Pay is currently presented in Sandbox / Early Access mode for developer orchestration and testing. In sandbox mode, no real banking credentials or live cardholder payment transactions are processed through Venomin. Real commercial transactions for Venomin subscriptions are handled through verified payment receipts and manual settlement procedures. Venomin does not store raw credit card numbers or CVV codes.

09. User Rights & Data Retention

Subject to applicable law, organizational account administrators may request:

  • Access to and copies of organizational profile records held by Venomin.
  • Correction of inaccurate contact, company, or billing information.
  • Account closure and termination of active sandbox environments.
  • Export of commercial transaction histories and invoices.

Data is retained for as long as your account remains active and as required to satisfy statutory accounting, tax, and audit compliance requirements.

10. Contact & Data Protection Inquiries

For questions regarding this Privacy Policy, data access requests, or governance inquiries, contact the operating team at Walletmix Limited:

Operating Entity: Walletmix Limited • Platform: Venomin • All rights reserved.