Privacy Policy
This Privacy Policy (hereinafter referred to as the "Policy") is formulated and issued by the service provider (hereinafter referred to as "We"). We fully recognize the importance of personal information to you and strive to protect your personal information in a safe and reliable manner. We are committed to earning and maintaining your trust by abiding by the following principles for personal information protection: consistent rights and liabilities, clarified purposes, consent by choice, minimum necessity, security assurance, user participation, and openness and transparency. We will continuously improve our privacy protection system to provide you with a safer and more reliable service environment.
This Policy applies to all products and services provided by Us through platforms including but not limited to websites, mobile applications (Apps), mini-programs, software clients and IoT devices. This Policy serves as the core legal document governing personal information processing between you and Us and carries the same legal effect as the User Agreement. In the event of any inconsistency between this Policy and the User Agreement, this Policy shall prevail.
Please carefully read and fully understand this Policy before using our services. If you are under the age of 14, please review this Policy under the supervision of your legal guardian. Your use of our services, or continued use of our services after any updates to this Policy, shall constitute your acknowledgment, understanding and acceptance of this Policy (including updated versions), as well as your consent to our processing of your personal information in accordance with this Policy. If you disagree with any part of this Policy, you must immediately cease using our services.
Chapter 2 Collection of Personal Information
We collect your personal information to deliver high-quality and personalized services and continuously optimize our product functions. We only collect personal information necessary for business operation for the purposes specified below:
Account Registration and Management: We collect relevant information from you when you register an account.
Security Assurance: To enhance service security and prevent risks such as fraud, account theft and unauthorized network access, we collect your device information, login logs, operation logs and anomaly reports.
Personalized Recommendation and Data Analysis: Upon your explicit consent, we collect your browsing history, search keywords, page dwell time, click preferences and regular locations. We establish user profiles through algorithm models to display commodities, news content and advertisements that may be of interest to you.
Chapter 3 Use and Processing of Personal Information
We use your personal information strictly in accordance with this Policy and relevant agreements for the following purposes: conducting risk control management to identify anomalies and prevent security threats; processing service transactions including order placement, payment, logistics and after-sales support; delivering service notifications; performing data analysis and product optimization to improve user experience; and pushing commercial advertisements and news content subject to your separate authorization.
We may adopt algorithm-based automated decision-making to improve service efficiency.
Your Rights: If an automated decision significantly affects your legitimate rights and interests, you have the right to request explanations, reject such decisions or apply for manual review.
We retain your personal information only for the shortest period necessary to fulfill specified processing purposes, unless otherwise mandated by applicable laws.
Judgment Criteria: The retention period is determined based on completed transactions, dispute resolution results, ongoing service maintenance, valid user consent and pending litigation matters.
Post-Expiration Processing: Upon the expiration of the retention period, we will permanently delete or anonymize relevant information to eliminate user identifiability through automated clearing mechanisms.
Chapter 4 Sharing, Transfer and Public Disclosure of Personal Information
We will not share your personal information with third parties except under the following circumstances: we have obtained your explicit consent; sharing with our affiliated companies to deliver integrated services, wherein only essential account and device data will be shared and all affiliates shall comply with this Policy and dedicated data protection agreements; sharing with authorized business partners to fulfill service commitments, with strict confidentiality obligations imposed to prohibit unauthorized usage; disclosure required by applicable laws, judicial proceedings or official governmental orders.
In the event of corporate restructuring such as merger and acquisition, your personal information may be transferred as part of business assets. We will notify you in advance and bind the transferee to the terms of this Policy. If the transfer leads to substantial changes to information processing purposes or methods, we will obtain your renewed explicit consent prior to execution.
We do not publicly disclose your personal information under normal circumstances. If public disclosure is necessary, we will obtain your separate consent and implement data desensitization. Prior user consent is not required under the following circumstances: safeguarding national security and public interests; responding to emergent public health incidents or implementing emergency risk aversion measures; cooperating with criminal investigations, judicial trials and other law enforcement activities; and other scenarios stipulated by applicable laws and regulations.
We integrate third-party Software Development Kits (SDKs) to enrich product functions. Such SDKs may collect device data and network environment information. We have completed comprehensive security assessments for all integrated third-party services and require them to adhere to the minimum necessity principle during data processing.
Chapter 5 Rights of Personal Information Subjects
Right of Access and Correction
You have the right to access your personal profiles, transaction records and other stored data. For historical records that cannot be modified online, you may contact our customer service team to submit correction requests.
You may request us to delete your personal information under the following conditions: the processing activities violate applicable laws and regulations; information is collected and used without valid user consent; processing behaviors breach relevant agreements; you stop using our services or have cancelled your account; we terminate relevant service operations. After completing deletion procedures, we will notify relevant third-party partners to synchronously delete corresponding user data.
You may withdraw your authorization for information processing at any time. The withdrawal of consent will only terminate subsequent processing activities and will not affect the legality of data processing completed prior to the withdrawal.
You may apply for copies of your personal information. We will provide core data including account information and transaction records in standardized and universally compatible structured formats.
Response Rules and Restrictions
We reserve the right to reject unreasonable requests with detailed explanations, including repetitive submissions without valid reasons, requests involving excessive technical costs, and impractical or high-risk applications.
Chapter 6 Information Security and Protection Measures
We adopt industry-standard organizational management mechanisms and technical solutions to protect your personal information, including the following measures:
Transmission Encryption: We adopt SSL/TLS encryption technology to secure the entire data transmission channel.
Storage Encryption: All sensitive personal information is stored in encrypted form.
Access Control: We enforce the minimum privilege principle for internal data access and record and audit all access behaviors.
Data Backup: A complete disaster recovery backup mechanism is established to guarantee data availability and integrity.
Emergency Response for Security Incidents
In case of security incidents such as information leakage, we will activate the emergency response plan immediately: contain and assess risks by isolating affected systems and evaluating the impact scope and severity; notify affected users in a timely manner via in-site messages, emails or official announcements to disclose incident details, disposal progress and preventive suggestions; report incidents to competent regulatory authorities and fully cooperate with official investigations.
Our services are primarily oriented toward adult users. Minors are prohibited from registering accounts without explicit consent from their parents or legal guardians.
For personal information collected from minors with guardian authorization, we only use or disclose such information within the scope permitted by law, upon explicit consent from guardians, or for the purpose of protecting the legitimate interests of minors.
We will erase relevant data in a timely manner if we accidentally collect personal information from minors without verifiable guardian consent.
Chapter 8 Policy Updates and Governing Law
We may update this Policy to adapt to business adjustments and changes in the legal environment. The revised version will be published on this official page. You have the right to stop using our services if you disagree with updated clauses. Your continued use of our services after the release of updates shall be deemed as your acceptance of the revised Privacy Policy. We recommend that you review this Policy regularly to stay informed of our personal information protection rules.
The formation, validity, interpretation, performance and dispute resolution of this Policy shall be governed by local applicable laws.
For any disputes arising out of or related to this Policy, you may contact us through official channels, and we will respond to your inquiries as soon as possible.
Please contact us via our official service channels if you have any questions or need to exercise your personal information-related rights. Our dedicated data protection team will process your requests efficiently. If you are dissatisfied with our response, you may file complaints with competent regulatory authorities including cyberspace administrations, telecommunication bureaus, public security organs and market supervision departments.