Privacy Policy

I. Scope of Application and Legal Effect

Scope of Application

This Statement covers all types of services provided by us to you through all access channels, including without limitation official websites, mobile applications, desktop clients, mini-programs, smart hardware devices and offline service terminals. Any form of access to our services by you via any device or network method shall be governed by this Statement.

Relevant Agreements

This Statement serves as a fundamental legal contract between you and us concerning the processing of your personal information and functions as a supplementary document to the User Agreement. In case of any inconsistency between this Statement and the User Agreement, this Statement shall prevail unless otherwise required by applicable laws.

 

II. Collection of Personal Information

We only collect personal information to the extent necessary for the delivery of specific service features. Withholding required information may limit your access to partial advanced functions, while basic services will remain available for normal use.

Information Actively Submitted by You

Account related data submitted by you throughout account registration and personal profile completion.

Automatically Collected Data

To enhance service quality and overall security, we automatically collect relevant data through Cookies and other mainstream tracking technologies. Collected device and environmental data includes device model, operating system version, screen resolution, unique device identifiers, battery status, signal condition and network category. Log data covers user operation trajectories, system error records and public network IP addresses.

Supplementary Data from Third Parties

Subject to your explicit authorization, we may obtain account data and behavioral information shared by our affiliated institutions and authorized business partners, so as to deliver coherent and seamlessly connected cross-platform services.

 

III. Usage of Personal Information

The collection and processing of your personal information aims to deliver stable, secure and tailor-made network services. Detailed application scenarios are specified as follows.

Core Service Delivery

We create, verify and administer user accounts to support identity authentication and normal login; process subscription management, after-sales support and data inquiry requests; distribute system notifications involving version updates, routine maintenance reminders and security risk alerts.

Service Optimization and Upgrade

We analyze service usage frequency, software crash records and performance defects to fix system vulnerabilities and improve response efficiency as well as overall operational stability. Interface layouts and functional entries will be adjusted according to user behavioral habits to simplify operating procedures and optimize user experience.

Security Risk Management

We identify malicious network requests, abnormal bulk registration behaviors, traffic manipulation activities and potential network attacks. We also monitor spam content and inappropriate remarks to maintain a safe, standardized and orderly online service environment.

Personalization and Commercialized Distribution

Content recommendation services will be enabled only after obtaining your separate consent, whereby we screen and push targeted content based on personalized interest tags.

Data Retention Period

Personal information shall be retained only for the shortest time necessary to accomplish predetermined service purposes. The retention cycle is determined based on your active usage status and statutory data retention obligations stipulated by relevant laws and regulations. Upon expiration, all stored data will be permanently erased or fully anonymized to eliminate personal identifiability and prevent data restoration.

 

IV. External Disclosure of Personal Information

We strictly prohibit the sale, lease and commercial trading of your personal information. Data sharing shall only be conducted under the legally permitted circumstances listed below.

Upon Your Explicit Consent

Prior to disclosing your personal information to any external third party, we will fully inform you of data processing purposes, receiving parties and detailed data scope, and complete relevant sharing procedures only after acquiring your voluntary authorization.

Data Sharing with Affiliated Entities

To realize unified account management and cross-platform data synchronization, we may share essential account identifiers and device information with our affiliated companies. All affiliated parties shall abide by the identical personal information protection standards specified in this Statement.

Entrusted Processing by Authorized Partners

We may entrust professional third-party service providers to process minimally necessary user data for the realization of specific service functions. Binding legal contracts will be signed to constrain cooperating parties from utilizing acquired data beyond authorized service scope, enforce equivalent security protection mechanisms, and require permanent data deletion once entrusted processing tasks are completed.

Mandatory Disclosure under Legal Requirements

Prior user consent shall not be required for information disclosure when responding to effective legal documents issued by judicial authorities, cooperating with official investigations conducted by public security and national security institutions, coping with emergent public health incidents or implementing emergency risk aversion measures, as well as other situations prescribed by applicable laws and regulations.

 

V. Your Rights over Personal Information

In accordance with prevailing personal information protection laws, you retain comprehensive control over your personal data and are entitled to exercise the following legitimate rights.

Right to Access and Duplicate

You may log into your user account to review basic personal information at any time, and apply to obtain complete data copies in structured electronic formats for personal storage or cross-platform data migration.

Right to Correct and Supplement

You are allowed to modify inaccurate or incomplete personal data directly through the account management page. For historical records that cannot be edited online, you may contact our customer support team to submit manual correction applications.

Right to Delete

You are eligible to request data deletion if information processing activities violate applicable laws, data is collected and used without valid authorization, processing behaviors breach contractual agreements, you have completed account cancellation, or we terminate corresponding service operations. After confirming valid deletion requests, we will suspend all relevant data processing activities and notify third-party recipients to synchronously remove your personal information.

Right to Revoke Consent

You may revoke previously granted authorization for consent-based data processing at any time. The revocation shall only invalidate subsequent processing behaviors and shall not affect the legality of data processing completed prior to revocation.

Right to Cancel Account

You may voluntarily submit an account cancellation application. This operation is irreversible. Upon successful cancellation, all account data and personal information will be thoroughly eliminated and cannot be restored, except for log records required by laws to be retained. You shall assume all corresponding risks and losses arising from account cancellation.

Right to Regulate Automated Systems

With regard to automated content recommendation and intelligent content filtering systems, you have the right to request detailed explanations of underlying decision logic, manually adjust personalized preference settings, or permanently disable the recommendation function.

Response Rules and Restrictions

We promise to reply to you as soon as possible. We may lawfully refuse requests that are baseless, have high technical costs, pose risks, or are unrealistic, and provide reasons.

 

VI. Information Security and Technical Safeguards

We have established systematic internal management regulations and multi-level technical defense mechanisms to prevent unauthorized access, information leakage, data tampering and accidental data loss.

Technical Protection Mechanisms

Transmission encryption is adopted across all data interaction procedures between client terminals and servers via the HTTPS protocol to defend against man-in-the-middle interception attacks. Sensitive personal information is stored in encrypted form with high-intensity algorithms such as AES at the database level. We implement segmented permission management, restricting data access exclusively to authorized employees with job-related demands, while all access behaviors are fully logged and audited periodically. A multi-location disaster recovery backup system is deployed to support rapid data recovery against hardware failures, natural disasters and unexpected accidents so as to sustain stable service operation.

Emergency Response Mechanism for Security Incidents

In the event of data security incidents including information leakage, loss and tampering, we will activate the emergency response mechanism without delay. Affected systems will be isolated and security loopholes will be patched to contain risk expansion. We will conduct comprehensive evaluation on hazard severity, impact scope and involved user data categories. In accordance with legal obligations, we will report incidents to competent regulatory departments and notify affected users through in-app notifications, emails and official announcements regarding incident overview, remedial measures and preventive suggestions.

 

VII. Minor Protection

We attach high priority to the protection of minors’ personal information. Legal guardians shall assume supervisory responsibilities to guide and standardize minors’ online activities. Guardians have the right to demand data deletion if we collect minors’ information without obtaining valid guardian consent. For information collected with formal guardian authorization, we limit data usage and disclosure within legally permitted scope, consented scope or necessary scope for protecting minors’ legitimate interests. We will immediately erase relevant data once we detect unauthorized minor accounts.

 

VIII. Statement Update and Dispute Resolution

We will revise and update this Statement according to business adjustments and legislative updates. Non-substantial revisions will be published directly on this page; material revisions affecting core user rights will be announced through prominent methods including pop-up reminders and service pushes, and additional user consent will be collected when necessary.

Applicable Law

The formation, legal validity, interpretation, execution and dispute resolution of this Statement shall be governed by local applicable laws.

Contact Information

If you have any inquiries or need to exercise your rights related to personal information, please get in touch with us via official service channels. Our dedicated privacy protection team will verify your identity and provide professional replies as soon as possible.

档铺网——在线文档免费处理