Menu

Privacy policy

Winsnor Privacy Policy

Effective Date: [2025-2-13]
Last Updated: [2025-2-13]

We understand how important privacy is to you. This policy details how Winsnor ("we", "us" or "our") collects, uses, stores and protects your personal information and how you can exercise your data rights. Please read this carefully before using our website ([www.winsnor.com](http://www.winsnor.com)) or services.

---

I. Information We Collect
1. Information provided by you
- Account registration: name, email address, phone number, shipping address
- Transaction information: payment vouchers (processed via encrypted channels), order history
- Interaction data: questionnaires, product reviews, customer service communication records

2. Technical Information Collected Automatically
- Device information: IP address, browser type, operating system, device identifier
- Behavioural data: page clickstream, length of stay, shopping cart behaviour (via cookies and similar technologies)
- Location: Country/city targeting (for tax calculations and logistics optimization)

3. Third Party Sharing Information
- Social media: Get public profile information (e.g., username, profile picture) when you log in with your social media account
- Payment gateway: transaction status and basic verification information (we do not store your card details)
- Ad Platforms: Anonymized user tags (for personalized ad optimization)

---

II. How We Use Information
| Destination Type | Examples of specific scenarios | Legal Basis |
|------------------|---------------------------------------|------------------------|
| Contract performance | Order processing, logistics tracking, after-sales service | Fulfillment of contractual obligations |
| Legitimate interest | Fraud prevention, system security maintenance, and service quality optimization Legal business rights |
| User consent | Direct marketing emails, cookie preferences | Your express authorization |

---

III. Data Sharing and Disclosure
We do not sell** your personal information and only share it in the following circumstances:
- Essential Service Providers: Logistics Partners, Payment Processors, Cloud Service Providers (all with NDAs)
- Legal Requirements: Responding to mandatory requests such as court orders, government investigations, etc
- Business Transfers: In the event of a merger or reorganization, the receiving party will continue to comply with its obligations under this policy

---

IV. Your Data Rights
Under applicable laws (e.g., GDPR, CCPA), you have the right to:
1. Access & Export: Get a copy of the personal information we hold about you
2. Correction and Deletion: Correction of inaccurate data or request deletion (except for legal holds)
3. Restriction of Processing: Suspension of use during a data accuracy dispute
4. Right to object: object to data processing based on legitimate interests (e.g. targeted advertising)
5. Withdrawal of Consent: Withdraw your consent by contacting us through your account settings or email

How to exercise rights: Send an email to [Privacy Protection Mailbox] or self-service through the account center (response time: within 30 days)

---

V. Data Security Measures
- Technical protection: SSL encrypted transmission, regular penetration testing, and data anonymization
- System control: the principle of least privilege access for employees, supplier security audit
- Contingency plan: 72-hour data breach notification mechanism (if required by applicable law)

---

VI. International Data Transfer
Our servers are located in [fill in the region, e.g. "United States"), and if your information is transferred across borders (e.g., the European Union → the United States), we will ensure the security of the following ways:
- Sign EU Standard Contractual Clauses (SCCs)
- Select a Privacy Shield certified service provider (if applicable)

---

7. Cookie Policy
- Necessary Cookies: To maintain the basic functionality of the website (cannot be turned off)
- Analytical cookies: tools such as Google Analytics to optimize the experience (can be declined)
- Advertising cookies: used for cross-platform interest matching (manual consent required)
- How to manage: Adjust through your browser settings or the cookie control in the footer of your website

---

8. Children's Privacy
We do not actively collect information from children under the age of 13 (or the applicable age in your jurisdiction). If you find that it has been collected by mistake, please contact us immediately to delete it.

Nginx server needs to configure pseudo-static rules, click View configuration method