This Privacy Policy explains how the company Suizhou Xiao Bu E-commerce Co., Ltd., registered at Rm 303, Unit 4, Qinghe Xingyuan, Beijiao, Zengdu District, Suizhou - 441300, China (CN), collects, uses, stores and protects personal information when you visit this website or use the computer systems design and computer integrated systems design services described here. The services described on this website are developed and operated by the developer XiaoBu on behalf of the company. We are committed to treating your information with care, transparency and respect. By accessing this website or using our services, you agree to the practices described in this policy.
Welcome to the Privacy Policy of XIAOBU, the online home of Suizhou Xiao Bu E-commerce Co., Ltd. This document is written in plain language so that every visitor can understand what happens to their information from the moment they arrive on this site. We believe that privacy is not a feature of a service but a foundation of trust. This policy sets out the ground rules for how we handle personal information across our website, our communications and our technology services.
The term personal information, as used in this policy, means any information relating to an identified or identifiable individual. This includes obvious details such as a name, an email address or a telephone number, as well as less obvious details such as a device identifier, an IP address or a browsing record that could, alone or in combination with other data, be linked back to a specific person. We handle all such information under the standards described in this document.
Our services are designed for businesses that need reliable technology foundations for their e-commerce operations. The technology we build, integrate and operate is intended to support our clients in running their own businesses. This policy focuses on the information we handle in the course of operating this website and delivering our services, and it explains the choices you have regarding that information.
If you have questions about any part of this policy, you will find our full contact details in the final section. We welcome clear questions and we answer them promptly, because an informed visitor is the best kind of partner for us.
The information we collect falls into a small number of clear categories. We deliberately avoid gathering data that is not necessary for the operation of our website or the delivery of our services. The categories below describe what we may collect, why it matters, and how it is treated.
First, we collect contact and identity information. When you contact us through the website form, by email or by telephone, you may provide your name, your email address, your telephone number, your company name and the contents of your message. This information is necessary for us to respond to your enquiry, to prepare a proposal or to begin a working relationship with you.
Second, we collect account and engagement information when we work with a client. This may include business addresses, billing details, platform identifiers, order-processing configurations and technical settings that are required to deliver computer integrated systems design services. We treat this information as confidential and use it only for the purpose for which it was shared.
Third, we collect device and usage information automatically when you browse our website. This includes your IP address, browser type, operating system, referring pages, the pages you view and the time of your visit. This information helps us understand how visitors use our site, diagnose technical problems and improve the experience for everyone.
We do not intentionally collect sensitive categories of information, such as health data, political opinions or religious beliefs. If you send us such information by mistake, we will delete it where it is not needed for the purpose you sent it.
We collect information in three straightforward ways. The first is direct collection. You give us information deliberately when you fill in the contact form on our website, send us an email, telephone our office, or otherwise communicate with us directly. The information you share through these channels is collected with your full knowledge and consent.
The second way is automatic collection. When you visit our website, standard server logs and analytics tools record technical details about your device and your interaction with our pages. This happens automatically as part of how the internet works. This information is aggregated where possible and is used to understand traffic patterns and to improve our site.
The third way is collection from third parties. From time to time we may receive business contact information from public sources, from event registrations, or from partners who refer work to us. In each case we verify that the information was lawfully shared and we give you the same protections described in this policy.
We do not purchase personal information from data brokers, and we do not build hidden profiles of visitors for purposes other than the operation and improvement of our services. If we ever need information that is not listed here, we will ask for it transparently and explain exactly why we need it.
We use the information we collect for a limited set of purposes that are clearly connected to the services we provide. The primary purpose is to respond to your enquiries. When you contact us, we use your contact details to answer your questions, to provide information about our services and to follow up in a professional manner.
We also use information to deliver and manage our services. This includes preparing quotations, signing contracts, configuring systems, delivering computer integrated systems design projects, providing technical support and maintaining client accounts. For these purposes we use the contact, account and technical information described in the collection sections of this policy.
We use usage information to maintain and improve our website. Analytics help us understand which pages are useful, which parts of our site are confusing and where visitors lose their way. This insight lets us fix problems and make the site clearer and more helpful over time.
We use information to protect our rights and the security of our systems. This includes detecting and preventing fraud, abuse and technical attacks, enforcing our Terms of Service, and complying with legal obligations. We do not sell your personal information, and we do not share it with advertisers.
When the law requires us to identify a lawful basis for processing personal information, we rely on several well-established grounds. Each ground depends on the type of information and the purpose for which it is used.
The first basis is consent. When you voluntarily provide information through our contact form or subscribe to our communications, you give us clear permission to use that information for the purpose you intended. You may withdraw this permission at any time by contacting us, and we will honour that request promptly.
The second basis is the performance of a contract. When we enter into an agreement with a client, we need certain information to deliver the services described in that agreement. Without that information we could not fulfil our obligations, so this basis covers the practical running of our projects.
The third basis is legitimate interest. We have a legitimate interest in operating our website, understanding our visitors, protecting our systems and growing our business in a responsible way. We weigh this interest carefully against your rights and expectations, and we only rely on it where our interest does not override your privacy.
The fourth basis is legal obligation. Where a law or regulation requires us to retain or disclose information, we will do so to the extent required. This includes obligations relating to accounting, taxation and cooperation with authorities in the countries where we operate.
We keep personal information only for as long as it is needed for the purpose for which it was collected, and no longer than the law allows. Our retention periods are set with care so that we never hold data longer than necessary.
Contact and enquiry information is retained for a reasonable period to allow us to follow up on your request and to maintain a useful record of our conversations. If no business relationship follows, we review and delete or anonymise this information after a period that reflects the practical needs of our customer service.
Client account and project information is retained for the duration of our working relationship and for a reasonable period afterwards to support ongoing obligations, including warranties, support commitments and legal or accounting requirements.
Website usage logs are retained for a limited period, typically long enough to support security analysis and site improvement, after which they are deleted or aggregated. When information is no longer needed, we delete it securely or anonymise it so that it can no longer be linked to an individual.
We take the security of personal information seriously and apply appropriate technical and organisational measures to protect it. Our approach to security is practical and layered, reflecting both the sensitivity of the information and the way our business operates.
On the technical side, we use encryption in transit for information sent between your browser and our systems, we restrict access to personal information to people who need it for their work, and we keep our software and infrastructure patched and monitored for vulnerabilities. We apply the principle of least privilege, meaning that no one has access to more data than their role requires.
On the organisational side, we train our team on privacy and security expectations, we use written agreements with service providers who handle data on our behalf, and we review our practices regularly. Our systems are designed to be resilient, and we have procedures for detecting, responding to and recovering from any security incident.
No method of transmission or storage is completely secure, and we cannot guarantee absolute protection against every possible threat. However, we work hard to apply industry-standard safeguards and to respond responsibly if any risk to your information ever arises. If you believe your information has been affected by a security issue, please contact us using the details at the end of this policy.
The company operates from China, and the services described on this website are developed and operated by the developer XiaoBu. In the course of running our services, personal information may be stored or processed in countries other than the country where you are located. This is a normal part of operating global technology services.
Where information is transferred across borders, we take steps to ensure that it receives a level of protection that is consistent with the commitments in this policy. We rely on recognised transfer mechanisms where applicable, and we review our transfer arrangements as regulations change.
We want you to understand that wherever your information travels, we keep the same promises. The protections described in this policy apply to your personal information regardless of the country where it is processed. If you have concerns about international transfers, we welcome the chance to discuss them with you directly.
Our website and services are directed to business users and are not designed for children. We do not knowingly collect personal information from children under the age of thirteen, and we do not market our services to children.
If you are a parent or guardian and you believe that your child has provided us with personal information without your knowledge, please contact us immediately using the details in the final section of this policy. If we learn that we have collected personal information from a child without appropriate consent, we will take steps to delete that information promptly.
Because our services are business technology services, the information we handle is almost always provided by adult professionals acting on behalf of companies. Nevertheless, we apply the same protective standards to every individual whose information we handle, regardless of age.
Depending on the laws that apply to you, you may have a number of rights in relation to your personal information. We recognise these rights and we will handle any request we receive fairly and promptly. The most common rights are described below.
You have the right to request access to the personal information we hold about you. You have the right to ask us to correct information that is inaccurate or incomplete. You have the right to request the deletion of information where it is no longer necessary, where consent has been withdrawn, or where retention is not required by law.
You have the right to object to processing that relies on legitimate interest, where your circumstances give you reason to do so. You have the right to request a portable copy of information you have provided to us in a structured, machine-readable format where this is technically feasible. You also have the right to withdraw consent at any time where we rely on consent as our legal basis.
To exercise any of these rights, contact us using the details in the final section. We may ask you to verify your identity before acting on a request, and we will respond within the time limits set by applicable law. We will not charge a fee for a reasonable request, and we will never penalise you for exercising your rights.
Our website may contain links to websites and services operated by third parties, including payment platforms, analytics providers and partner sites. This Privacy Policy does not apply to those third parties, and we are not responsible for their practices.
When you leave our website, we encourage you to read the privacy policy of every site you visit. A link from our website does not mean we endorse the practices of that site, and you should make your own assessment of any third party before sharing information with them.
We also use third-party tools as part of operating this website, such as hosting and analytics services. These providers process limited information on our behalf under contracts that restrict how they may use it. They are independent data controllers or processors in their own right, and their own policies govern their services.
We may update this Privacy Policy from time to time to reflect changes in our services, our technology, the law or our business practices. When we make changes, we will update the effective date at the top of this page and we will post the revised policy here.
Where changes are significant, we will take reasonable steps to bring them to your attention, such as a notice on our website or a message to the contact details we hold for you. We encourage you to review this page periodically so that you are always aware of how we handle your information.
Your continued use of our website or services after a revision is published will be treated as acceptance of the revised policy. If you do not agree with a revised policy, you may stop using our services and request the deletion of information we hold about you, subject to legal requirements.
If you have any questions, concerns or requests relating to this Privacy Policy or to the way we handle personal information, please contact us. We are happy to explain anything you do not fully understand, and we take all privacy questions seriously.
Company: Suizhou Xiao Bu E-commerce Co., Ltd.
Address: Rm 303, Unit 4, Qinghe Xingyuan, Beijiao, Zengdu District, Suizhou - 441300, China (CN)
Contact name: Han Shugui
Email: touch@xiaobu.autos
Telephone: +12233264468
We aim to respond to all enquiries within a reasonable time, and in any case within the period required by applicable law. Thank you for taking the time to understand how we protect your information. Your trust is the foundation of our work.