PRIVACY POLICY

Welcome to FSaeflower LLC!

  1. Scope and method of information collection
    User registration information
    When users register an account on this website, they need to provide personal registration information, including but not limited to name, email address, contact number and delivery address. Such information is used for core services such as account management, order processing and logistics delivery.
    Browsing behavior data
    The website automatically records user access behavior, including anonymous data such as IP address, browser type, access time, page dwell time, etc. Such data is transmitted to the server through TLS encryption technology for statistical analysis and website performance optimization.
    Third-party data acquisition
    Obtain user data from business partners through legal means, such as consumer preference data shared by affiliated companies, for personalized recommendation services.
  2. Information use rules
    Service provision
    User information is only used for the following purposes:
    Processing order and payment information
    Providing after-sales service and customer support
    Sending order-related notifications and logistics updates
    Personalized service
    Push customized product recommendations based on user browsing history and purchase history. Such services require the user’s explicit consent, and the user can choose to opt out at any time through account settings.
    Fulfillment of legal obligations
    When required by law or investigated by judicial institutions, the website will disclose user information in accordance with the law. For example, when it involves complaints of intellectual property infringement, the necessary information must be provided to the party complained against to resolve the dispute.
  3. Information sharing and disclosure
    Third-party service providers
    User data may be shared with the following service providers:
    Logistics partners (such as UPS, FedEx) for delivery services
    Payment processors (such as Stripe, PayPal) to ensure transaction security
    Cloud service providers (such as AWS) for data storage
    All service providers must sign a data processing agreement to ensure compliance with Article 28 of the GDPR and the privacy protection standards of the CCPA.
    User authorization sharing
    Users can choose to share information with partners on their own, such as when participating in joint marketing activities, they need to confirm their authorization twice.
    Data anonymization
    Shared data must be anonymized, such as shortening the IP address to a level that cannot identify the individual before transmission.
  4. User rights protection
    Right to access and correction
    Users can view and modify their personal information at any time through account settings, or submit a written application to obtain a copy of the data.
    Right to Deletion
    Users may request deletion of personal information if the deletion conditions specified in Article 17 of the GDPR or the CCPA are met. For example, when the data is no longer used for the original purpose of collection, it must be deleted within 30 days.
    Right to Restrict Processing
    If the user has doubts about the accuracy of the data, he or she may request to restrict processing until the problem is resolved.
  5. Data Storage and Security
    Cross-border Transfer
    User data may be stored on US servers and follow the Privacy Shield Agreement under Article 45 of the GDPR. For example, when using Google Analytics, the IP address is shortened within the EU and then transferred to the United States to ensure compliance with data protection standards.
    Security Measures
    Implement multiple security mechanisms:
    User passwords are stored with AES-256 encryption
    Transmission data is encrypted via TLS 1.3
    Perform regular third-party security audits
    Data Retention Period
    User information is retained for 3 years after the account is cancelled to handle potential legal disputes.
  6. Cookies and tracking technology
    Cookie use
    The website uses session cookies (expired when the browser is closed) and persistent cookies (retained for up to 1 year) to:
    Identify repeat users
    Optimize page loading speed
    Provide personalized content recommendations
    Tracking technology
    Integrate Google Analytics to generate anonymous user profiles. Users can reject cookies through browser settings or install Google opt-out plug-ins to prevent tracking.
  7. Protection of minors
    Age limit
    Users under 13 years old are not allowed to register an account. If an underage user is found, their information will be deleted immediately and the service will be terminated.
    Parental control
    Provide parents with deletion rights. Parents can submit proof of identity and guardianship through the customer service email to apply for deletion of minors’ data.
  8. Applicable law and dispute resolution
    Governing law
    These terms are governed by law, and users agree to accept the non-exclusive jurisdiction of the court.
    Dispute resolution
    Disputes shall be resolved through negotiation first, and if negotiation fails, they may be submitted to the Consumer Privacy Commission for mediation.