PRIVACY POLICY
Welcome to FSaeflower LLC!
- Scope and method of information collection
User registration information
When users register an account on this website, they need to provide personal registration information, including but not limited to name, email address, contact number and delivery address. Such information is used for core services such as account management, order processing and logistics delivery.
Browsing behavior data
The website automatically records user access behavior, including anonymous data such as IP address, browser type, access time, page dwell time, etc. Such data is transmitted to the server through TLS encryption technology for statistical analysis and website performance optimization.
Third-party data acquisition
Obtain user data from business partners through legal means, such as consumer preference data shared by affiliated companies, for personalized recommendation services. - Information use rules
Service provision
User information is only used for the following purposes:
Processing order and payment information
Providing after-sales service and customer support
Sending order-related notifications and logistics updates
Personalized service
Push customized product recommendations based on user browsing history and purchase history. Such services require the user’s explicit consent, and the user can choose to opt out at any time through account settings.
Fulfillment of legal obligations
When required by law or investigated by judicial institutions, the website will disclose user information in accordance with the law. For example, when it involves complaints of intellectual property infringement, the necessary information must be provided to the party complained against to resolve the dispute. - Information sharing and disclosure
Third-party service providers
User data may be shared with the following service providers:
Logistics partners (such as UPS, FedEx) for delivery services
Payment processors (such as Stripe, PayPal) to ensure transaction security
Cloud service providers (such as AWS) for data storage
All service providers must sign a data processing agreement to ensure compliance with Article 28 of the GDPR and the privacy protection standards of the CCPA.
User authorization sharing
Users can choose to share information with partners on their own, such as when participating in joint marketing activities, they need to confirm their authorization twice.
Data anonymization
Shared data must be anonymized, such as shortening the IP address to a level that cannot identify the individual before transmission. - User rights protection
Right to access and correction
Users can view and modify their personal information at any time through account settings, or submit a written application to obtain a copy of the data.
Right to Deletion
Users may request deletion of personal information if the deletion conditions specified in Article 17 of the GDPR or the CCPA are met. For example, when the data is no longer used for the original purpose of collection, it must be deleted within 30 days.
Right to Restrict Processing
If the user has doubts about the accuracy of the data, he or she may request to restrict processing until the problem is resolved. - Data Storage and Security
Cross-border Transfer
User data may be stored on US servers and follow the Privacy Shield Agreement under Article 45 of the GDPR. For example, when using Google Analytics, the IP address is shortened within the EU and then transferred to the United States to ensure compliance with data protection standards.
Security Measures
Implement multiple security mechanisms:
User passwords are stored with AES-256 encryption
Transmission data is encrypted via TLS 1.3
Perform regular third-party security audits
Data Retention Period
User information is retained for 3 years after the account is cancelled to handle potential legal disputes. - Cookies and tracking technology
Cookie use
The website uses session cookies (expired when the browser is closed) and persistent cookies (retained for up to 1 year) to:
Identify repeat users
Optimize page loading speed
Provide personalized content recommendations
Tracking technology
Integrate Google Analytics to generate anonymous user profiles. Users can reject cookies through browser settings or install Google opt-out plug-ins to prevent tracking. - Protection of minors
Age limit
Users under 13 years old are not allowed to register an account. If an underage user is found, their information will be deleted immediately and the service will be terminated.
Parental control
Provide parents with deletion rights. Parents can submit proof of identity and guardianship through the customer service email to apply for deletion of minors’ data. - Applicable law and dispute resolution
Governing law
These terms are governed by law, and users agree to accept the non-exclusive jurisdiction of the court.
Dispute resolution
Disputes shall be resolved through negotiation first, and if negotiation fails, they may be submitted to the Consumer Privacy Commission for mediation.