Privacy Policy

Last Updated: 15 May, 2026

 

This Privacy Policy (the "Policy") explains how Appotronics Corporate Limited (hereinafter referred to as "we", "us", or "our") collects, uses, stores, shares, and protects the personal information of users (hereinafter referred to as "you" or "users") who access or use our website https://appotronicsglobal.com/(the "Website") and any related services (collectively, the "Services").

 

By accessing or using our Website and Services, you acknowledge that you have read, understood, and agreed to the collection, use, and disclosure of your personal information in accordance with this Policy. If you do not agree to this Policy, please do not access or use our Website or Services.

 

This Policy complies with the General Data Protection Regulation (GDPR) of the European Union, the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and other applicable privacy laws and regulations in the regions where we operate and where our users are located.

 

  1. Definitions

 

Personal Information: Any information that can identify, relate to, describe, or be associated with a specific individual, directly or indirectly. This includes, but is not limited to, names, email addresses, phone numbers, IP addresses, device identifiers, browsing history, and payment information.

 

Sensitive Personal Information: A subset of Personal Information that requires enhanced protection, including but not limited to financial account information, health data, biometric data, precise geolocation, and personal information of individuals under 16 years of age.

 

Processing: Any operation or set of operations performed on Personal Information, including collection, recording, organization, storage, adaptation, retrieval, consultation, use, disclosure, transmission, or deletion.

 

Data Controller: The entity that determines the purposes and means of processing Personal Information; in this case, https://appotronicsglobal.com/.

 

Data Processor: An entity that processes Personal Information on behalf of the Data Controller (e.g., third-party service providers).

 

  1. Information We Collect

 

We collect Personal Information from you in two main ways: information you provide voluntarily, and information we collect automatically when you use our Website and Services. We only collect Personal Information that is necessary for the purposes outlined in this Policy, in line with the principle of "data minimization" under applicable laws.

 

2.1 Voluntarily Provided Information

 

When you use our Services, you may choose to provide us with the following Personal Information:

 

Account Information: When you register an account, we may collect your name, email address, password, phone number, and other information you choose to provide (e.g., profile photo).

 

Transaction Information: If you make a purchase or use paid Services, we may collect payment details (e.g., credit card information, PayPal account details), billing address, and shipping address.

 

Communication Information: When you contact our customer support (via email, chat, or other channels), we may collect your communication content, contact information, and any other information you provide to resolve your inquiry.

 

Optional Information: You may choose to provide additional information (e.g., preferences, interests) to enhance your experience with our Services.

 

2.2 Automatically Collected Information

 

When you access or use our Website and Services, we may automatically collect the following information through cookies, web beacons, and other tracking technologies:

 

Technical Information: IP address, device type, operating system, browser type and version, screen resolution, and other technical details about your device and internet connection.

 

Browsing Information: Pages you visit on our Website, the order of visits, time spent on each page, links clicked, search queries, and other browsing behavior.

 

  1. Legal Basis for Processing

 

Under the GDPR and other applicable laws, we process your Personal Information only on the following legal bases:

 

Consent: When you explicitly agree to the processing of your Personal Information (e.g., when you register an account, or opt in to marketing communications). You may withdraw your consent at any time, as described in Section 7 below.

 

Performance of a Contract: When processing is necessary to fulfill our obligations under a contract with you (e.g., processing payment information to complete a purchase, or using your contact information to deliver the Services you requested).

 

Legitimate Interests: When processing is necessary to pursue our legitimate business interests, provided that such interests do not override your privacy rights and interests. Our legitimate interests include improving our Services, enhancing user experience, preventing fraud, and ensuring the security of our Website and Services.

 

Legal Obligation: When processing is necessary to comply with applicable laws, regulations, or legal requirements (e.g., retaining records for tax or audit purposes).

 

  1. How We Use Your Information

 

We use the Personal Information we collect for the following purposes, which are consistent with the legal bases outlined in Section 3:

 

To provide and maintain our Services, including registering your account, processing transactions, delivering products or services, and responding to your inquiries.

 

To improve and optimize our Website and Services, including analyzing user behavior, identifying areas for improvement, and developing new features or services.

 

To ensure the security of our Website and Services, including detecting and preventing fraud, unauthorized access, and other security threats.

 

To send you important updates and notifications, including changes to our Policy, service announcements, and other information related to your account or Services.

 

To send marketing communications (if you have opted in), including information about our products, services, promotions, and special offers. You may opt out of these communications at any time.

 

To comply with applicable laws, regulations, and legal obligations, including responding to legal requests (e.g., subpoenas, court orders) and conducting audits.

 

To process and respond to your requests, including requests to access, correct, or delete your Personal Information.

 

We will not use your Personal Information for purposes that are not disclosed in this Policy without first obtaining your consent, unless required by law.

 

  1. Sharing and Disclosure of Your Information

 

We do not sell, rent, or lease your Personal Information to third parties for marketing purposes, except as explicitly disclosed in this Policy. We may share your Personal Information in the following circumstances:

 

Third-Party Service Providers: We may share your Personal Information with trusted third-party service providers who assist us in operating our Website and providing our Services. These providers include payment processors, hosting services, customer support platforms, analytics tools, and marketing service providers. We only share the Personal Information necessary for these providers to perform their services, and we require them to comply with this Policy and applicable privacy laws, including entering into Data Processing Agreements (DPAs) where required by the GDPR.

 

Legal Requirements: We may disclose your Personal Information if required to do so by law, regulation, or legal process (e.g., subpoenas, court orders, or requests from government authorities), or to protect our rights, property, or safety, or the rights, property, or safety of others.

 

Business Transfers: In the event of a merger, acquisition, sale of assets, or other business transfer, your Personal Information may be transferred to the acquiring or successor entity. We will notify you of any such transfer in advance, and the acquiring entity will be bound by the terms of this Policy.

 

With Your Consent: We may share your Personal Information with third parties if you explicitly consent to such sharing (e.g., sharing your information with a partner to provide a joint service).

 

We will not share your Sensitive Personal Information with third parties unless required by law or with your explicit consent, and we will ensure that any such sharing complies with enhanced protection requirements under applicable laws (e.g., CCPA, GDPR).

 

  1. Cross-Border Data Transfers

 

As an overseas website, we may transfer your Personal Information to countries outside of your country of residence, including countries that may have different privacy laws than your home country. We ensure that all cross-border data transfers comply with applicable laws, including the GDPR and CCPA, by implementing appropriate safeguards, such as:

 

Transferring data to countries that have been deemed to provide an adequate level of data protection by the European Commission (for GDPR purposes) or other relevant authorities.

 

Entering into standard contractual clauses (SCCs) approved by the European Commission or other applicable data protection authorities with our data processors and other third parties involved in cross-border transfers.

 

Implementing other appropriate technical and organizational measures to ensure the protection of your Personal Information during and after transfer.

 

  1. Your Rights Regarding Your Information

 

Under applicable privacy laws (e.g., GDPR, CCPA), you have certain rights regarding your Personal Information. We will respond to your requests in a timely manner, in accordance with applicable laws (typically within 15-30 business days, depending on the jurisdiction).

 

Right to Access: You have the right to request access to the Personal Information we hold about you, including details about how we collect, use, and share your information.

 

Right to Correction: You have the right to request that we correct any inaccurate or incomplete Personal Information we hold about you. If we receive information regularly from data brokers, we will ensure corrected data is not overridden by inaccurate information later received from such brokers.

 

Right to Deletion: You have the right to request that we delete your Personal Information, subject to certain exceptions (e.g., if we need to retain the information to comply with legal obligations or fulfill a contract).

 

Right to Restrict Processing: You have the right to request that we restrict the processing of your Personal Information (e.g., if you dispute the accuracy of the information or object to the processing).

 

Right to Data Portability: Under the GDPR, you have the right to request that we provide you with your Personal Information in a structured, commonly used, and machine-readable format, or to transfer it directly to another data controller (where technically feasible).

 

Right to Withdraw Consent: If we process your Personal Information based on your consent, you may withdraw your consent at any time. Withdrawing consent will not affect the lawfulness of processing based on consent before its withdrawal.

 

Right to Opt-Out: Under the CCPA, you have the right to opt out of the sale or sharing of your Personal Information. We will provide a way for you to confirm the status of your opt-out request, including supporting opt-out preference signals such as Global Privacy Control.

 

Right to Object: You have the right to object to the processing of your Personal Information based on our legitimate interests, or for direct marketing purposes. We will stop processing your information unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms.

 

Right to Contest Health Data Corrections: Under the CCPA, if we deny your request to correct health-related Personal Information, you have the right to submit a written statement of no more than 250 words contesting the accuracy of such information. Upon your request, we will make this statement available to any third party that previously received the contested information.

 

To exercise any of these rights, please contact us using the contact information provided in Section 12 below. We may require you to verify your identity before processing your request to protect the security of your Personal Information.

 

  1. Data Retention

 

We retain your Personal Information only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable laws and regulations. The retention period varies based on the type of information and the purpose of processing, and we follow the principle of minimum necessary retention at all times.

 

Upon your request for deletion, we will delete or anonymize your Personal Information to the fullest extent permitted by law, unless we are required to retain such information for legal, regulatory, or legitimate business purposes. If we retain your Personal Information for longer than 12 months, you may request access to all such information dating back to January 1, 2022, in accordance with CCPA requirements.

 

  1. Data Security

 

We take the security of your Personal Information seriously, and implement appropriate technical, administrative, and physical safeguards to protect it from unauthorized access, disclosure, alteration, damage, or destruction. Our security measures include but are not limited to:

 

Encryption of Personal Information during transmission and at rest.

Strict access control mechanisms to limit access to Personal Information to authorized staff only.

Regular security audits, vulnerability scanning, and risk assessments.

Privacy and data security training for all authorized personnel.

Established breach response and incident management protocols.

 

While we maintain commercially reasonable security practices, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security of your data, but will promptly notify affected users and competent authorities of any data breach that may impact your privacy rights, in full compliance with applicable laws.

 

Before engaging in activities involving the sale or sharing of Personal Information, processing Sensitive Personal Information, or deploying automated decision-making technologies, we conduct dedicated privacy risk assessments and implement corresponding protective measures.

 

  1. Children's Privacy

 

Our Website and Services are not directed to or intended for use by children under the age of 13 (or under 16 for users in the European Economic Area under GDPR). We do not knowingly collect Personal Information from children in these age groups without verifiable parental or guardian consent. If we become aware that we have inadvertently collected such information, we will immediately delete it and take reasonable steps to stop further collection from minors.

 

Under CCPA/CPRA, Personal Information relating to consumers under the age of 16 is classified as Sensitive Personal Information and is subject to enhanced protection. We will honor valid requests to limit the use of such information where required by law.

 

  1. Changes to This Privacy Policy

 

We reserve the right to update or revise this Policy at any time to reflect changes in our data practices, applicable laws, or the services we provide. We will notify users of material changes by posting the updated Policy prominently on our Website, and via email (if you have provided a valid email address) where required.

 

The revised Policy will take effect on the "Last Updated" date shown at the top of this document. We encourage you to review this Policy regularly for any updates. Continued use of our Website and Services after the effective date of changes constitutes your acceptance of the revised Policy.

 

  1. Contact Us

 

If you have any questions, complaints, requests, or concerns regarding this Privacy Policy or our processing of your Personal Information, please contact us at:

 

Appotronics Corporation Limited

 

Address: Appotronics Headquarters Tower, No. 8, Xiandong Road, Nanshan District, Shenzhen, Guangdong, China

 

Email: info.business@appotronics.com

 

If you are located in the European Economic Area, you have the right to lodge a complaint with your local Data Protection Authority (DPA) if you believe our processing violates the GDPR. If you are a California resident, you may contact the California Privacy Protection Agency (CPPA) regarding complaints related to CCPA/CPRA compliance.

 

For all matters related to data protection compliance, privacy inquiries, or requests related to your personal information, please contact us through the privacy contact channels provided above, and we will ensure timely and compliant handling in accordance with applicable laws.

 

This Policy is made available in English to ensure clarity, accessibility, and understandability for users in their preferred language, in compliance with global privacy transparency requirements.