1. Introduction
Kunming Fangren Trading Co., Ltd. (hereinafter referred to as the Company, we, us, or our) is deeply committed to protecting the privacy and personal data of every individual who interacts with our website, services, and business operations. This Privacy Policy explains in clear and comprehensive terms how we collect, use, disclose, retain, and safeguard your information when you visit our website at https://www.fangren.lol or engage with our computer systems design and related technical services.
The developer FangRen established the Company with a foundational belief that technology services and data protection must advance together. We recognize that the trust our clients place in us extends beyond the quality of our system designs to encompass the integrity with which we handle their information. This policy reflects that commitment and has been drafted to meet or exceed the requirements of applicable data protection laws including the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and the Personal Information Protection Law of the Peoples Republic of China (PIPL), to the extent each applies to our operations.
By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with any part of this policy, you should discontinue use of our website and services. We encourage you to review this document carefully and to contact us with any questions using the contact details provided in Section 17.
We may update this Privacy Policy from time to time to reflect changes in our practices, legal obligations, or the evolving technological landscape. When we make material changes, we will revise the last updated date at the top of this page and, where appropriate, provide additional notice through our website or via direct communication. Continued use of our services after such changes constitutes acceptance of the revised policy.
2. Scope of This Policy
This Privacy Policy applies to all personal data collected through our website at https://www.fangren.lol, through direct communications with our team via email at connect@fangren.lol or telephone at +15856344594, and through any offline interactions that occur in the course of our business relationship with clients and partners. The policy covers information collected from prospective clients, current clients, website visitors, job applicants, and any other individuals whose data we may process in the delivery of our computer systems design and integrated technical services.
This policy does not apply to third-party websites, applications, or services that may be linked from our website. We are not responsible for the privacy practices of those third parties, and we encourage you to review their respective privacy policies before providing any personal information. Additionally, this policy does not govern data that has been anonymized or aggregated in a manner that cannot reasonably be used to identify an individual.
3. Information We Collect
We collect several categories of information depending on the nature of your interaction with us. The following subsections describe each category in detail so that you have a complete understanding of what data we may hold.
3.1 Personal Identification Information
When you contact us through our website contact form, send an email, or engage our services, we may collect your full name, email address, telephone number, job title, company name, and postal address. This information is necessary for us to respond to your inquiries, provide service proposals, and maintain our business relationship.
3.2 Technical and Usage Data
When you visit our website, our servers automatically collect certain technical information including your Internet Protocol (IP) address, browser type and version, operating system, device type, referring URLs, pages viewed, time spent on each page, and the date and time of your visit. This data is collected through server logs and analytics tools and is used solely for website performance monitoring, security analysis, and improving user experience.
3.3 Communication Data
We retain records of our communications with you including emails, contact form submissions, telephone call logs, and meeting notes. This data helps us maintain continuity in our client relationships and ensures that we have an accurate record of your requirements, preferences, and any agreements we have made.
3.4 Service-Related Data
In the course of delivering our computer systems design and integration services, we may have access to technical specifications, system configurations, network diagrams, and other data related to your IT infrastructure. This information is treated with the highest level of confidentiality and is used exclusively for the purpose of fulfilling our service obligations.
4. How We Collect Information
We collect information through multiple channels, each designed to be transparent and consistent with your expectations. Direct collection occurs when you voluntarily provide information to us by filling out forms on our website, sending us emails, speaking with our representatives by telephone, or meeting with us in person. We also collect information indirectly through automated technologies including cookies, server logs, and analytics scripts that operate when you browse our website.
In some cases, we may receive information about you from third-party sources such as publicly available business directories, professional networking platforms, or referral partners. When we obtain information from such sources, we verify its relevance to our legitimate business purposes and process it in accordance with this policy. We do not purchase personal data from data brokers or engage in any form of surreptitious data collection.
We do not use any automated decision-making or profiling technologies that produce legal effects or similarly significant impacts on individuals. All significant decisions affecting our clients and users are made by qualified human personnel after careful review of relevant information.
5. Purpose of Data Collection
Every piece of information we collect serves a specific, documented purpose. We do not collect data indiscriminately or retain it indefinitely without justification. The primary purposes for which we collect and process personal data include responding to your inquiries and service requests, preparing and delivering proposals for our computer systems design and integration services, executing contractual obligations once a service agreement is in place, maintaining accurate business records for accounting and legal compliance, improving the functionality and content of our website based on usage patterns, communicating important updates about our services, policies, or terms, and protecting the security and integrity of our systems against unauthorized access, fraud, and other threats.
Where we intend to use your personal data for a purpose not listed above and not compatible with the original purpose of collection, we will notify you in advance and, where required by law, obtain your explicit consent before proceeding.
6. Legal Basis for Processing
Our processing of personal data is grounded in one or more of the following legal bases as defined under applicable data protection legislation. Where processing is necessary for the performance of a contract to which you are a party, or for taking pre-contractual steps at your request, we rely on the contractual necessity basis. This applies, for example, when we use your contact information to deliver the services you have engaged us to perform.
We also process data based on our legitimate business interests, provided those interests are not overridden by your fundamental rights and freedoms. Our legitimate interests include operating and improving our website, responding to inquiries from prospective clients, maintaining the security of our systems, and conducting business development activities that are reasonable and proportionate. Where neither contractual necessity nor legitimate interest applies, we will obtain your explicit consent before processing your personal data. You have the right to withdraw your consent at any time by contacting us using the details in Section 17, though such withdrawal will not affect the lawfulness of processing conducted before the withdrawal.
In certain limited circumstances, we may process personal data to comply with a legal obligation, such as responding to lawful requests from government authorities, maintaining tax records, or fulfilling reporting requirements under applicable laws.
7. Data Storage and Retention
Your personal data is stored on secure servers located in the Peoples Republic of China and, where necessary for service delivery, on cloud infrastructure provided by reputable service providers with data centers in jurisdictions that maintain adequate data protection standards. We retain personal data only for as long as is necessary to fulfill the purposes for which it was collected, or as required by applicable law.
The specific retention period for each category of data is determined by reference to the following criteria: the duration of our business relationship with you, the period during which you might reasonably expect us to respond to follow-up inquiries, statutory retention requirements under Chinese commercial and tax laws (which typically mandate retention of business records for a minimum of five years), and the applicable statute of limitations for legal claims. Once the retention period has expired, we securely delete or anonymize your personal data using industry-standard data destruction methods.
You may request earlier deletion of your personal data by contacting us using the details in Section 17. We will evaluate such requests against our legal obligations and, where deletion is permissible, will complete it within thirty calendar days.
8. Data Security Measures
We implement and maintain a comprehensive suite of technical and organizational measures designed to protect your personal data against accidental loss, unauthorized access, alteration, disclosure, or destruction. Our security framework includes Transport Layer Security (TLS) encryption for all data transmitted between your browser and our servers, firewalls and intrusion detection systems that monitor network traffic for malicious activity, access controls that restrict data access to authorized personnel on a need-to-know basis enforced through role-based permissions, regular vulnerability assessments and penetration testing conducted by qualified security professionals, secure development practices including code review and dependency scanning to prevent application-level vulnerabilities, and physical security controls at our office location at Room 410, 4/F, Lianyuan Business Building, 83 Heping Road, Heping Village, Heping Road Community, Taihe Sub-district Office, Guandu District, Kunming - 650000, China (CN).
We require all employees, contractors, and third-party service providers who handle personal data on our behalf to sign confidentiality agreements and complete data protection training. Our security policies are reviewed and updated at least annually to address emerging threats and incorporate best practices recommended by international cybersecurity frameworks.
11. Third-Party Services and Links
Our website may contain links to third-party websites, plugins, and applications that are not owned or controlled by Kunming Fangren Trading Co., Ltd. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements or practices.
We may use third-party service providers for specific business functions such as web analytics, email communication, and cloud infrastructure. Prior to engaging any third-party service provider, we conduct a thorough assessment of the privacy and security practices of that provider and enter into a data processing agreement that defines the scope, nature, and purpose of processing, the duration of processing, and the rights and obligations of both parties. A current list of the categories of third-party service providers we engage is available upon request by contacting us using the details in Section 17.
We strongly encourage you to read the privacy policies of every website you visit and every third-party service you use, as their practices may differ from ours.
12. Privacy for Children
Our website and services are not directed to individuals under the age of sixteen (16). We do not knowingly collect, use, or disclose personal data from children under sixteen. If we become aware that we have inadvertently collected personal data from a child under the age of sixteen without verifiable parental consent, we will take immediate steps to delete that information from our records.
If you are a parent or guardian and believe that your child has provided us with personal data without your consent, please contact us immediately using the contact details in Section 17. We will promptly investigate and, if confirmed, delete the relevant data within a reasonable timeframe. We also encourage parents and guardians to monitor online activities of their children and to educate them about the importance of protecting their personal information.
We do not offer services that are specifically designed for or targeted at children, and we do not engage in any form of marketing directed toward minors.
13. Your Data Protection Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data. The right of access entitles you to request confirmation of whether we process your personal data and, if so, to obtain a copy of that data along with information about how and why it is processed. The right of rectification allows you to request correction of inaccurate or incomplete personal data we hold about you.
The right of erasure, also known as the right to be forgotten, permits you to request deletion of your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected or when you withdraw consent. The right to restrict processing gives you the ability to request that we limit the processing of your personal data in specific situations, for example, while we verify the accuracy of data you have contested.
The right to data portability allows you to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller. The right to object permits you to object to processing of your personal data based on our legitimate interests, including profiling. The right to withdraw consent applies where processing is based on consent; you may withdraw consent at any time without affecting the lawfulness of prior processing.
To exercise any of these rights, please contact us using the details in Section 17. We will respond to your request within thirty calendar days and will not charge a fee unless your request is manifestly unfounded or excessive. We may need to verify your identity before processing your request to ensure the security of your data.
14. International Data Transfers
As a company headquartered in the Peoples Republic of China, our primary data processing operations are based in Kunming. However, in the course of serving our international clients, your personal data may be transferred to and processed in countries other than the country in which you reside. When we transfer personal data across international borders, we implement appropriate safeguards to ensure that your data receives a level of protection equivalent to that provided under your local data protection laws.
For transfers from the European Economic Area (EEA) or the United Kingdom to countries that have not been deemed to provide an adequate level of protection, we rely on standard contractual clauses approved by the European Commission or the relevant supervisory authority, or other lawful transfer mechanisms as applicable. For transfers subject to the PIPL, we comply with the cross-border data transfer requirements including conducting security assessments and obtaining necessary approvals where required.
By using our services, you acknowledge that your personal data may be transferred internationally as described in this section. If you have questions about the specific safeguards we apply to international data transfers, please contact us using the details in Section 17.
15. Data Breach Notification Procedures
We have established a comprehensive data breach response plan that outlines the steps we will take in the event of a security incident involving personal data. In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within seventy-two (72) hours of becoming aware of the breach, in accordance with applicable legal requirements.
If a data breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay. Our notification will describe the nature of the breach, the categories and approximate number of individuals and records affected, the likely consequences of the breach, the measures we have taken or propose to take to address the breach and mitigate its effects, and the contact details of our data protection point of contact from whom you can obtain additional information.
We maintain a detailed internal breach log that records all security incidents, their effects, and the remedial actions taken. This log is reviewed regularly as part of our continuous improvement process for information security management.
16. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time to reflect changes in our data processing practices, legal requirements, or the services we offer. When we make changes, we will post the revised version on this page and update the effective date at the top of the policy. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
If we make material changes that significantly affect the way we process your personal data, we will provide more prominent notice, which may include sending an email notification to the address we have on file, displaying a notice on our website homepage, or requesting renewed consent where applicable. The version of this Privacy Policy that was in effect at the time your data was collected will govern our use of that data unless you have consented to a newer version.
Your continued use of our website and services after the effective date of any revised Privacy Policy constitutes your acknowledgment and acceptance of the changes. If you do not agree with the revised policy, you should discontinue use of our website and may request deletion of your data as described in Section 13.
17. How to Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, please contact us using any of the methods listed below. We take all privacy-related inquiries seriously and will make every effort to address your concerns promptly and thoroughly.
Kunming Fangren Trading Co., Ltd.Room 410, 4/F, Lianyuan Business Building
83 Heping Road, Heping Village
Heping Road Community, Taihe Sub-district Office
Guandu District, Kunming - 650000
China (CN)
Email: connect@fangren.lol
Phone: +15856344594
Website: https://www.fangren.lol
We aim to acknowledge all privacy-related inquiries within five business days and to provide a substantive response within thirty calendar days. If you are not satisfied with our response, you have the right to lodge a complaint with the relevant data protection supervisory authority in your jurisdiction.
18. Governing Law
This Privacy Policy and all matters relating to the processing of your personal data shall be governed by and construed in accordance with the laws of the Peoples Republic of China, without regard to its conflict of law principles. Any disputes arising from or related to this Privacy Policy shall be subject to the exclusive jurisdiction of the competent courts located in Kunming, Yunnan Province, China.
To the extent that the data protection laws of your country of residence provide you with additional rights beyond those described in this policy, we will make reasonable efforts to honor those rights where they are applicable to our processing activities. Nothing in this policy is intended to limit any rights you may have under mandatory provisions of applicable data protection law that cannot be waived by agreement.
Back to Table of Contents