1. Introduction
Welcome to the Privacy Policy for Xuchang Changran Trading Co., Ltd., which operates under the name Changran. The website located at https://www.changran.autos, together with the related services it describes, is developed and operated by the developer ChangRan. This Privacy Policy explains how we collect, use, store, share, and protect information when you visit our website, communicate with us, or use any of the computer systems design and related services we provide.
We take your privacy seriously and treat it as a fundamental part of how we design our systems. Our goal is to be transparent about the information we handle, the reasons we handle it, and the choices you have. We encourage you to read this policy carefully so that you understand your rights and our commitments. If anything in this policy is unclear, you are welcome to contact us using the details provided in the Contact Information section at the end of this document.
By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with any part of it, please stop using the website and the services, and contact us if you would like to discuss your concerns before continuing.
2. Information We Collect
We collect only the information that is reasonably necessary to operate our website, respond to enquiries, and deliver our services. The information we collect can be grouped into a few clear categories, which are described below.
Information you provide directly
When you contact us through the website, by email, by phone, or through our contact form, you may provide us with information such as your name, your email address, your telephone number, the subject of your enquiry, and the content of your message. If you engage us for a project, you may also provide business information that we need in order to prepare a quote or to perform the work.
Information collected automatically
When you browse the website, certain technical information is collected automatically. This may include your internet protocol address, the type of browser and device you use, your operating system, the pages you visit, the time and date of your visit, the referring website, and similar usage data. This information helps us understand how the website is used and allows us to keep it secure and reliable.
Information we do not collect
We do not knowingly collect sensitive categories of personal data, such as health information, financial account numbers, or government identification numbers, through our public website. We ask that you avoid sending any such sensitive information in your initial messages to us.
We collect this information directly from you when you provide it, and automatically from your device when you interact with the website. In some cases we may receive information from third parties, such as when a business partner refers you to us or when you interact with us through a platform operated by someone else.
3. How We Use Your Information
We use the information we collect for a limited number of business purposes, all of which are connected to operating our website and delivering our services. We do not sell your personal information, and we do not use it for purposes that are unrelated to those described in this policy.
The main purposes for which we use your information include the following. We use your contact details to respond to your enquiries, to answer your questions, and to provide the information you request. We use the content of your messages to understand your requirements and to prepare quotes or proposals. We use technical and usage data to operate, maintain, and improve the website, to diagnose technical problems, and to protect the website from misuse or security threats.
Where you become a customer, we use your information to deliver the services you have purchased, to communicate with you about your project, to provide support, and to send you information that is relevant to the services you receive. We may also use aggregated and anonymized information for internal analysis and for improving the quality of our services.
4. Legal Basis for Processing
We process personal information in accordance with applicable data protection laws. The legal basis we rely on depends on the circumstances in which we process your information, and we explain the most common bases below.
We may process your information because it is necessary for the performance of a contract with you, for example when we provide the services you have requested or when we take steps at your request before entering into a contract. We may process your information to pursue our legitimate interests, such as improving our website, ensuring security, and responding to enquiries, provided that those interests are not overridden by your rights and freedoms.
In some cases we may process your information on the basis of your consent, for example if you choose to receive certain communications from us. Where we rely on consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing that took place before the withdrawal. We may also process information where we are required to do so by law, such as to comply with tax or regulatory obligations.
7. Data Retention
We keep personal information only for as long as it is needed for the purposes described in this policy, or for as long as we are required to keep it by law. The specific retention period depends on the type of information and the purpose for which it was collected.
Enquiry messages and correspondence are typically retained for a reasonable period to allow us to respond and to keep a record of our communication with you. Business records relating to customers, including invoices and contracts, may be retained for longer periods in line with our legal and tax obligations.
When information is no longer needed, we delete it or anonymize it in a secure manner. We review our retention practices regularly to ensure that we do not keep personal information for longer than necessary.
8. Data Security
We apply appropriate technical and organizational measures to protect the personal information we hold against unauthorized access, alteration, disclosure, or destruction. Our approach to security is built into the way we design systems, reflecting our background in computer systems design and integration.
The measures we use include access controls that limit information to those who need it, encryption where appropriate, secure network design, and regular review of our security practices. We also train our team on the importance of data protection and confidentiality.
No method of transmission over the internet or method of electronic storage is completely secure, and we cannot guarantee absolute security. However, we work continuously to maintain a high standard of protection, and we respond promptly to any suspected breach in accordance with our legal obligations.
In the event of a suspected security incident, we have procedures in place to assess the situation, to contain any impact, and to notify affected individuals and regulators where required by law. We also review security incidents to strengthen our safeguards over time.
9. International Data Transfers
The Company is based in China, and our primary operations are conducted from there. However, we use some service providers that may be located in other countries. As a result, your information may be transferred to and processed in a country other than the one in which you are located.
Where we transfer personal information across borders, we take steps to ensure that appropriate safeguards are in place, in accordance with applicable data protection laws. These safeguards may include standard contractual clauses, adequacy decisions, or other recognized transfer mechanisms.
By using our website and services, you acknowledge that your information may be transferred and processed in this way. If you have questions about the safeguards that apply to a particular transfer, you can contact us using the details provided below.
10. Your Privacy Rights
Depending on your location, you may have certain rights in relation to the personal information we hold about you. These rights may include the right to access, correct, or delete your information, the right to object to or restrict certain processing, and the right to receive a copy of your information in a portable format.
You may also have the right to withdraw consent where we rely on consent as a legal basis, and the right to lodge a complaint with a supervisory authority in your jurisdiction if you believe that your rights have not been respected.
To exercise any of these rights, please contact us using the details in the Contact Information section. We will respond to your request within the timeframes required by law, and we may ask you to verify your identity before taking action on a request.
Requests can be made in writing to the contact details in this policy. There is no fee to make a request in most cases, although we may charge a reasonable fee or decline to act where a request is manifestly unfounded, repetitive, or excessive.
11. Privacy for Children
Our website and services are intended for businesses and adult users. We do not knowingly collect personal information from children, and we do not direct our services toward children.
If you are a parent or guardian and you believe that a child has provided us with personal information, please contact us using the details below. We will take steps to delete that information as quickly as possible.
We do not use the website to solicit information from individuals who are below the age at which they can lawfully provide consent, and we encourage parents and guardians to supervise the online activities of any children in their care.
12. Third Party Services and Links
Our website may contain links to third party websites or services that are not operated by us. This Privacy Policy applies only to information collected by the Company through our own website and services. We are not responsible for the privacy practices of third parties.
When you follow a link to a third party website, we encourage you to review the privacy policy of that website before providing any information. We do not control and are not responsible for the content, privacy policies, or practices of any third party sites or services.
Some of the services we deliver may involve third party software or platforms. Where we integrate such tools, we aim to choose providers that respect strong privacy standards, and we will explain the relevant implications to you as part of the project.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, in the law, or in the services we offer. When we make changes, we will update the date shown at the top of this page so that you can see when the policy was last revised.
Where the changes are material, we will take reasonable steps to bring them to your attention, such as by placing a notice on our website. We encourage you to review this policy periodically so that you remain informed about how we protect your information.
Your continued use of the website after any changes to this policy take effect will constitute your acceptance of the revised policy, to the extent permitted by law.
14. Contact Information
If you have any questions, concerns, or requests relating to this Privacy Policy or to the way we handle your personal information, please contact us using the details below. We will respond to your enquiry as promptly as possible.
Xuchang Changran Trading Co., Ltd.
Room 316, 2nd Floor, South Zone, Sigu Tai Commercial Street, Cangku Road, Nanguan
Sub-district, Weidu District, Xuchang 461000, China
Email: office@changran.autos
Phone: +17249953825
Website: https://www.changran.autos
15. Additional Disclosures for Business Customers
If you engage the Company to provide computer systems design, integrated systems design, or related services, this section provides additional information about how we handle business information during the course of a project.
Information that we process in connection with a project may include technical specifications, system configurations, project correspondence, and data that is necessary for us to design and integrate your systems. We treat this information as confidential and use it only to perform the services you have requested.
Where your project involves the processing of personal data on your behalf, we will agree with you on the specific roles and responsibilities that apply, including any data processing terms that are required by law. We will also assist you in meeting your own privacy obligations to the extent that is reasonably required.
We are committed to maintaining the confidentiality of business information both during and after the engagement, and our team is subject to appropriate confidentiality obligations. If you have specific security or privacy requirements, please raise them with us at the start of the project so that they can be reflected in the design.
Our team is also trained to handle project information with care, and we apply access controls so that only the people who need to work with your information can do so. We are happy to discuss any additional confidentiality or security requirements you may have before a project begins.