Privacy Policy

We use submitted contact and project information only to respond to enquiries, prepare quotations and provide requested support. We do not sell personal data. Contact us to request access, correction or deletion.

1. Who We Are

Shenzhen Qiyuanhang Technology Co., Ltd. ("we", "us" or "our") operates globalsmtparts.com and its Chinese-language pages (the "Website"). The Website is a B2B website for SMT equipment, spare parts, consumables and related sourcing or quotation requests.

This Privacy Policy explains how we collect, use, retain, share and protect personal information when you visit the Website, submit a contact form, submit a request for quotation (RFQ), upload RFQ attachments, or communicate with us by email, phone, WhatsApp or other channels.

If you do not agree with this Privacy Policy, please stop using the Website or do not submit personal information to us.

2. Information We Collect

We may collect the following information:

  • Information you provide: name, company name, country or region, business email, phone number, WhatsApp number, requirements, product names, part numbers, quantities, notes and any other information you provide in forms or communications.

  • RFQ attachment information: images, PDF or XLSX files uploaded on the RFQ page, together with original file names, file types, file sizes, checksum values and upload records. Attachments help us understand your sourcing needs, such as nameplates, old-part photos, BOMs or technical documents.

  • Inquiry attribution information: landing page, referrer, UTM parameters and advertising click IDs such as gclid, msclkid or fbclid. We use this information to understand inquiry sources and improve lead generation.

  • Website visit and device information: IP address, IP hash, visit date, visited page, language, country or region, browser User-Agent, Referer and bot-detection indicators. We use this information for analytics, security troubleshooting and website operations.

  • Security and anti-abuse information: CSRF tokens, session information, form submission timing, honeypot fields and Cloudflare Turnstile verification results if enabled. We use this information to prevent forged requests, spam submissions and automated abuse.

  • Communication and follow-up information: emails, messages, internal follow-up notes and processing status generated when we discuss inquiries, quotations, delivery, after-sales support or business cooperation with you.

Please do not submit sensitive personal information that is unrelated to purchasing or business communication through the Website.

3. How We Use Information

We use your information to:

  • Respond to inquiries, confirm requirements, provide quotations, sourcing suggestions or other SMT purchasing-related services.

  • Store and manage RFQs, product inquiries, contact-form submissions and sales follow-up.

  • Validate attachment formats and safety, and prevent malicious files, spam and abuse.

  • Measure website visits, visitor countries or regions, popular pages and inquiry sources, and improve website content and user experience.

  • Notify authorized personnel of new inquiries, new visitors and operational reports through the admin panel, email systems if enabled, or notification tools such as PushDeer.

  • Maintain the Website, databases, logs, backups and security audits.

  • Comply with applicable laws and regulations, regulatory requirements, dispute resolution, contract performance and protection of legal rights.

4. Legal Bases

Where applicable law requires us to identify a legal basis, we generally process your information based on one or more of the following:

  • To respond to your RFQ, communication request, pre-contractual request or contract-related matter.

  • Our legitimate interests in website security, business operations, customer follow-up, service improvement and abuse prevention.

  • Your consent where required by applicable law, such as when you submit a form, acknowledge this Privacy Policy or allow non-essential tracking technologies.

  • Compliance with legal obligations, dispute handling, rights protection or lawful government, judicial or regulatory requests.

5. Cookies, Local Storage and Similar Technologies

The Website currently does not actively use Google Analytics, Google Tag Manager, Meta Pixel, remarketing advertising or similar third-party marketing tracking scripts. We use the following necessary or functional storage technologies:

Name or Type

Storage Location

Purpose

Retention

JSESSIONID

Cookie

Maintains necessary server sessions and supports security, admin login and form protection

Usually expires when the session ends or after logout

XSRF-TOKEN or CSRF token

Cookie, hidden form field or request header

Prevents cross-site request forgery and protects forms and admin APIs

Usually valid during the session

cms-rfq-v1

Browser localStorage

Stores products added to your RFQ list so you can continue browsing before submitting one RFQ

Until you submit and it is cleared, manually clear browser data or the site triggers clearing

cms-attribution

Browser sessionStorage

Stores the landing page, source, UTM parameters and click IDs for the current session and submits them with your inquiry

Usually cleared when the browser tab or session ends

Cloudflare Turnstile

Third-party security verification if enabled

Helps determine whether a form submission is made by a real user and reduces spam and automated attacks

Processed by Cloudflare under its own policies

You can delete or block cookies, localStorage and sessionStorage through your browser settings. If necessary storage is disabled, the RFQ list, form submission, admin login or security verification may not work properly.

If we add advertising, remarketing, cross-site tracking, behavioral analytics or other non-essential cookies or similar technologies in the future, we will update this Policy and provide consent or opt-out mechanisms where required by applicable law.

6. How We Share Information

We do not sell your personal information, and we do not sell or share your personal information with third parties for cross-context behavioral advertising. We may share or disclose information in the following necessary circumstances:

  • Infrastructure and technical service providers: website hosting, cloud servers, databases, cybersecurity, email services, file storage, backups, logs and operations providers.

  • Security verification services: if Cloudflare Turnstile is enabled, Cloudflare may process browser, device and network information related to verification.

  • Notification tools: if PushDeer is enabled, we may send new-inquiry details, new-visitor countries or regions and operational statistics to authorized recipients. Inquiry notifications may include name, company, email, phone, WhatsApp, country, message, product lines and attachment count.

  • Logistics, supply-chain or business partners: where necessary to provide quotations, purchasing, delivery, after-sales support or sourcing assistance requested by you.

  • Professional advisers and compliance parties: lawyers, accountants, auditors, insurers, regulators, courts or government authorities where permitted or required by law.

  • Business transfers: in a merger, restructuring, asset transfer or similar transaction, your information may be transferred as part of the relevant business assets, subject to applicable privacy obligations.

We require service providers to process information only for agreed purposes and to apply reasonable confidentiality and security measures.

7. International Transfers

We are located in China, and the Website may be hosted in Singapore or other regions. To process inquiries, quotations, customer follow-up, website operations and security management, your information may be accessed and processed by authorized personnel in China and by our service providers in the regions where they operate. Data protection laws in those jurisdictions may differ from the laws of your location.

Where required by applicable law, we take reasonable measures to protect personal information in cross-border transfers, such as contractual controls, access controls, security safeguards and appropriate data minimization.

8. Information Security

We use reasonable technical and organizational measures to protect your information, including access controls, CSRF protection, content security policies, file format validation, private attachment directories, admin authentication, log controls and encrypted transport configuration.

RFQ attachments are not published as public assets under /uploads/**; only authorized administrators may access or download them through the admin panel. Attachments are subject to format and structural validation, but the first release may not include malware scanning. Please do not upload files unrelated to your RFQ or files containing highly sensitive information.

No method of Internet transmission or electronic storage is completely secure.

9. Data Retention

We retain personal information only for as long as necessary for the purposes described in this Policy, unless a longer retention period is required for legal, contractual, dispute, financial-record, compliance-audit or rights-protection reasons.

In general:

  • Inquiries, RFQs, attachments and communications are retained as needed for purchasing follow-up, customer service, contract performance, dispute handling or compliance.

  • Visit analytics, logs and security records are retained as needed for operational analysis, security troubleshooting and audits.

  • Information in backups is deleted or overwritten gradually according to backup rotation and recovery policies.

When information is no longer needed, we will delete, anonymize or otherwise reasonably restrict further use.

10. Your Rights

Depending on the laws applicable to your location, you may have the right to:

  • Request access to or a copy of the personal information we hold about you.

  • Correct inaccurate or incomplete information.

  • Delete your personal information.

  • Restrict or object to certain processing activities.

  • Withdraw consent-based processing, without affecting processing carried out before withdrawal.

  • Request data portability where applicable.

  • Lodge a complaint or seek remedy with a competent authority.

  • Opt out of the sale or sharing of personal information or targeted advertising where applicable. We currently do not sell personal information and do not share it for cross-context behavioral advertising.

To protect information security, we may need to verify your identity before processing rights requests. You may submit requests using the contact details below.

11. Third-Party Links and External Platforms

The Website may contain links to WhatsApp, maps, third-party websites or other external platforms. When you click those links or communicate with us through external platforms, the relevant third parties may process your information under their own privacy policies. We recommend that you review those policies.

12. Children's Privacy

The Website is intended for business customers and purchasing personnel, not children. We do not knowingly collect personal information from children under 16. If you believe a child has submitted personal information to us, please contact us and we will delete the relevant information after reasonable verification.

13. Updates to This Policy

We may update this Privacy Policy for business, technical, legal or compliance reasons. The updated Policy will be posted on this page with a new effective date. Where appropriate, we will provide notice of material changes through the Website or other suitable means.

14. Contact Us

If you have questions about this Privacy Policy, our personal information practices or rights requests, please contact us:

Shenzhen Qiyuanhang Technology Co., Ltd.
Email: [email protected]
Address: Guangming District, Shenzhen, China