Privacy policy
This policy explains how Huamei handles information through its website, internal business systems, and authorized Amazon Ads API connections.
1. Introduction
Guangzhou Langye Trading Co., Ltd. ("Langye," "we," "us," or "our") respects the privacy and security of information processed through our website and internal business systems.
This Privacy Policy explains how we collect, use, store, protect, retain, and disclose information in connection with:
- Our website.
- Business communications submitted through our website.
- Our private internal enterprise resource planning system.
- Our internal Amazon advertising management and reporting application.
- Information obtained through authorized Amazon Ads API connections.
This website and the related internal application are operated by Guangzhou Langye Trading Co., Ltd..
Our internal application is developed exclusively for the management and analysis of our own company's Amazon advertising accounts. It is not offered to third-party sellers, advertisers, agencies, software providers, or external customers.
2. Information we collect
Depending on how our website and internal systems are used, we may process the following categories of information.
2.1 Amazon advertising information
Through authorized Amazon Ads API connections, our internal application may retrieve advertising-related information including:
- Advertising account and profile identifiers.
- Campaign, portfolio, ad group, advertisement, and creative information.
- Advertised product and SKU information.
- Keyword, product-targeting, audience-targeting, and search-term information.
- Campaign status, budgets, bids, placements, and targeting settings.
- Impressions, clicks, advertising spend, attributed orders, attributed sales, conversion rates, ACOS, ROAS, and other advertising performance metrics.
- Advertising reports and aggregated campaign performance information.
Our Amazon Ads API integration is intended to retrieve advertising and campaign-management information only. It is not designed to retrieve or process:
- Buyer names.
- Buyer telephone numbers.
- Delivery or residential addresses.
- Payment card information.
- Buyer account passwords.
- Other buyer-level personal or restricted information.
2.2 Authorization and technical information
We may process technical information necessary to operate, authorize, maintain, and secure the application, including:
- Login with Amazon authorization status.
- Access tokens and refresh tokens.
- Application Client IDs and internal application identifiers.
- Amazon advertising profile identifiers.
- API request and response timestamps.
- API response status codes.
- Error records and troubleshooting information.
- System activity logs.
- IP addresses, browser information, and device information used to access our internal systems.
Authorization credentials are used only to connect our internal application with Amazon services that have been authorized by our company.
2.3 Website and contact information
When a person visits our website, submits an inquiry, or contacts us, we may collect:
- Name.
- Company name.
- Email address.
- Telephone number.
- Country or region.
- Product inquiry details.
- Order or quotation requirements.
- Message content.
- Basic website access and technical log information.
Please do not send passwords, payment card information, API credentials, or other unnecessary sensitive information through website contact forms or ordinary email.
3. How we use information
We may use collected information for the following legitimate internal business purposes:
- Retrieving and synchronizing Amazon advertising data.
- Monitoring advertising campaign performance.
- Managing campaigns, budgets, bids, keywords, placements, and product targets.
- Preparing daily, weekly, and monthly advertising reports.
- Calculating ACOS, TACOS, ROAS, conversion rates, and other performance indicators.
- Comparing advertising performance with internal sales, inventory, product cost, and financial information.
- Conducting SKU-level profitability analysis.
- Monitoring advertised products with low or insufficient inventory.
- Identifying unusual advertising spending or budget depletion.
- Supporting internal advertising decisions and campaign optimization.
- Preparing internal management, operational, and financial reports.
- Responding to customer, distributor, supplier, and business inquiries.
- Maintaining application security and preventing unauthorized access.
- Diagnosing technical errors and maintaining system reliability.
- Complying with applicable legal, accounting, regulatory, and contractual obligations.
Amazon advertising information will not be used to provide advertising-management services to unrelated third-party sellers or advertisers.
4. Sources of information
Amazon advertising information is obtained directly from Amazon through authorized Amazon Ads API connections.
Website and business-contact information may be provided directly by website visitors, existing or prospective customers, distributors, suppliers, logistics providers, and other business partners.
We do not obtain Amazon advertising account information through:
- Unauthorized web scraping.
- Purchased account data.
- Stolen or shared credentials.
- Unauthorized databases.
- Circumvention of Amazon access controls.
- Other unauthorized external sources.
5. Information sharing and disclosure
We do not sell, rent, trade, or commercially distribute Amazon advertising information or personal information.
Information may be disclosed only in limited circumstances, including:
- To authorized employees who require access to perform their assigned duties.
- To authorized technical personnel responsible for maintaining our internal application.
- To service providers that support necessary technical, security, communications, or business functions, subject to appropriate confidentiality and security requirements.
- When required by applicable law, regulation, court order, or governmental authority.
- When reasonably necessary to investigate fraud, misuse, unauthorized access, security threats, or violations of applicable agreements.
- When necessary to protect the legal rights, systems, property, employees, customers, or business partners of Guangzhou Langye Trading Co., Ltd..
- In connection with a merger, acquisition, restructuring, financing, or transfer of business assets, subject to appropriate confidentiality and data-protection safeguards.
Any external service provider authorized to process information on our behalf must use the information only for the agreed purpose and apply appropriate security and confidentiality controls.
6. Internal access controls
Access to Amazon advertising information and application credentials is limited to authorized personnel of Guangzhou Langye Trading Co., Ltd..
We apply the principle of least privilege. Personnel should only receive the minimum level of access required for their assigned duties. Access may be reviewed, modified, suspended, or removed when:
- An employee's responsibilities change.
- Access is no longer required.
- Employment or engagement ends.
- Unauthorized activity is detected.
- Credentials are believed to have been exposed.
- A security risk or policy violation is identified.
Users of our internal systems must not share accounts, passwords, Client Secrets, Access Tokens, or Refresh Tokens through public repositories, unsecured spreadsheets, ordinary chat groups, or other unauthorized channels.
7. Data security
We apply reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, disclosure, alteration, destruction, loss, or misuse. These safeguards may include:
- Role-based access controls.
- Individual user accounts.
- Strong password requirements.
- Multi-factor authentication where available.
- Encryption of information during transmission.
- Secure storage of API credentials and tokens.
- Restricted access to production systems.
- Firewall and network access controls.
- Logging and monitoring of system activity.
- Software security updates and vulnerability management.
- Backup and recovery procedures.
- Employee confidentiality and access-management requirements.
- Revocation or replacement of credentials when compromise is suspected.
API credentials and tokens must not be stored in:
- Public source-code repositories.
- Publicly accessible webpages.
- Browser-side source code.
- Unsecured spreadsheets.
- Shared chat groups.
- Public screenshots.
- Plain-text logs accessible to unauthorized users.
No electronic system can be guaranteed to be completely secure. We therefore review and improve our safeguards according to operational requirements, system changes, and identified risks.
8. Data retention
We retain information only for as long as reasonably necessary to:
- Operate and maintain our internal ERP and advertising-management functions.
- Produce advertising, sales, inventory, and profitability reports.
- Complete internal reconciliation and business analysis.
- Maintain system security and operational logs.
- Investigate suspected misuse or security incidents.
- Resolve technical, commercial, accounting, or legal disputes.
- Meet applicable legal, tax, accounting, regulatory, and contractual requirements.
When information is no longer required, we may delete, anonymize, aggregate, overwrite, or securely dispose of it.
Temporary Access Tokens may be allowed to expire or may be deleted when no longer required. Refresh Tokens and other long-term credentials may be revoked or replaced when authorization ends or compromise is suspected.
9. Amazon account authorization and revocation
Access to Amazon advertising information is based on authorization granted through the applicable Amazon account. An authorized Amazon advertising account administrator may revoke the application's access through the applicable Amazon authorization or account-management settings.
After authorization is revoked:
- Our application will stop retrieving new information from the affected Amazon advertising account.
- Related credentials may be revoked, replaced, or deleted.
- Previously retained information will be handled according to this Privacy Policy and applicable retention requirements.
Revoking authorization does not necessarily require the immediate deletion of information that must be retained for lawful accounting, security, audit, dispute-resolution, or compliance purposes.
10. International data processing
Guangzhou Langye Trading Co., Ltd. is registered in mainland China. Amazon services, technical infrastructure, authorized personnel, or approved service providers may operate in different countries or regions. Information may therefore be transmitted or processed across national borders when necessary for authorized business and technical operations.
Where international processing occurs, we take reasonable steps to protect information according to its nature, applicable legal requirements, and relevant contractual obligations.
11. Personal information rights
Subject to applicable laws and relevant exceptions, individuals may contact us to request:
- Confirmation of whether we process their personal information.
- Access to personal information held about them.
- Correction of inaccurate or incomplete information.
- Deletion of information that is no longer required.
- Restriction of certain processing activities.
- Withdrawal of consent where processing is based on consent.
We may need to verify the identity and authority of the requesting person before processing a request. Certain information may need to be retained where required for legal compliance, accounting, fraud prevention, security, contractual obligations, or dispute resolution.
12. Cookies and website technologies
Our website may use cookies or similar technologies that are necessary for website functionality, security, session management, remembering user preferences, understanding general website usage, and diagnosing technical problems.
Where required by applicable law, visitors may be given options to manage non-essential cookies. Third-party websites and services connected to our website may apply their own cookies and privacy practices. Their processing is governed by their own privacy notices and terms.
13. Children's privacy
Our website, products, business services, and internal application are intended for businesses and adults. We do not knowingly use the Amazon Ads API to collect personal information from children.
If we become aware that a child's personal information has been submitted to us without appropriate authorization, we will take reasonable steps to review and delete it where required.
14. Third-party services
Our website and internal systems may connect to third-party services, including Amazon services. Third-party services operate according to their own terms of use, privacy notices, security requirements, authorization procedures, and data-processing practices.
This Privacy Policy explains how Guangzhou Langye Trading Co., Ltd. processes information under its own control. It does not replace or modify Amazon's privacy notice, advertising agreement, developer agreement, or other third-party terms.
15. Security incident response
If we identify a suspected security incident involving Amazon information, personal information, or application credentials, we may take measures including:
- Investigating and documenting the incident.
- Restricting or suspending affected access.
- Revoking or replacing Access Tokens, Refresh Tokens, passwords, or Client Secrets.
- Isolating affected systems.
- Correcting identified vulnerabilities.
- Restoring affected services.
- Preserving relevant evidence and logs.
- Notifying affected parties, Amazon, or competent authorities where required.
- Reviewing the incident and improving applicable safeguards.
Employees and authorized users must promptly report suspected credential exposure, unauthorized access, data loss, or security incidents to the responsible company contact.
16. Changes to this Privacy Policy
We may update this Privacy Policy when our business operations, website, internal systems, Amazon API integration, security practices, legal or regulatory obligations, or data-processing activities change.
The updated version will be published on this page with a revised "Last Updated" date. Material changes may also be communicated through other reasonable methods where appropriate.
17. Contact us
For privacy, security, personal information, or data-protection inquiries, please contact:
Guangzhou Langye Trading Co., Ltd.
Website: https://huameizoombackdrop.com/
Email:
LangyeBackdrop@outlook.com