Legal & Compliance

Privacy Policy

This Privacy Policy explains how Trackintelli ("we", "our", or "us") collects, uses, discloses, and safeguards information when you visit our website or engage with our B2B hardware and software solutions. We are committed to protecting your privacy and maintaining the trust of our business partners worldwide.

Effective Date: January 1, 2025 Last Updated: January 1, 2025 Jurisdiction: People's Republic of China (Global Compliance)
01

Overview & Scope

Who This Policy Applies To

This Privacy Policy applies to Trackintelli (operating as a registered entity in the People's Republic of China, headquartered in the Pearl River Delta region) and governs all personal and business data processed through our corporate website, product inquiry forms, SDK/API portals, technical support systems, and any other digital touchpoints we operate.

Our services are designed exclusively for business-to-business (B2B) customers, including systems integrators, industrial automation contractors, AIDC distributors, and enterprise procurement teams. We do not knowingly market to or collect data from individual consumers.

By accessing our website, submitting a product inquiry, downloading SDK documentation, or entering into a commercial agreement with Trackintelli, you acknowledge that you have read and understood this Privacy Policy. If you are acting on behalf of a company or organization, you represent that you have the authority to bind that entity to this Policy.

Regulatory Framework

We design our data practices to comply with the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA/CPRA), China's Personal Information Protection Law (PIPL), and other applicable regional privacy regulations in our target markets including Germany, the United Kingdom, the United States, the UAE, Mexico, Vietnam, and other jurisdictions where we operate.

02

Information We Collect

Categories of Data Processed

A. Business Contact & Inquiry Data

Information you voluntarily provide when submitting RFQs, demo requests, or technical support tickets:

  • Full name, job title, and professional role
  • Business email address and direct phone number
  • Company name, industry vertical, and company size
  • Country and region of operation
  • Project requirements, deployment environment details, and technical specifications
  • Estimated procurement volume and timeline

B. Technical & SDK Access Data

Information collected when you access developer resources, SDK downloads, or API documentation portals:

  • Developer account credentials (hashed)
  • API key usage logs and access timestamps
  • SDK version downloads and integration environment details
  • Technical support tickets and diagnostic data submitted by your engineering team

C. Automatically Collected Website Data

Data collected automatically when you browse our website:

  • IP address (anonymized where required by law)
  • Browser type, version, and operating system
  • Pages visited, session duration, and navigation path
  • Referring URL and search keywords (where available)
  • Device identifiers and screen resolution
  • Google Ads click and conversion identifiers (gclid)

D. Commercial & Transaction Data

Data generated through commercial engagements, including:

  • Purchase order details, invoicing data, and shipping addresses
  • Contract terms, NDA records, and compliance documentation
  • Warranty registration and product serial number associations
  • RMA (Return Merchandise Authorization) and service records
03

How We Use Information

Purposes & Legal Bases

We process your information only for specific, legitimate business purposes. The following table outlines our primary processing activities and their corresponding legal bases under GDPR and equivalent frameworks:

Purpose Legal Basis
Responding to product inquiries, RFQs, and demo requests Pre-contractual necessity / Legitimate interest
Providing technical support, FAE consultation, and SDK assistance Contract performance / Legitimate interest
Processing purchase orders, shipping, and invoicing Contract performance
Sending product updates, firmware releases, and security advisories Legitimate interest / Consent
Marketing communications (industry insights, new product launches) Consent (opt-in required)
Website analytics and Google Ads campaign optimization Consent / Legitimate interest
Fraud prevention, export compliance, and legal obligation fulfillment Legal obligation / Legitimate interest
Product improvement and R&D based on aggregated usage patterns Legitimate interest

We will not use your information for purposes incompatible with those stated above without providing prior notice and, where required, obtaining your consent. We do not engage in automated decision-making or profiling that produces legal or similarly significant effects on individuals.

04

Disclosure & Sharing

When and With Whom We Share Data

We do not sell, rent, or trade your personal or business information to third parties for their independent marketing or commercial purposes. We may share information in the following limited circumstances:

Service Providers & Subprocessors

We engage vetted third-party service providers who process data strictly on our behalf under written data processing agreements (DPAs). These include cloud infrastructure providers (e.g., Alibaba Cloud, AWS), CRM platforms, logistics partners, and payment processors. All subprocessors are bound by confidentiality obligations and may only process data as instructed by Trackintelli.

Authorized Distribution Partners

Where you have been referred to us by or are engaging through an authorized regional distributor, we may share relevant inquiry and order information with that partner to facilitate fulfillment, technical support, and warranty services. Such sharing is governed by our distributor agreements.

Legal & Regulatory Compliance

We may disclose information to governmental authorities, law enforcement agencies, or courts when required by applicable law, regulation, legal process, or governmental request, including export control regulations applicable to RFID hardware and RF technology under Chinese, US, EU, and other jurisdictions.

Business Transfers

In the event of a merger, acquisition, corporate restructuring, or sale of substantially all assets, your information may be transferred to the acquiring entity, subject to equivalent privacy protections. We will provide notice of any such transfer.

05

International Data Transfers

Cross-Border Data Flow Safeguards

As a China-headquartered manufacturer serving customers in North America, Europe, Southeast Asia, the Middle East, and Latin America, data you provide may be transferred to and processed in countries outside your home jurisdiction, including the People's Republic of China and other locations where our infrastructure or service providers operate.

We implement the following safeguards for international data transfers:

  • EU Standard Contractual Clauses (SCCs): For transfers of personal data from the European Economic Area (EEA) or the United Kingdom to countries without an adequacy decision, we rely on the European Commission's approved Standard Contractual Clauses.
  • Data Processing Agreements: All cross-border subprocessors execute DPAs incorporating appropriate transfer mechanisms and security obligations.
  • PIPL Compliance: For outbound transfers of personal information from China, we comply with the security assessment requirements and standard contracts prescribed by China's Personal Information Protection Law and the Cyberspace Administration of China (CAC).
  • Data Minimization for Transfers: We transfer only the minimum data necessary for the specified business purpose and do not transfer sensitive personal data internationally unless legally required or with explicit consent.

You may request a copy of the transfer safeguards applicable to your data by contacting our privacy team at the address provided in Section 13.

06

Data Retention

How Long We Keep Your Data

We retain personal and business data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. Our standard retention schedules are as follows:

Inquiry & Pre-Sales Data

3 Years

From last interaction or inquiry date, unless a commercial relationship is established

Contract & Order Records

7 Years

From contract termination, per Chinese accounting law and applicable commercial law requirements

Technical Support Tickets

5 Years

From ticket closure, to support warranty claims and product quality analysis

Website Analytics Data

26 Months

Per Google Analytics default retention, adjusted per GDPR requirements

Marketing Consent Records

Until Withdrawn

Plus 3 years after withdrawal to demonstrate compliance history

SDK / API Access Logs

2 Years

From log generation, for security auditing and abuse prevention purposes

Upon expiry of the applicable retention period, data is securely deleted or anonymized in accordance with our data destruction procedures. Anonymized, aggregated data may be retained indefinitely for statistical and product improvement purposes.

07

Security Measures

How We Protect Your Data

Trackintelli implements technical and organizational security measures appropriate to the risk level of the data we process. Given our industrial B2B context and the sensitivity of client deployment information, we maintain a robust security posture aligned with ISO 27001 principles.

TLS 1.3 Encryption

All data in transit encrypted using TLS 1.3 or higher

AES-256 At Rest

Stored data encrypted with AES-256 on all production systems

Role-Based Access Control

Strict RBAC with least-privilege principles across all internal systems

Regular Security Audits

Annual penetration testing and quarterly vulnerability assessments

Incident Response Plan

Documented breach response with 72-hour notification capability per GDPR Article 33

Employee Training

Mandatory annual data protection training for all staff handling personal data

Despite these measures, no method of electronic transmission or storage is 100% secure. We encourage business partners to use secure communication channels when sharing sensitive project or deployment information.

08

Your Rights

Data Subject & Business Contact Rights

Depending on your location and applicable law, you or the individuals within your organization whose data we process may have the following rights. We honor these rights without discrimination and at no charge, subject to identity verification:

Right of Access (GDPR Art. 15 / PIPL Art. 45)

Request a copy of the personal data we hold about you and information about how it is processed.

Right to Rectification (GDPR Art. 16)

Request correction of inaccurate or incomplete personal data we hold about you.

Right to Erasure / Right to Be Forgotten (GDPR Art. 17)

Request deletion of your personal data where there is no overriding legal basis for continued processing.

Right to Object / Opt-Out (GDPR Art. 21 / CCPA)

Object to processing based on legitimate interests, or opt out of marketing communications at any time via the unsubscribe link in our emails.

Right to Data Portability (GDPR Art. 20)

Receive your personal data in a structured, commonly used, machine-readable format for transfer to another controller.

Right to Lodge a Complaint

Lodge a complaint with your local data protection authority (e.g., the ICO in the UK, BfDI in Germany, CNIL in France, or the CAC in China) if you believe your rights have been violated.

To exercise any of these rights, please contact us at privacy@trackintelli.com. We will respond within 30 days (or within the timeframe required by applicable law). We may need to verify your identity or your authority to act on behalf of your organization before processing a request.

09

Cookies & Tracking Technologies

How We Use Cookies on Our Website

Our website uses cookies and similar tracking technologies to improve user experience, measure website performance, and support our Google Ads campaigns. We categorize our cookies as follows:

Category Purpose Consent Required
Strictly Necessary Session management, security tokens, CSRF protection No (exempt)
Analytics Google Analytics 4 -- page views, session data, user flow Yes
Advertising Google Ads conversion tracking, remarketing audiences (gclid) Yes
Functional Language preferences, form pre-fill, chat widget state Yes
LinkedIn Insight Tag B2B audience analytics and LinkedIn campaign conversion tracking Yes

You can manage your cookie preferences through our cookie consent banner, which appears on your first visit to our website. You may also configure your browser to block or delete cookies; however, disabling strictly necessary cookies may impair website functionality. For more information about Google's data practices, visit policies.google.com/privacy.

10

Third-Party Links & Integrations

External Websites and Services

Our website and documentation portals may contain links to third-party websites, trade show registration pages, certification body portals, and partner platforms. These external sites operate under their own privacy policies, and Trackintelli has no control over and assumes no responsibility for their content, privacy practices, or security measures.

Our SDK documentation and API portals may integrate with third-party developer tools and platforms (e.g., GitHub for code repositories, Postman for API testing collections). Your use of these platforms is governed by their respective terms of service and privacy policies.

We recommend reviewing the privacy policy of any external site or service before providing personal or business information. The presence of a link on our website does not constitute an endorsement of that site's privacy practices.

11

Children's Privacy

Age Restrictions

Trackintelli's website, products, and services are directed exclusively at business professionals and organizations. We do not knowingly collect, solicit, or process personal information from individuals under the age of 18. Our website is not designed for or targeted at children.

If you believe that a minor has provided personal information to us without appropriate parental or guardian consent, please contact us immediately at privacy@trackintelli.com and we will take prompt steps to delete such information from our systems.

12

Changes to This Policy

How We Notify You of Updates

We may update this Privacy Policy from time to time to reflect changes in our business practices, applicable law, or regulatory guidance. When we make material changes, we will:

  • Update the "Last Updated" date at the top of this page
  • Post a prominent notice on our website homepage for at least 30 days
  • Send an email notification to active business contacts and registered portal users where we have valid email addresses
  • Where required by law (e.g., GDPR for consent-based processing), seek renewed consent before the changes take effect

Your continued use of our website or services after the effective date of any updated Privacy Policy constitutes your acknowledgment of the changes. We encourage you to review this page periodically. Previous versions of this Privacy Policy are available upon request.

13

Contact Us

Privacy Inquiries & Data Requests

For any questions, concerns, or requests relating to this Privacy Policy or your data rights, please contact our Privacy Team. We are committed to responding to all privacy inquiries within 30 calendar days.

Privacy & Data Protection

Registered Address

Trackintelli Technology Co., Ltd.

Pearl River Delta Region
Guangdong Province
People's Republic of China

EU Representative

For data subjects located in the European Economic Area or the United Kingdom, Trackintelli is in the process of appointing an EU/UK Representative as required under GDPR Article 27. Details will be published here upon appointment. In the interim, please direct all GDPR-related inquiries to privacy@trackintelli.com.

Response time: We aim to acknowledge all privacy requests within 5 business days and provide a substantive response within 30 calendar days. For complex requests, we may extend this period by an additional 60 days with prior notification, as permitted under GDPR Article 12(3).

By using Trackintelli's website or services, you acknowledge that you have read, understood, and agree to the practices described in this Privacy Policy. This policy is effective as of January 1, 2025 and supersedes all prior privacy notices issued by Trackintelli.

© 2025 Trackintelli Technology Co., Ltd. All Rights Reserved Privacy Policy v1.0