LEGAL / PRIVACY
Privacy Policy
This Privacy Policy explains how Fuzhou Shuidifeiyang Network Technology Co., Ltd. ("we", "us" or "DRIPFLY") handles information through this public website and our proprietary internal business systems.
1. Who we are
We are a technology-driven cross-border retail operator headquartered in Fuzhou, Fujian, China, with Brazil as our primary operating market.
2. Information we handle
Depending on the service and authorization involved, we may handle:
- Business contact information provided in an enquiry;
- Technical logs needed for security, reliability and fraud prevention;
- Store, order, product, inventory, logistics and settlement records from our own operations;
- Advertising account, campaign, ad group, creative and reporting data obtained through official platform APIs from accounts owned by or explicitly authorized to our company.
3. How we use information
We use information to operate our business, answer enquiries, protect our systems, prepare internal reports, manage authorized advertising activities, optimize campaign performance, reconcile operational records and meet legal or compliance obligations.
4. Platform API data
Data obtained through the TikTok Business API or another platform API is used only for the authorized purposes described in the relevant application and platform terms. We do not sell platform data or make it available to unauthorized third parties. API access is subject to platform review and approval.
5. Sharing and processors
We may use vetted hosting, security, analytics or professional service providers where reasonably necessary. They may process information only under our instructions and appropriate contractual or legal safeguards. We may also disclose information where required by law or to protect legitimate rights and system security.
6. International processing
Our business operates across China and Brazil. When information is processed across borders, we apply safeguards appropriate to the information, the service and applicable requirements.
7. Security and access
We use role-based access, credential controls, server-side token handling, logging and operational procedures designed to reduce unauthorized access, alteration, disclosure or loss. No security measure can guarantee absolute protection.
8. Retention
We retain information only for as long as reasonably required for the stated business purpose, security, dispute resolution and legal obligations. We delete or de-identify information when it is no longer needed, subject to valid retention requirements and backup cycles.
9. Your requests
Subject to applicable law, you may request access, correction or deletion of relevant information. We may ask for reasonable information to verify identity and authority before acting on a request. See our Data Deletion page for the process.
10. Children
Our website and internal business systems are intended for business users and are not directed to children.
11. Changes
We may update this policy as our services or legal requirements change. The current version and effective date will remain published on this page.
12. Contact
For privacy questions, email business@dripfly.org.