Privacy Policy

Effective Date: August 1, 2026

Website Name: Waciu

Website URL: www.waciu.com

1. Introduction

This Privacy Policy describes how Waciu collects, uses, stores, processes, discloses and protects personal information of visitors and customers when you browse our website, purchase Bluetooth headphones and accessories, create accounts and complete transactions on www.waciu.com.

This policy complies with the Personal Information Protection Law of the People’s Republic of China, EU GDPR, California CCPA and other applicable global data‑protection regulations. It also satisfies data‑compliance requirements for our third‑party payment service provider for cross‑border payment services. By accessing and using this website, you acknowledge that you have read and agree to the practices described in this Privacy Policy.

2. Information We Collect

We collect only minimum necessary personal data required for operating our store, fulfilling orders and processing payments.

2.1 Personal and Order Information

When you register an account or place an order for products on our website, we collect your full name, shipping address, phone number, email address, order history, purchase preferences and after‑sales service records. This information is used to process orders, arrange delivery and provide customer support.

2.2 Payment Transaction Information

We use a third‑party payment service provider as our cross‑border payment service provider. We collect transaction‑related data including order amount, payment status and transaction timestamp.

We do not collect, hold or store your full card number, CVV or other sensitive payment credentials. All card‑related payment data is securely processed by our third‑party payment service provider, a PCI‑DSS Level 1 certified payment institution.

2.3 Device and Browsing Information

When you visit www.waciu.com, we automatically gather non‑identifiable technical information such as IP address, browser type, device model, access time‑stamp, page‑view logs and operation records. These data help us maintain website stability, detect fraud and improve shopping experience.

2.4 Cookies and Tracking Technologies

Our website uses cookies and similar tracking tools to maintain your login status, remember preferences and optimize page performance. You may adjust cookie permissions via your browser settings. Disabling cookies may affect certain shopping functions but will not block basic website browsing.

3. How We Use Your Information

We use collected personal information only for lawful, specified purposes below:

  1. Process orders, arrange logistics delivery, handle inquiries and after‑sales services for Bluetooth headphones and related goods;
  2. Complete cross‑border payment verification, risk control and fund settlement via our third‑party payment service provider payment system;
  3. Detect suspicious access, fraudulent orders and security threats to comply with anti‑fraud and anti‑money‑laundering requirements;
  4. Analyse website usage to optimize product offering, page layout and overall customer experience;
  5. Respond to customer messages, complaints and identity‑verification requests;
  6. Comply with legal obligations and respond to valid requests from regulatory authorities.

4. Information Sharing and Disclosure

We will not sell, rent or transfer your personal information to unrelated third parties without your explicit consent. Limited sharing only occurs in the following lawful scenarios:

  1. Payment‑service provider: Necessary transaction data will be shared with our third‑party payment service provider for payment validation, risk review and settlement. All shared data shall be processed under PCI‑DSS, ISO27001 and ISO27701 security standards.
  2. Logistics partners: We share delivery‑related recipient information with authorized logistics providers solely for completing product shipment. Partners are required to keep personal information strictly confidential.
  3. Legal requirement: We may disclose user data when required by judicial bodies or regulatory authorities in accordance with formal legal procedures.
  4. Business transfer: In events of merger, acquisition or asset sale, customer personal data may transfer as part of business assets. The new entity shall continue to undertake privacy‑protection obligations under this policy.

5. Data Security

We implement security measures aligned with third‑party payment service provider compliance standards to safeguard your personal and transaction data:

  1. Website data is transmitted and stored with encryption technology. Access permission controls and monitoring mechanisms are deployed to prevent unauthorised access, tampering, leakage or loss of data.
  2. Payment‑related risk screening and abnormal‑transaction early warning are managed by our third‑party payment service provider’s risk‑control system.
  3. Internal staff access to personal data is strictly restricted. Data‑operation logs are kept and regular security audits are performed.
  4. Sensitive payment credentials are not persistently stored on our system. Relevant payment records will be desensitized and archived after transaction completion.

6. Data Retention Period

Personal data is retained only as long as necessary for business and legal purposes:

  1. Order, transaction and after‑sales records shall be kept for 3 years after order completion for after‑sales support and compliance audit.
  2. Browsing logs and cookie‑derived data will be purged within 12 months.
  3. When data is no longer required, we will securely delete, anonymize or desensitize information to remove personal identifiers.

7. Your Rights

Subject to applicable local laws, you have the following rights regarding your personal data:

  1. Right of access: Request access to personal order and transaction data we hold about you.
  2. Right of rectification: Request correction or update of inaccurate personal information.
  3. Right to erasure: Request deletion of your personal information when processing purposes are fulfilled or processing is unlawful.
  4. Right to restriction of processing: Request suspension of data processing where you contest its lawfulness.
  5. Right to withdraw consent: You may withdraw your consent for data processing at any time. Withdrawal does not invalidate prior lawful processing activities.
  6. Right to lodge a complaint: You may submit complaints to competent data‑protection authorities if you believe your privacy rights are infringed.

8. Cross‑Border Data Transfer

Our website provides global cross‑border e‑commerce services. Transaction data will be cross‑border transmitted and processed through our third‑party payment service provider’s global compliant infrastructure. We take adequate safeguards to ensure cross‑border data transfer complies with applicable laws both in users’ jurisdictions and mainland China.

9. Updates to This Privacy Policy

We may revise this Privacy Policy to reflect business adjustments or updated legal / third‑party payment service provider compliance requirements. Revised version will be published on www.waciu.com with updated effective date. Your continued use of our website after publication constitutes acceptance of revised terms.

10. Contact Us

For questions, feedback or privacy‑right‑related requests concerning this policy, please contact us:

Support Email: info@waciu.com

Business Address: Room 706, 7th Floor, Building 3, Hejian Yung Valley, No. 8 Pingxi Road, Longgang Street, Longgang District, Shenzhen, Guangdong Province, China