1. Introduction and Controller Identity
This Privacy Policy outlines how NOMADIUM LIMITED ("we", "us", or "our"), a company registered in Hong Kong (Registration No. 3192159), collects, uses, and protects personal and corporate data provided through our SaaS platform, nomadium.cn. As the Data Controller, we are committed to maintaining the highest standards of data security and transparency.
2. Scope of Data Collection
We collect only the data necessary to provide our digital automotive catalog services:
- Registration Data: Name, business email, phone number, and corporate credentials provided during account creation.
- Usage Data (Telemetry): Information regarding your interaction with our EPC catalogs and VIN-decoding algorithms. We log VIN queries to track subscription quotas and optimize system performance.
- Technical Data: IP addresses, browser type, device information, and timestamps recorded in server logs to prevent unauthorized access and cyberattacks.
3. How We Process Your Data
We process data based on the necessity to perform our contract with you (Art. 6(1)(b) GDPR logic) and our legitimate interest in securing our intellectual property:
- Service Provision: To enable your access to premium catalog features.
- Subscription Management: To track your quota usage and manage recurring billing.
- Security & Fraud Prevention: To prevent account sharing, mass scraping, and automated abuse of our datasets.
4. Payment Security (Airwallex)
We do not store full credit card numbers or sensitive financial data on our servers. All subscription payments are processed via Airwallex, which operates under strict PCI-DSS security standards. By purchasing a subscription, you consent to the necessary transfer of billing data to our payment processor.
5. Cookie Policy & LocalStorage
We use strictly necessary cookies to:
- Maintain your login session across the platform.
- Remember your interface preferences (e.g., language settings).
You may disable cookies in your browser settings, though this may restrict access to certain interactive catalog functions.
6. Automated Security Measures (reCAPTCHA)
To protect our platform from bot-driven misuse and mass scraping, we utilize Google reCAPTCHA. This tool analyzes browser behavior to distinguish between human users and automated scripts. Data transferred to Google includes your IP address and behavioral metadata. This is a vital security requirement for the integrity of our databases.
7. Data Sharing and Third Parties
- No Sale of Data: We do not sell, rent, or trade your contact details or search history to third-party marketing companies, data brokers, or automotive parts retailers.
- Essential Service Providers: We only share data with infrastructure partners (e.g., cloud hosting providers, payment gateways) required to keep our service online and operational. All such partners are bound by strict non-disclosure obligations.
8. Data Retention and Deletion
- Active Accounts: Your data is retained for as long as your subscription is active.
- Terminated Accounts: Upon account cancellation, we delete or anonymize your personal data within 90 days, except for financial records (invoices) which we must retain for statutory periods under Hong Kong tax and accounting regulations.
9. Rights of the Data Subject
You maintain full control over your personal data:
- Right of Access: You may request a report of all data we hold regarding your account.
- Right to Correction: You may update your profile data at any time via your account dashboard.
- Right to Erasure: You may request account deletion, provided that no active financial disputes or statutory retention obligations exist.
10. Contacting Our Privacy Team
If you have any questions, concerns, or requests regarding the processing of your data, please contact our privacy operations team at:
Email: operations@nomadium.cn
Registered Address: NOMADIUM LIMITED, Suite C, Level 7, World Trust Tower, 50 Stanley Street, Central, Hong Kong.