CHHES Privacy PolicyEffective Date: July 6, 2026
Scope of Application: This policy applies to the CHHES website (www.chhes.com), i OS App, Android App, We Chat Mini Program, and CHHES versions listed on app stores and mobile manufacturer channels such as Huawei, Xiaomi, OPPO, vivo, Honor, Samsung, and My App. Page names, entry points, and feature display may differ slightly across different platforms, but the personal information protection rules remain consistent.
CHHES values personal information and privacy protection. We process personal information in accordance with principles of legality, legitimacy, necessity, and good faith, and strive to explain to you in a clear, understandable, and manageable manner the processing purposes, processing methods, scope of information, retention rules, third-party sharing, and your rights.
Personal Information Collection TimingCHHES Android App uses the system's native privacy policy prompt dialog. Before you click "Agree and Accept", we will not initialize third-party SDKs such as DCloud and Ge Tui, nor will we collect device identifiers such as OAID, Android ID, GAID, device MAC address, and list of installed apps. After you click to agree, we and the aforementioned SDK providers may process necessary personal information within the scope explicitly stated in this policy.
1. How We Collect and Use Personal Information- Account and login information: phone number, country or region code, username, email address, encrypted password, login status, account binding relationships, device and security logs, used for registration, login, password recovery, account security, and customer service.
- Apple Sign-In Information: In the i OS App, when you choose Apple Sign-In, we may receive from Apple your unique user identifier, authorization credentials, login status, nickname or name (if you authorize its provision), email address or private email, for the purposes of registration or login, account binding, identity verification, and risk control security.
- One-tap phone login information: When you opt for this feature, we may process your phone number, country or region code, carrier gateway authentication result, login authorization credentials, timestamp, random number, signature verification result, device information, network information, SIM card identification details, and necessary security logs, solely for device phone number authorization login and account security protection.
- Order and Fulfillment Information: products, order number, payment status, recipient, phone number, shipping address, tracking number, after-sales records, invoice or voucher information, used for placing orders, payment, delivery, after-sales, customer service, dispute resolution, and compliance retention.
- Customer Service & Communication Information: Inquiry details, chat records, images or files, complaints and reports, after-sales documentation, and handling outcomes, used to respond to requests, resolve disputes, improve service, and ensure transaction security.
- Device, network, and log information: device model, system version, app version, device identifier, network status, IP address, crash logs, operation logs, push token or message identifier, used to ensure app operation, security risk control, push notifications, troubleshooting, and service optimization.
- AI & Functional Services Information: The text, images, product questions, translations, recognized content, customer service conversations, and feedback that you actively input or upload are used to provide AI customer service, AI translation, AI search, image recognition, OCR text recognition, and other functions. Please do not proactively input sensitive information such as ID numbers, bank card numbers, payment passwords, or verification codes that is unrelated to these functions.
II. Push Notification ServiceTo provide you with services such as order notifications, shipping updates, system notifications, promotional notifications, and customer service messages, the CHHES App integrates DCloud uni Push and Ge Tui Push SDKs, and may call upon offline push SDKs from device manufacturers such as Huawei, OPPO, vivo, Xiaomi, Honor, and Meizu based on the device brand. Overseas Android devices may use Firebase Cloud Messaging (FCM); i OS notifications may be delivered through system channels such as Apple Push Notification service (APNs). The above push SDKs are initialized only after you consent to the Privacy Policy; push tokens, Client IDs, and device identifiers (including Android ID, GAID, device MAC address, list of installed apps, OAID, etc.) are collected only when you actively enable "Message Notifications" in the App, and are used for message delivery, channel keep-alive, and delivery statistics. See below for detailed types, purposes, and methods.Third-Party SDK Personal Information Collection List。
You can turn off notification permissions in your device system settings. After turning off, you can still use other main functions of the app, but you may not receive order updates, shipping tracking, event notifications, system alerts, or customer service messages in a timely manner.
III. Third-Party SDKs and ServicesTo enable login authentication, push notifications, payments, logistics, customer service, AI assistance, analytics, crash diagnostics, image recognition, or system compatibility, we may integrate third-party SDKs or services. We strive to ensure that third parties handle information in accordance with lawful, legitimate, and necessary principles, and we will disclose service names, operators, usage purposes, possible data processed, and privacy policy links in relevant documentation.
Among these, one-tap phone number login may involve DCloud uni one-tap login, Ge Tui (operated by Guangdong Interact Co., Ltd.), and the gateway authentication capabilities of basic telecommunications carriers. Push notifications involve DCloud's universal development toolkit (collecting OAID, etc.) and Ge Tui's push notification SDK (collecting Android ID, GAID, device MAC address, installed app list, push token, etc.), and may also call upon various mobile manufacturers' push SDKs and FCM. We will not initialize the above SDKs before you agree to the privacy policy. The specific details depend on the actual version, device brand, system capabilities, and the features you use. See the complete list for details.Third-Party SDK Personal Information Collection List。
Section 4. Sensitive Personal Information and PermissionsIn scenarios such as payment, delivery, after-sales service, identity verification, account recovery, children's personal information protection, image recognition, OCR, or complaints and reports, we may collect sensitive personal information including phone numbers, addresses, payment status, identity or certification documents, and children's personal information. We process such data only when there is a specific purpose and sufficient necessity, and we implement strict protection measures. For the purpose, scope, and how to disable system permissions, please refer to the Permission Request Guide.
5. Information Sharing, Transfer, and Public DisclosureWe do not sell your personal information. To fulfill orders, process payments, arrange logistics, provide customer service, send notifications, enable login authentication, conduct security checks, ensure tax compliance, handle complaints, or meet regulatory requirements, we may share only the minimum necessary information with required service partners. Without your consent or unless otherwise required by law, we will not publicly disclose your personal information.
If personal information is transferred due to merger, split, acquisition, or asset transfer, we will require the new processor to continue to be bound by this policy; if the purpose or method of processing changes substantially, we will re-obtain your consent in accordance with the law.
6. Storage and SafetyWe retain personal information only for the period necessary to fulfill the purposes described in this policy, unless otherwise required by applicable laws and regulations, trade disputes, taxation, audits, security risk control, or regulatory requirements. We protect personal information security through access controls, encryption, log audits, permission management, personnel training, and emergency response measures.
7. Your RightsYou have the right to query, copy, correct, supplement, and delete your personal information, withdraw your consent, cancel your account, and disable notifications or system permissions. You can do so through the App or relevant sections on our website, or contact us via online customer service, We Chat customer service (chhes 2), phone at 010-56033331, or email at admin@chhes.com. To process requests related to account security, orders, refunds, or privacy rights, we may need to verify your identity.
VIII. Children's Personal Information ProtectionCHHES is primarily intended for users with full civil capacity. If you are a child under 14 years of age, please use the service with the consent and guidance of your guardian. We will process children's personal information in accordance with the Children's Personal Information Protection Rules, and provide guardians with access, correction, deletion, withdrawal of consent, and complaint channels.
9. Policy UpdatesWe may update this policy when service features, third-party SDKs, laws and regulations, or platform review requirements change. Significant changes will be notified to you through page announcements, app pop-ups, in-app messages, or other appropriate means.
Our product is developed based on DCloud uni-app. To enable CHHES App functionality, we may integrate the following third-party SDKs. We will only initialize these SDKs after you click to accept the Privacy Policy. Push-related device identifiers are only used for order, logistics, and customer service notifications when you actively enable App Notifications. You can disable notifications or related permissions in system settings or within the App.
| SDK Name | Operator | Usage purpose | Types of personal information collected | Collection Channels | Privacy Policy |
|---|
| DCloud Universal Development Toolkit (uni-app Base Module) | Digital Paradise (Beijing) Network Technology Co., Ltd. | Application Runtime, Statistical Analysis, Performance Optimization, Crash Troubleshooting | OAID, device model, OS version, app version, network status, operation logs | After you agree to the privacy policy, the SDK automatically collects data | View |
| Getui Push Notification SDK (uni Push 2.0) | Daily Interactive Co., Ltd. | Push Notifications, Push Channel Keep-Alive, Push Delivery Statistics | Android ID, GAID, device MAC address, list of installed apps, push token/Client ID, network information, app package name | After you agree to the privacy policy and enable notifications, the SDK will automatically collect data. | View |
| Huawei/Xiaomi/OPPO/vivo/Honor/Meizu Manufacturer Push SDK | Mobile phone brands | Android Vendor Channel Offline Push Notifications | Device identifier, Push token, Application package name | Once you accept the privacy policy and enable notifications, it will be called based on device brand | Subject to each manufacturer's official announcement |
| Firebase Cloud Messaging | Google LLC | Android Device Push (Overseas) | Device ID, Push Token | After you agree to the privacy policy and enable notifications | View |
| Apple Push Notification service(APNs) | Apple Inc. | i OS System Push | Device Token | After you agree to the privacy policy and enable notifications | View |
| We Chat Open SDK | Shenzhen Tencent Computer Systems Co., Ltd. | We Chat login, share, and pay | Device model, system version, network information, We Chat authorization identifier | When you proactively use We Chat-related features | View |
| Alipay SDK | Alipay (China) Network Technology Co., Ltd. | Alipay | Device model, system version, network information, transaction information | When you proactively use Alipay to pay | View |
| uni One-Click Login / Carrier Gateway Authentication | DCloud, Ge Tui, basic telecom operators | Quick login with this number | Phone number, carrier authentication result, device model, and network information | When you actively click "One-click login with this device's number" | View |
| Sign in with Apple | Apple Inc. | Apple Account Login | Apple User Identifier, Authorization Credentials, Email (if you authorize) | When you choose to sign in with Apple | View |
Note: The above list is based on the app version you are actually using, your device brand, and the features you have enabled. Without your consent, we will not initialize any SDKs that collect device identifiers, nor will we read OAID, Android ID, GAID, MAC address, or your list of installed apps before displaying the privacy policy pop-up. Push-related identifiers are not collected by default and are only used after you enable "Receive New Message Notifications."