Privacy Policy

GDPR-compliant privacy policy for our European operations

SCIT TEHNOLOGY SRL, as the official European distributor of Zhanlida adhesive products, is committed to protecting your personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable Romanian data protection legislation. This policy explains how we collect, process, and protect your personal data.

Last updated: April 2026

Data Controller

The data controller responsible for processing your personal data is:

• SCIT TEHNOLOGY SRL

• Address: Str. Pârâului nr. 2B, Cluj-Napoca, România

• CUI: 25643222

• Reg: J12/1214/2009

• Contact: [email protected]

As the official European distributor of Zhanlida products, SCIT TEHNOLOGY SRL is committed to protecting your personal data in compliance with the General Data Protection Regulation (EU) 2016/679 (GDPR).

Lawful Basis for Processing

We process your personal data based on the following legal grounds under Article 6 GDPR:

• Contract performance: Processing necessary to fulfill wholesale orders and business agreements

• Legitimate interest: Business operations, fraud prevention, website improvement

• Legal obligation: Tax, accounting, and regulatory compliance

• Consent: Marketing communications and non-essential cookies (you may withdraw consent at any time)

Data We Collect

We collect and process the following categories of personal data:

• Identity data: Name, job title, company name

• Contact data: Email address, phone number, business address

• Transaction data: Order history, payment details, invoices

• Technical data: IP address, browser type, device information, cookies

• Communication data: Emails, inquiries, and business correspondence

• Usage data: Website browsing activity, pages visited, interaction data

Purpose of Processing

Your personal data is processed for the following purposes:

• Fulfilling and managing wholesale orders across the EU

• Customer account management and business communications

• Payment processing and invoicing

• Shipping and logistics coordination within Europe

• Customer support and technical assistance

• Website analytics and performance optimization

• Legal compliance including tax reporting

• Marketing (only with explicit consent)

Data Recipients & Transfers

Your data may be shared with the following categories of recipients:

• Logistics partners for order delivery within the EU

• Payment service providers for secure transactions

• IT service providers for website hosting and maintenance

• Accounting and legal advisors

• Zhanlida Technology (China) — for product sourcing and fulfillment

For transfers outside the EU/EEA (including to China), we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission, in accordance with Article 46 GDPR.

Data Retention

We retain your personal data only as long as necessary:

• Active business relationship: Data retained for the duration of the relationship

• Transaction records: 10 years (Romanian fiscal legislation)

• Marketing consent records: Until consent is withdrawn

• Website analytics: 26 months

• Communication records: 3 years after last contact

After the retention period expires, data is securely deleted or anonymized.

Your Rights Under GDPR

Under the GDPR, you have the following rights regarding your personal data:

• Right of access (Art. 15): Obtain a copy of your personal data

• Right to rectification (Art. 16): Correct inaccurate or incomplete data

• Right to erasure (Art. 17): Request deletion of your data ('right to be forgotten')

• Right to restrict processing (Art. 18): Limit how we use your data

• Right to data portability (Art. 20): Receive your data in a structured, machine-readable format

• Right to object (Art. 21): Object to processing based on legitimate interests or for direct marketing

• Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time

To exercise your rights, contact us at [email protected]. We will respond within 30 days.

Data Security

We implement appropriate technical and organizational measures to protect your data, including:

• SSL/TLS encryption for all data transmissions

• Secure server infrastructure within the EU

• Access controls and authentication procedures

• Regular security assessments and updates

• Staff training on data protection

In the event of a data breach, we will notify the supervisory authority within 72 hours as required by Article 33 GDPR, and affected individuals without undue delay where required.

Supervisory Authority

You have the right to lodge a complaint with a supervisory authority. The competent authority for SCIT TEHNOLOGY SRL is:

• Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal (ANSPDCP)

• Address: B-dul G-ral. Gheorghe Magheru 28-30, Sector 1, 010336, București, România

• Website: www.dataprotection.ro

You may also contact the supervisory authority in your own EU Member State.

Cookies

Our website uses cookies in compliance with the ePrivacy Directive. For detailed information about the cookies we use and how to manage them, please see our Cookie Policy.

Essential cookies are used without consent as they are necessary for website functionality. All other cookies require your explicit consent.

Contact & DPO

For any questions regarding this Privacy Policy or data protection matters:

• Data Protection Contact: [email protected]

• SCIT TEHNOLOGY SRL

• Str. Pârâului nr. 2B, Cluj-Napoca, România

We are committed to resolving any concerns about your data protection rights.