Privacy Policy

Updated Date: 3/16/2026

This Privacy Policy applies to the Evaluation Cat Enterprise Information Security Assessment Platform. We understand the importance of personal information to you. We will collect, use, process, and store your personal information strictly in accordance with relevant laws and regulations and the terms of this Privacy Policy.

This Privacy Policy aims to help you understand the following:

  • How we collect and use your personal information
  • How we protect your personal information
  • How we store your personal information
  • How we entrust processing, share, transfer, and publicly disclose your information
  • How we use Cookies or similar technologies
  • How we protect minors' personal information
  • How we handle cross-border transfer of personal information
  • How we guarantee your rights
  • How to get updates to this privacy policy
  • How to contact us

Before using our products or services, please be sure to read and fully understand this Privacy Policy. Once you start using our products or services, or submit personal information to us, it means that you are aware of all the terms of this Privacy Policy and fully agree to our processing of this information in accordance with this Privacy Policy.

If you have any questions, comments, or suggestions regarding the content of this Privacy Policy, you can contact us through any of the contact methods displayed in Article 10 of this Privacy Policy.

1. How we collect and use your personal information

Personal information refers to various information recorded electronically or in other ways that can identify the identity of a specific natural person alone or in combination with other information or reflect the activities of a specific natural person. In the process of using our products or services, we will only collect your personal information when it is absolutely necessary and within a very limited scope, and this information is only used to provide you with products or services, optimize our products or services, and ensure the security of your account.

Specifically, we will collect and use the information you submit in the following ways and for the following purposes, based on the necessity of the service you choose to run:

1. Registration and Account Management

When you register to use our products or services, you need to provide us with your name, email address, company name, contact phone number, etc., to determine your user identity and for our customer service personnel to contact you when necessary.

2. Enterprise Assessment Service

When you use the assessment service, you need to fill in relevant enterprise information, including company name, industry classification, company size, contact person information, etc. This information is used to generate assessment reports and provide customized services.

3. Supply Chain Assessment Invitation

If you use the supply chain assessment function, you may need to provide the vendor's contact email. We will use this information to send assessment invitations to your vendors. Before sending the invitation, please ensure that you have obtained the vendor's explicit authorization.

4. Service Optimization

In order to provide you with a better service experience, we need to collect content such as search terms, keywords, assessment data that you enter during the use of this service.

5. Additional Information Collection

If we need to collect and use your personal information beyond the aforementioned scope due to service adjustments or function updates, we will inform you again and obtain your authorization again.

6. Third-party Information

Currently, we do not actively obtain your personal information from third parties. If we need to collect such personal information for business development in the future, we will obtain your explicit consent before obtaining it, and require the third party to ensure the legality of the information provided.

2. How we protect your personal information

1. Security Technology Measures

We attach great importance to personal information security and take security technology measures that comply with industry standards to protect the personal information you provide. We use security protection measures that comply with industry standards, including data encryption, access control, security audits, and other technical means.

2. Management System Guarantee

We guarantee information security by establishing specialized management systems, processes, and organizations. For example, we only allow staff who need to contact customer information to access the system backend to query and manage customer information, and we strictly set access levels for accessing customer information, while requiring all personnel who may come into contact with your personal information to fulfill corresponding confidentiality obligations.

3. Security Incident Handling

If a personal information leakage or other security incident occurs, we will launch an emergency plan to prevent the security incident from expanding, and inform you through push notifications, announcements, etc.

4. Your Security Responsibility

Ensuring the security of your personal information requires the joint cooperation of you and us. Please do not disclose your login account and password to others. If you discover that your personal information, especially your account or password, has been leaked, please contact us immediately so that we can take corresponding reasonable measures according to your application.

5. Security Commitment

The Internet environment is not 100% secure. We will try our best to ensure the security of any information you send to us. If our physical, technical, or management protection facilities are destroyed, resulting in unauthorized access, public disclosure, tampering, or destruction of information, causing damage to your legitimate rights and interests, we will bear corresponding responsibilities in accordance with the law.

3. How we store your personal information

Personal information collected and generated within the People's Republic of China will be stored within the People's Republic of China. We only retain your personal information for the time necessary to achieve the purposes described in this Privacy Policy, unless the law requires or allows this information to be retained for a longer period.

If your account expires or you actively delete the above information, we will anonymize your personal information in accordance with laws and regulations. After you actively delete the above information, we will no longer use your personal information for commercial purposes.

If an operation termination occurs, we will notify you at least one month in advance, and delete or anonymize your personal information after the operation termination. If the retention period stipulated by laws and administrative regulations has not expired, or it is technically difficult to delete personal information, we will stop processing other than storage and taking necessary security protection measures.

4. How we entrust processing, share, transfer, and publicly disclose your information

Each functional module of this service is provided independently by our company, and the personal information required for relevant functions is also processed by our company. If we need to introduce third-party vendors for developing new functions and modules, we will strictly review their qualifications, sign data protection agreements and confidentiality agreements, and inform you and obtain your authorization before entrusting third-party vendors to process your personal information.

We will not transfer your personal information to any company, organization, or individual, except for the following circumstances stipulated by relevant laws and regulations:

  • After obtaining your explicit authorization and consent, we will transfer your personal information to other parties;
  • In the event of a merger, acquisition, or bankruptcy liquidation, if personal information transfer is involved, we will require the new company or organization holding your personal information to continue to be bound by this personal information protection policy.

Except for disclosing your personal information as required by applicable laws, court orders, or government regulations, we will not publicly disclose your personal information obtained without your consent.

5. How we use Cookies or similar technologies

To ensure the normal operation of the website, we store small data files called Cookies on your computer or mobile device. Cookies usually contain: identifiers, site names, and some numbers and characters.

We use Cookie data files to determine the identity and login status of registered users, improve service quality, and optimize user experience; at the same time, Cookie data can also help us analyze users' use of services. We will not use Cookies for any purpose other than those described in this Privacy Policy.

You can manage or delete Cookies according to your preferences. If you do not want the aforementioned information to be retained in Cookies, you can block or clear Cookies through your browser settings.

6. How we protect minors' personal information

This service is not targeted at minors and will not actively collect minors' information, but we still attach special importance to the protection of minors' information. If we need to collect minors' information, we will obtain the explicit authorization and consent of parents or guardians in advance and issue a separate privacy policy.

At the same time, we ask parents or guardians to pay attention to and protect minors' information. If you find that minors' information has been collected and used without authorization, please contact us to delete it and ensure that the minor cancels our service.

7. How we handle cross-border transfer of personal information

Personal information collected and generated by this website in China will only be stored in China. If some products or services involve cross-border transfer, we need to transfer your personal information overseas, we will strictly implement it in accordance with laws and regulations and ensure the security of your personal information.

8. How we guarantee your rights

In accordance with relevant Chinese laws and regulations, we will guarantee your exercise of the following rights regarding your personal information:

1. Access and correct your personal information

Unless otherwise provided by laws and regulations, you have the right to access your personal information; at the same time, if you find that there are errors in your personal information we are processing, you have the right to ask us to correct it. We will reply to your request within 15 working days from the date of receiving your request or within the time limit required by laws and regulations.

2. Delete your personal information

In the following circumstances, you can request us to delete personal information: if we collect, use, share, or disclose your personal information in violation of laws and regulations; if we violate the agreement with you; if you no longer use our products or services; if we stop operating.

3. Withdraw consent

You can withdraw your authorization for us to collect personal information or change the scope of your authorization by closing the corresponding function service or contacting us. The realization of some business functions relies on basic personal information. If you choose to withdraw your consent or authorization, we will not be able to continue to provide you with the corresponding service.

4. Cancel account

You can request to cancel your account via customer service email, and we will complete your request within 15 working days or within the time limit required by laws and regulations. After you complete the account cancellation, we will stop providing you with corresponding products and services, and delete relevant personal information or anonymize the information.

5. Obtain a copy of personal information

You have the right to obtain a copy of your personal information, please contact customer service via email. Under the premise of technical feasibility, we will transfer a copy of your personal information directly to the third party you designate according to your request.

9. How to get updates to this privacy policy

Due to changes in service content, contact information, laws and regulatory policy requirements, etc., we may revise this Privacy Policy from time to time. When the privacy policy changes, we will publish the updated version on our product website or send it to the email address you provide. In order for you to receive notifications in time, it is recommended that you update your account information or notify us in time when your email address changes.

10. How to contact us

In all cases mentioned in this Privacy Policy where you may need to contact us, you can contact us in the following ways:

Updated Date: 3/16/2026