We offer free shipping nationwide

Privacy Policy — Jiajing Picks

Effective date: August 30, 2025
Website: https://www.jiajingpicks.com
Controller / Contact: Jiajing Picks
Hualin International Hall C, Guangzhou, China
Phone: +86 18620842477
Email: contact@jiajingpicks.com

This Privacy Policy explains how we collect, use, disclose, and protect personal information when you visit or make purchases from https://www.jiajingpicks.com and related services (the “Site” or “Services”). It also explains the rights available to you under different privacy laws (EU GDPR, UK GDPR, California CCPA/CPRA, China PIPL and similar regimes). This template is detailed but does not constitute legal advice — please consult local counsel to tailor it to your business and local legal obligations.


1. Scope & Overview

This Privacy Policy applies to all personal information that Jiajing Picks collects through the Site, by phone, email, or in person in connection with our jewelry business (jadeite, pearls, diamonds, colored gemstones, crystals, and related products and services). “Personal information” means any information that identifies or can be used to identify you.


2. Controller / Responsible Entity

The data controller for the personal information collected on the Site is Jiajing Picks (contact details above). If you are located in a jurisdiction that requires a local representative or DPO, we will publish contact details on request.


3. Categories of Personal Information We Collect

We collect the categories of information listed below for the purposes described in Section 5.

A. Identity & contact

  • Name, title, billing/shipping address, email address, telephone number, account username.

B. Transaction & payment

  • Order details, purchase history, invoice data, payment tokens (we do not store full card numbers; payment is handled via PCI-compliant processors).

C. Identification & verification

  • ID documents or proofs (only where required for high-value orders, anti-fraud, customs or regulatory requirements).

D. Technical & usage data

  • IP address, device identifiers, browser and operating system, log files, pages visited, referral source, clickstream and analytics data.

E. Marketing & preferences

  • Communication preferences, consent records, marketing interaction history, wishlists.

F. Sensitive categories (limited)

  • Where necessary and only with explicit lawful basis/consent: certain “sensitive” data elements such as nationality for customs, or identity verification documents. We avoid collecting special category data unless strictly necessary.

4. How We Collect Information

  • Directly from you: account signup, checkout, customer service, surveys, returns, bespoke/custom orders.
  • Automatically: cookies, analytics, log files and third-party tracking when you use the Site.
  • From third parties: payment processors, shipping carriers, public sources, anti-fraud providers, advertising platforms, and trusted suppliers.

5. Purposes for Processing & Legal Bases (GDPR / similar)

We process personal information for the following purposes; where applicable we list the likely legal basis under GDPR:

  1. Order fulfillment, delivery, and returns — performance of a contract.
  2. Payment processing and fraud prevention — performance of a contract and legitimate interests (preventing fraud).
  3. Customer service & communications — performance of a contract / legitimate interests.
  4. Shipping, customs, and export compliance — legal obligation and contract performance.
  5. Personalization & product recommendations — legitimate interests (improving user experience) or consent if required.
  6. Marketing & promotional communications — consent where required; legitimate interests where permitted with opt-out.
  7. Analytics, site operations & security — legitimate interests (site performance, diagnostics), or consent for certain tracking.
  8. Legal compliance, accounting & tax recordkeeping — legal obligation.
  9. KYC/AML checks for high-value or suspicious transactions — legal obligation / legitimate interest.

For EU/EEA (GDPR) data subjects, the rights to access, rectification, erasure, restriction, objection, portability and to withdraw consent apply.


6. Cookies, Tracking & Similar Technologies

We and our partners use cookies, web beacons, SDKs and similar tools to operate the Site, analyze performance, and deliver or measure advertising. Cookies fall into categories:

  • Strictly necessary (required for checkout, cart, authentication).
  • Performance/analytics (site usage & improvements).
  • Functional (language, currency, saved preferences).
  • Advertising/targeting (personalized ads, retargeting — only with consent where required).

On first visit we present a cookie consent banner. You can change cookie settings via the “Cookie Preferences” link in the Site footer, or via your browser settings. We honor Do Not Track where required.


7. Sharing, Processors & Third Parties

We disclose personal information to the following categories of recipients:

  • Payment processors (payment authorization & settlement).
  • Shipping carriers and customs agents (order fulfillment and customs clearance).
  • Third-party service providers for hosting, analytics, email, CRM, returns handling, customer support, and fraud prevention.
  • Professional advisers (legal, accounting) when needed for legal compliance.
  • Authorities and courts where required by law (subpoena, tax audit, investigation).

All third-party processors are subject to contracts requiring appropriate security and confidentiality. We do not sell personal information for money. If you are a California resident and believe we have sold/shared your data, see the California section below for how to opt out.


8. International Transfers & Safeguards

Because we operate globally, personal information may be transferred to, and processed in, countries other than the country in which you live, including China and other jurisdictions with different data protection laws.

  • Where transfers from the EU/EEA occur, we rely on adequacy decisions, Standard Contractual Clauses (SCCs), Binding Corporate Rules (where applicable) or other lawful transfer mechanisms. Standard Contractual Clauses are the modern EU transfer tool and we implement them when necessary. (European Commission)
  • For transfers involving China residents’ personal information, the PRC Personal Information Protection Law (PIPL) imposes special rules including notice and separate consent for cross-border transfers and/or security assessment requirements; where applicable we will follow PIPL procedures and disclose required transfer details.

Where required by law we will provide you with a summary of safeguards or make them available on request.


9. Data Retention

We retain personal data only as long as necessary for the purposes stated above and to comply with legal obligations:

  • Order, invoice & tax records: typically 6–10 years (jurisdictional tax and accounting rules).
  • Account data: retained while account is active and for a reasonable time after account closure for fraud prevention and legal compliance.
  • Marketing consents/preferences: until you withdraw consent or after an inactivity period.
  • Support tickets: generally up to 3 years after resolution unless longer retention is required.
  • Logs & analytics: retained for a period that balances business needs and privacy (e.g., 12–36 months for analytics).

If you wish to request deletion earlier, see “Your Rights” below.


10. Your Rights & How to Exercise Them

A. For EU / UK / EEA individuals (GDPR)

You have the right to: access, rectification, erasure (right to be forgotten), restriction of processing, object to processing, data portability, and to withdraw consent at any time. Requests will be handled without undue delay and in principle within one month (extensions permitted in complex cases).

B. For California residents (CCPA / CPRA)

California residents have the right to: know categories & specific pieces of personal information collected, request deletion, request correction, opt out of the sale/sharing of personal information, and opt out of targeted advertising. Businesses must confirm receipt of a verifiable request and substantively respond within 45 calendar days (extensions permitted with notice).

C. For China residents (PIPL)

Under PIPL you may request access, correction, deletion, and to withdraw consent; personal information handlers must follow PIPL procedures for verification and cross-border transfer notice.

D. How to submit requests

Send an email to contact@jiajingpicks.com with the subject line “Privacy Request” and include: your name, email used with us, description of request, and any supporting documents to verify identity. For California residents you may designate an authorized agent in writing. We will verify requests in a manner proportionate to the sensitivity of the request and the information involved.

E. Verification & refusal

To protect privacy, we may request additional information to verify identity before acting on a request. We may refuse or limit requests that are manifestly unfounded, excessive, or that would violate the rights of others, and we will explain the reasons.


11. Children & Age Limits

Our Site is not directed to children below the minimum age required by local law (e.g., under 13 in the U.S.). We do not knowingly collect personal information from children. If you are a parent or guardian and believe we have data about a child, contact us and we will promptly investigate and take appropriate steps, including deletion where required.


12. Security Measures

We use reasonable technical and organizational measures to protect personal information, such as TLS/HTTPS in transit, access controls, encryption of sensitive data where feasible, regular security reviews, staff training, and contractual obligations with processors. No system is 100% secure; if you believe your account has been compromised, contact us immediately.


13. Data Breach Notification

In the event of a security breach that is likely to result in a risk to individuals’ rights and freedoms, we will follow applicable law in notifying supervisory authorities and affected individuals. For example, under GDPR controllers must notify the competent supervisory authority without undue delay and, where feasible, no later than 72 hours after becoming aware of a notifiable personal data breach. We will also follow local breach notification rules for other jurisdictions.


14. Marketing, Promotional Messages & Opt-Out

You may opt out of marketing at any time by:

  • Using the unsubscribe link in promotional emails;
  • Changing your preferences in your account (if applicable); or
  • Emailing contact@jiajingpicks.com with “Unsubscribe — Marketing” in the subject line.

Even after unsubscribing from marketing, we may send you transactional or service messages related to orders, warranties, or security.


15. Third-Party Platforms & Links

The Site may contain links to third-party websites (e.g., social media, payment providers). This Privacy Policy does not cover third-party practices. We recommend you review those third parties’ privacy notices.


16. Automated Decision-Making & Profiling

We may use limited profiling (e.g., to personalize product recommendations). We do not rely on automated decision-making that produces legal or similarly significant effects without human review. Where automated decisions are used that produce significant effects, you will be informed and given rights to contest and request human review.


17. International Visitors & Local Rights

If you are located outside China, and/or are an EU/UK/California resident, you may have additional local rights. Where a conflict arises between this Policy and mandatory local privacy laws, the local mandatory law will control to the extent required.


18. How to Contact Us / Complaints

For privacy enquiries, requests, or to lodge a complaint contact:

Email: contact@jiajingpicks.com
Address: Hualin International Hall C, Guangzhou, China
Phone: +86 18620842477

If you are an EU/EEA data subject and remain dissatisfied after contacting us you have the right to lodge a complaint with your local supervisory authority (for example, an EU member state Data Protection Authority). For California residents, you may contact the California Privacy Protection Agency or California Attorney General.


19. Changes to This Privacy Policy

We may update this Privacy Policy to reflect changes in our practices, legal requirements, or business operations. Material changes will be posted on the Site with an updated effective date. Continued use after changes constitutes acceptance of the revised policy.


20. Legal Notices & Additional Disclosures

  • No sale of personal information: We do not sell personal information for money. If we change this practice we will provide notice and an opt-out mechanism consistent with applicable law.
  • Transfers from China: Where required by PIPL, we will provide additional notice and obtain separate consent for cross-border transfers or undergo required security assessments.

Important legal references / guidance consulted

  • GDPR text and data subject rights guidance.
  • California Attorney General (CCPA/CPRA) guidance and consumer rights.
  • PRC Personal Information Protection Law (PIPL) translations & guidance.
  • EU Standard Contractual Clauses (SCCs) guidance for international transfers.
  • GDPR breach notification (Article 33) and EDPB guidance.

 

Quick Navigation
×
×

Cart

Buy for ¥850.00 more and get free shipping