PandaEthos Privacy Policy
Last Updated: November 23, 2025
Welcome to PandaEthos!
This Privacy Policy explains how we collect, use, disclose, and protect your information when you visit pandaethos.com (hereinafter referred to as “this website”) or shop on this website. By using this website, you agree to the practices described below.
1. Information We Collect
A. Personal Data
- Identity and Contact Information: Name, billing/shipping address, email address, phone number (collected during checkout or account registration)
- Payment Details: Processed securely through the WooCommerce gateway; we only store the last 4 digits and a token
- Communication Records: Emails, product reviews, support tickets, chat messages
B. Automatically Collected Data
- Cookies and Pixels: Used for cart retention, analytics, and advertising (see Section 7)
- Log Files: IP address, browser type, pages visited, timestamps
- Device Information: Screen size, operating system, language settings (for display optimization)
C. User-Generated Content
Photos, comments, messages, and wish list items that you voluntarily post on the website.
2. How We Use Your Information
- To process and ship orders
- To send order confirmations, shipping updates, and marketing emails (with your consent)
- To prevent fraud and abuse
- To improve products, website performance, and user experience
- To fulfill tax, shipping, or legal obligations
3. Legal Basis (GDPR Compliance)
- Contract Performance: For checkout and account creation
- Legitimate Interests: For fraud prevention, analytics, and website optimization
- Consent: For marketing cookies and newsletter subscriptions
- Legal Obligations: For invoicing and tax record-keeping
4. Sharing and Disclosure
We do not sell your personal data. We only share your personal data with the following parties:
- Service Providers:
- Payment gateways (PayPal, Stripe)
- Logistics carriers (EMS, DHL, local postal services)
- Email delivery services (MailPoet, SendCloud)
- CDN and security services (Cloudflare)
- Legal Authorities: As required by law or to protect our rights
- Business Transfers: In the case of mergers, acquisitions, or asset sales (rare occurrences)
5. International Data Transfers
Your data may be processed outside of China (e.g., through EU/US payment gateways). We rely on:
- Payment data compliance with PCI-DSS standards
- EU data transfer standard contractual clauses
- Adequate safeguards under GDPR/CCPA
6. Data Retention
- Orders and Invoices: 7 years (as required by tax laws)
- Marketing Consent: Until you unsubscribe or 3 years of inactivity
- Cookies: 30 days to 2 years (please refer to the Cookie table below)
- Comments: Retained indefinitely unless you request deletion
7. Cookies and Tracking
We use first-party and third-party cookies:
| Cookie Name | Purpose | Duration | Type |
|---|---|---|---|
| woocommerce_cart_hash | Cart retention | Session | Necessary |
| mailpoet_subscriber | Newsletter subscription | 365 days | Functional |
| _ga | Google Analytics | 2 years | Analytical |
| _fbp | Facebook Pixel | 90 days | Marketing |
Managing Cookies: You can block or delete cookies through your browser settings or our Cookie settings banner.
8. Your Rights (GDPR/CCPA/China Personal Data Protection Law)
- Access: Download your personal data
- Rectification: Correct inaccurate information
- Deletion: Delete account/data (subject to legally mandated retention periods)
- Data Portability: Export order history
- Opt-Out: Unsubscribe from marketing emails, cookies, and targeted advertising
- Complaints: Contact us or your local data protection authority
How to Exercise Your Rights
Email: panda0003@pandaethos.com
Subject: “Data Subject Request”
We will respond within 30 days.
9. Security Measures
- SSL/TLS encryption (HTTPS)
- Payment processing compliant with PCI-DSS standards
- WAF and DDoS protection provided by Cloudflare
- Regular backups and malware scans
- Two-factor authentication for administrator accounts
10. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for their privacy protection measures. Please review their privacy policies separately.
11. Children’s Privacy
We do not intentionally collect information from children under the age of 16. If you believe we have inadvertently collected such information, please contact us for deletion.
12. Changes to This Policy
We may update this policy periodically. The “Last Updated” date will be revised accordingly, and we will post a notice on the website. Your continued use of this website after the change indicates your acceptance of the updated policy.
13. Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact:
PandaEthos Privacy Team
Email: panda0003@pandaethos.com
Address: Room 301, Zhongfu Plaza, Futian District, Yiwu City, Jinhua, Zhejiang, China