BitCloud

Privacy Policy

1. Operator and scope

杭州比特云网络科技有限公司 (“BitCloud”, “we” or “us”) respects your personal information. This policy describes the purposes, methods, scope and retention of information processing when you browse our corporate website, submit product or partnership inquiries, or contact the email address published on the website. It also explains your rights.

This policy applies to the BitCloud corporate website at https://token.bitcloud.com.cn and its inquiry function. It does not replace policies governing a separate service hosted at that domain before the corporate website is published. The Token Platform, model access, paid services and open source communities have their own agreements and privacy information. Check which service you are using; sharing a domain does not make this policy retroactively change the rules of an earlier service.

You do not need a website account to browse public pages or submit an inquiry. Visitor registration, community interaction and third-party visitor analytics are not enabled. Section 11 addresses those future features.

2. Information and purposes

Provide only relevant information that you are authorized to share. Do not submit passwords, API keys, complete identity documents, payment account information or unrelated sensitive information. Obtain appropriate authority before providing another person's information. The inquiry form does not require file uploads.

Authorized staff handle inquiries; submissions are not automatically published as comments or news. Submitting an inquiry does not, by itself, authorize public display of your contact details, promotional subscriptions or marketing unrelated to the inquiry.

2. Information and purposes
ActivityInformationPurpose
BrowsingNetwork connection and page-request information necessary to deliver the website, and language preferencesServe pages, display the selected language and operate the website
InquiriesName, either a phone number or an email address, inquiry type and requirements; company and country or region are optionalUnderstand the inquiry, assign appropriate staff and respond
Submission and follow-upLanguage, receipt time, receipt identifier, policy version, consent status, handling status, necessary notes and staff handling recordsVerify submissions, coordinate internal handover and follow up
Duplicate prevention and rate limitingRequest identifiers, keyed hashes of submission content and contact details, counters and expiry times; source IP addresses and derived hashes when trusted source identification is enabledPrevent duplicate records, limit abnormal requests and protect the inquiry endpoint
EmailSender address, message content, attachments you choose to send and subsequent correspondenceRespond to inquiries, partnership matters and personal information requests

3. Processing basis and choices

For the inquiry form, we rely on your affirmative confirmation after reading the information provided and submitting the form. Without information necessary for a reply or confirmation of the inquiry purpose, submission cannot be completed. Public browsing remains available. Company and country or region may be left blank.

When you email us, we process the correspondence to the extent necessary to understand and respond to that matter. We provide further notice and obtain appropriate consent when purposes change or additional processing requires consent. Processing based on contract performance, legal obligations or another lawful basis is limited to what that basis permits and requires.

You may withdraw consent. Withdrawal does not affect processing lawfully carried out with consent before withdrawal. If we can no longer use contact details needed to reply, we may be unable to continue the inquiry. Section 9 explains how to make a request.

4. Cookies and browser information

The language feature may use a NEXT_LOCALE cookie to remember your preferred language. It does not store inquiry text or contact details. The current language cookie has no configured persistent expiry; session closure and restoration depend on your browser. You can inspect, delete or restrict cookies in browser settings. You may need to select your language again after clearing them.

While the form is open, it temporarily holds entered information and a submission identifier for editing and retries. It does not intentionally write names, contact details or inquiry text to website-managed persistent browser storage. Refreshing or leaving may discard unsent information. Your browser's autofill and session restoration depend on its own settings.

“Send email” opens your email application; you decide whether to send. “Copy email” writes only our public email address to the clipboard and does not read clipboard contents. The website administration area is for authorized staff; its authentication sessions are separate from public visitor registration.

5. Retention and deletion

We retain personal information for the shortest period necessary for its purpose. The usual rules below may end earlier when a valid deletion request, completion of the purpose or another applicable deletion condition arises.

Changing a status, adding an internal note or running an automated task does not restart inquiry retention. If an inquiry becomes a contract or service engagement, only necessary records with an independent processing basis are managed separately; the full inquiry is not automatically retained longer.

We delete or anonymize information when retention ends or deletion is legally required. Where a statutory retention period has not ended or deletion is technically difficult, we stop other processing except storage and necessary security protection. Backups rotate on schedule. Recovery must reapply registered deletions or restrictions before the recovered information is used.

5. Retention and deletion
InformationRetention and starting point
Inquiry text, contact details, related emails and attachments, and follow-up notes12 calendar months after the last substantive communication with the inquirer about that matter; from submission if there is no subsequent communication
Consent and policy-version recordsRetained and disposed of with the corresponding inquiry
Duplicate-prevention identifiers30 days after submission
Temporary rate-limit countersCleared within 48 hours after the limiting window ends
Database backupsRolling retention of 30 days from creation
Minimal deletion journal31 days from registration; only receipt identifiers and deletion or expiry times, to reapply deletions after recovery
Network security logs subject to statutory retentionRetained within the scope and period required by applicable law, including at least six months where that requirement applies

6. Processors, disclosure and transfers

Where service providers process information on our behalf for website operation, storage, backups or email, we define the purposes, scope, duration and security requirements and supervise their processing as required by law. They must not use information beyond the agreed purposes and must return or delete it when the engagement ends as required.

We do not sell personal information. Before providing it to another party that independently determines processing purposes and methods, or disclosing it publicly, we fulfil applicable notice and separate-consent requirements, subject to applicable legal exceptions. Consent to an inquiry is not blanket authorization to share information with any third party.

Where a merger, division, dissolution, bankruptcy or similar event requires a transfer of personal information, we provide legally required information about the recipient and its contact details and require continued protection. Changes to the original purposes or methods require renewed consent where applicable.

7. Storage, access and cross-border processing

Website information is stored and processed in systems supporting website operation, inquiry management, backups and email. We remain responsible for the corresponding protection of personal information and manage it according to the purposes, retention and access requirements in this policy. Changing infrastructure or providers does not authorize broader use or longer retention.

Before providing personal information outside mainland China or permitting an overseas recipient to access it, we fulfil applicable procedures, explain the recipient, contact details, purposes, methods, information categories and rights-request channels, and obtain separate consent and implement required safeguards where applicable. This policy and consent to a single inquiry do not provide blanket authorization for future cross-border processing.

Following an external community or platform link opens an independent website that processes the associated requests. This differs from our directly providing inquiry records to it. Read its information before submitting personal information there.

8. Security

We apply protection appropriate to the processing, including administrator authentication, role permissions, input validation, duplicate prevention, rate limiting, backup and recovery management. Staff access and handle inquiries according to their responsibilities. Hashes that can be associated with individuals remain protected as personal information; hashing alone does not make information anonymous.

No technical or organizational measure guarantees absolute security. If information is or may be leaked, altered or lost, we take timely remedial action and fulfil applicable notification and reporting duties. Report suspected risks through the email in section 13 without including unnecessary complete credentials or sensitive information.

9. Your rights and requests

You may request information and explanations, access, copies, correction, supplementation, restriction or refusal of processing, deletion and withdrawal of consent as provided by law. You may also request transfer of personal information where applicable conditions are met. No website account is required.

Email contact@bitcloud.com.cn, preferably with “Personal information rights request” in the subject. Describe the approximate inquiry date, requested action and reply channel. Where possible, use your original inquiry email or provide a receipt identifier or similar verification clue. Do not send complete identity documents unprompted. We may request identity or authorization evidence proportionate to the request to prevent unauthorized disclosure.

After verification, we handle requests and provide feedback promptly. If more information is needed or a request cannot be fully fulfilled under applicable law, we explain the reason and next steps. Lack of a self-service feature does not justify refusing a request. You may seek reconsideration through the same email, complain or report to the relevant personal information protection authority, or seek relief from a court with jurisdiction.

10. Minors

The website primarily presents products and services for businesses and developers. It is not specifically directed at children and does not require age, identity-document or guardian information. Do not include unrelated information about minors in inquiries or attachments.

Children under 14 should have a guardian contact us first and should not submit personal information independently. If we discover children's information collected without appropriate authorization, we investigate, stop unnecessary processing and delete it as required. Before offering services specifically for children, we establish appropriate protection rules and obtain necessary consent.

11. Future features and additional processing

Visitor registration, community interaction and third-party visitor analytics are not enabled. This policy does not indicate collection through those features or provide advance authorization.

If visitor accounts are introduced, we explain registration and authentication information, necessary login cookies, optional profiles, recovery and account closure separately. Ordinary account information is retained as needed during service and deleted or anonymized within 30 days after a closure request is verified; legally required records are managed separately.

If community interaction is introduced, we define the visibility of posts, comments and author information, the purposes and retention of interaction, reporting and moderation records, and channels for editing, deletion and appeals. Others may save public content; deletion cannot guarantee removal of independently held third-party copies.

Before introducing third-party analytics, we disclose the tool and provider, information scope, cookies or other identifiers, processing location, retention and choices. Detailed analytics records follow a 90-day deletion or effective-anonymization rule from the event date. Applicable refusal and withdrawal controls are provided for non-essential analytics without restricting basic browsing or inquiries. Analytics should not contain inquiry text, contact details, passwords or unrelated information.

Actual features are governed by their specific notices. Renewed or separate consent is obtained before processing where required.

12. Updates and closure

We publish updated versions and effective dates. Material changes to purposes, methods, information categories or individual rights receive appropriate notice. Where renewed consent is required, continued browsing or a silent update does not replace it. You may consult this policy on the website and ask about the version associated with your inquiry.

If the website ceases operation, we stop the corresponding collection, communicate necessary arrangements as required and delete or anonymize remaining information. Any legally retained information is subject to the applicable processing restrictions.

13. Contact

Personal information processor: 杭州比特云网络科技有限公司.

Company address: Room 403-28, Building 10, No. 999 Jingxing Road, Cangqian Subdistrict, Yuhang District, Hangzhou, Zhejiang, China.

Email: contact@bitcloud.com.cn.

Use this email for questions, comments or requests about this policy or our processing. Include only information necessary to understand and respond to the matter.

14. Effective date

This policy was updated on 18 September 2026 and takes effect on 18 September 2026.

BitCloud

Unlock the full value of every unit of compute