1. Introduction
Welcome to the Privacy Policy of TopShine, the digital services brand operated by Heilongjiang Dingdasheng Information Technology Co., Ltd. This Privacy Policy explains in detail how we collect, use, store, share, and protect your personal information when you visit our website at https://www.topshine.mom, engage with our services, communicate with our team, or otherwise interact with our platforms and systems. We are deeply committed to safeguarding the privacy and security of every individual who entrusts us with their data.
TopShine provides computer systems design and related services within the Professional, Scientific, and Technical Services sector. As a technology company, we understand the critical importance of data privacy and have designed our data handling practices to meet or exceed applicable legal standards in every jurisdiction where we operate. This policy applies to all personal information we collect through our website, email communications, telephone interactions, service engagements, and any other channel through which you may provide data to us.
By accessing our website or using our services, you acknowledge that you have read, understood, and agree to the practices described in this Privacy Policy. If you do not agree with any part of this policy, please discontinue use of our website and services immediately. We encourage you to read this document in its entirety and to contact us with any questions or concerns before proceeding.
This Privacy Policy is effective as of August 10, 2026 and supersedes all prior versions. We reserve the right to modify this policy at any time, and we will notify users of material changes through our website or via direct communication where feasible. Your continued use of our services after any modification constitutes your acceptance of the updated policy.
2. Information We Collect
We collect several categories of personal information, each of which is described in detail below. The specific data points we collect depend on the nature of your interaction with our website and services. We make every effort to collect only the information that is reasonably necessary for the purposes described in this policy and to minimize the data we request to what is essential for providing our services.
Contact and Identity Information: When you fill out our contact form, request a consultation, subscribe to communications, or otherwise engage with us, we may collect your full name, email address, telephone number, company name, job title, and any other information you voluntarily provide in your message. This information is used to respond to your inquiry, provide requested services, and maintain our business relationship with you.
Technical and Usage Data: When you visit our website, our servers automatically collect certain technical information including your Internet Protocol (IP) address, browser type and version, operating system, device type, screen resolution, referring URLs, pages visited, time and date of visit, time spent on each page, click patterns, and other diagnostic data. This information is collected through server logs, cookies, and similar technologies and is used for website analytics, security monitoring, and performance optimization.
Communication Data: We retain copies of all correspondence between you and TopShine, including emails, contact form submissions, support tickets, telephone call records, and any attachments or documents you share with us. This information is maintained for quality assurance, training, legal compliance, and reference purposes.
Service Engagement Data: For clients who engage our computer systems design and consulting services, we may collect additional information necessary for project execution, including system specifications, infrastructure details, software requirements, business process documentation, employee contact information for project coordination, and billing and payment information. All such data is handled with the highest level of confidentiality and is subject to the terms of our service agreements.
3. How We Collect Information
We collect personal information through multiple channels and methods, each of which is designed to be transparent and to provide you with clear notice of our data collection practices. The following describes the primary methods by which we obtain your information.
Direct Collection from You: The majority of personal information we hold is provided directly by you when you interact with our website, complete our contact form, send us an email, call our office, attend a meeting, or engage our services. In all such instances, you are in control of the information you choose to share with us. Required fields on our forms are limited to what is necessary to fulfill your request, and optional fields are clearly identified.
Automated Collection Technologies: As you navigate our website, we use cookies, web beacons, pixel tags, and similar automated data collection technologies to gather technical and usage information. These technologies help us understand how visitors interact with our site, identify areas for improvement, detect and prevent fraudulent activity, and deliver a more personalized browsing experience.
Third Party Sources: In limited circumstances, we may receive information about you from third party services that we integrate with, such as analytics platforms, advertising networks, or business partners who refer you to our services. When we receive data from such sources, we ensure that the third party has obtained your consent or otherwise has a lawful basis to share that information with us.
Publicly Available Information: For business development and due diligence purposes, we may collect information that is publicly available, such as information published on company websites, professional networking platforms, public registries, and industry publications. This information is used to identify potential business opportunities and to understand the needs and challenges of organizations in our industry sector.
4. Use of Collected Information
We use the personal information we collect for a variety of business and operational purposes, each of which is grounded in a legitimate need to deliver, improve, and protect our services. We do not use your personal information for purposes that are incompatible with those described in this policy without first obtaining your explicit consent.
Service Delivery and Fulfillment: We use your contact and project-related information to provide the computer systems design, consulting, integration, and support services that you have requested. This includes communicating with you about project milestones, deliverables, timelines, and any issues that may arise during service delivery.
Communication and Customer Support: We use your contact details to respond to your inquiries, provide technical support, send service-related announcements, and otherwise communicate with you about matters relevant to your engagement with TopShine. We may also use your information to send you newsletters, industry insights, or promotional materials if you have opted in to receive such communications.
Website Improvement and Analytics: Technical and usage data is aggregated and analyzed to understand visitor behavior, identify popular content, detect navigation pain points, and continuously improve the performance, usability, and content of our website. This analysis helps us deliver a better experience to all visitors.
Security and Fraud Prevention: We process technical data to monitor our systems for security threats, unauthorized access attempts, malware, and other malicious activity. This processing is essential for protecting both our infrastructure and the data of our clients and website visitors.
Legal Compliance and Enforcement: We may use your information as necessary to comply with applicable laws, regulations, legal processes, and government requests. We also use information to enforce our Terms of Service, protect our legal rights, and defend against legal claims.
Business Operations: Internally, we use limited personal information for administrative purposes such as accounting, auditing, billing, reconciliation, and reporting. Access to this data is restricted to authorized personnel with a legitimate business need.
5. Sharing of Personal Information
TopShine does not sell, rent, or lease your personal information to third parties for their own marketing purposes. We share your information only in the specific circumstances described below, and we require all third parties with whom we share data to provide a level of protection at least equivalent to that described in this Privacy Policy.
Service Providers and Vendors: We engage trusted third party companies and individuals to perform functions on our behalf, including website hosting, email delivery, analytics, payment processing, customer relationship management, and IT infrastructure support. These service providers have access to personal information only as necessary to perform their functions and are contractually bound to maintain the confidentiality and security of that data.
Business Transfers: In the event of a merger, acquisition, reorganization, sale of assets, or bankruptcy, your personal information may be transferred to the successor entity as part of the transaction. We will notify you via email or a prominent notice on our website of any such change in ownership or control of your personal information.
Legal Obligations and Protection: We may disclose your personal information if required to do so by law, court order, subpoena, or other legal process, or if we believe in good faith that such disclosure is necessary to protect our rights, your safety, or the safety of others, to investigate fraud, or to respond to a government request.
With Your Consent: In situations other than those described above, we will obtain your explicit consent before sharing your personal information with any third party for purposes not covered by this policy.
6. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience, analyze website traffic, and understand where our visitors come from. This section explains what these technologies are, how we use them, and how you can control them.
What Are Cookies: Cookies are small text files that are placed on your device by websites you visit. They are widely used to make websites work efficiently, to remember user preferences, and to provide information to website operators. Cookies may be session-based (deleted when you close your browser) or persistent (remaining on your device for a set period or until manually deleted).
Types of Cookies We Use: We use strictly necessary cookies that are essential for the operation of our website, such as those that enable navigation and access to secure areas. We use performance and analytics cookies to collect information about how visitors use our website, which pages are most visited, and whether users encounter errors. We use functional cookies to remember your preferences and personalize your experience. We do not currently use advertising or targeting cookies to deliver advertisements based on your browsing activity.
Managing Your Cookie Preferences: Most web browsers allow you to control cookies through their settings, including the ability to block or delete cookies. You can typically find these settings in the preferences or options menu of your browser. Please note that disabling certain cookies may affect the functionality of our website and limit your ability to use some features.
Do Not Track Signals: Our website currently does not respond to Do Not Track (DNT) signals sent by browsers. However, we respect the privacy preferences of our users and provide the cookie management options described above.
7. Data Storage and Security
TopShine takes the security of your personal information seriously and implements a comprehensive set of technical, administrative, and physical safeguards designed to protect your data against unauthorized access, alteration, disclosure, or destruction.
Technical Security Measures: We employ industry-standard encryption protocols, including Transport Layer Security (TLS) for data in transit and AES-256 encryption for data at rest. Our infrastructure is protected by enterprise-grade firewalls, intrusion detection and prevention systems, regular vulnerability scanning, and automated patch management. Access to production systems is strictly controlled through multi-factor authentication and role-based access controls.
Organizational Security Measures: All TopShine personnel with access to personal information undergo background checks and receive regular training on data protection and privacy best practices. Access to personal data is granted on a least-privilege basis, meaning employees can only access the specific data necessary for their job functions. We maintain detailed access logs and conduct periodic access reviews to ensure compliance with our security policies.
Data Storage Locations: Personal information we collect is stored on secure servers located in data centers that maintain SOC 2 Type II and ISO 27001 certifications. Where international data transfers are involved, we implement appropriate safeguards as described in the International Data Transfers section of this policy.
No Absolute Security Guarantee: While we strive to protect your personal information using commercially reasonable means, no method of electronic storage or transmission over the Internet is 100 percent secure. We cannot guarantee absolute security, and you acknowledge that you provide your information at your own risk.
8. Data Retention Policy
We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, to comply with legal obligations, to resolve disputes, and to enforce our agreements. Our retention periods are determined based on the nature of the data, the purpose of collection, and applicable legal requirements.
Active Client Data: For clients with whom we maintain an active business relationship, we retain personal information for the duration of the engagement plus an additional period of seven years following the termination of services. This retention period aligns with standard commercial record-keeping practices and applicable statutes of limitation for contractual claims.
Inquiry and Prospect Data: Personal information collected from individuals who inquire about our services but do not become clients is retained for a period of twenty-four months from the date of last contact, after which it is securely deleted or anonymized unless a longer retention period is required by law.
Website Usage Data: Anonymized and aggregated usage data may be retained indefinitely for analytical purposes. Server logs containing IP addresses are retained for a maximum of ninety days for security monitoring purposes before being purged.
Data Deletion: When personal information is no longer needed, we securely delete or anonymize it using methods that prevent reconstruction or recovery. You may request earlier deletion of your data by contacting us using the information in the Contact Information section of this policy.
9. Your Data Protection Rights
Depending on your jurisdiction, you may have certain rights regarding the personal information we hold about you. We are committed to honoring these rights and responding to your requests in a timely manner as required by applicable law.
Right of Access: You have the right to request a copy of the personal information we hold about you, including details of the categories of data, the purposes of processing, and the third parties with whom we have shared your data. We will provide this information in a structured, commonly used machine-readable format.
Right of Rectification: If you believe that any personal information we hold about you is inaccurate or incomplete, you have the right to request that we correct or update that information. We will promptly investigate and, where appropriate, make the necessary corrections.
Right of Erasure: In certain circumstances, you may request that we delete your personal information from our systems. This right is not absolute and may be limited by our legal obligations to retain certain data, the exercise or defense of legal claims, or other legitimate grounds for continued processing.
Right to Restrict Processing: You may request that we limit the processing of your personal information in specific situations, such as when you contest the accuracy of the data or object to our processing. During any period of restriction, we will store your data but will not otherwise process it without your consent.
Right to Data Portability: Where processing is based on consent or contractual necessity and is carried out by automated means, you have the right to receive your personal data in a portable format and to request that we transmit it directly to another controller where technically feasible.
Right to Object: You may object to the processing of your personal information for direct marketing purposes at any time. You may also object to processing based on our legitimate interests, and we will cease such processing unless we demonstrate compelling legitimate grounds that override your interests.
Exercising Your Rights: To exercise any of these rights, please contact us using the contact details provided in the Contact Information section. We may need to verify your identity before processing your request. We aim to respond to all valid requests within thirty calendar days.
10. Privacy for Children
Our website and services are not directed to individuals under the age of 18, and we do not knowingly collect personal information from children. We take the privacy of children very seriously and have implemented measures to prevent the inadvertent collection of data from minors.
If we become aware that a child under the age of 18 has provided us with personal information without verifiable parental consent, we will take immediate steps to delete such information from our systems. We encourage parents and guardians to monitor their childrens online activities and to instruct them never to provide personal information through websites or services without permission.
If you are a parent or guardian and believe that your child has provided personal information to us, please contact us immediately using the information in the Contact Information section. We will promptly investigate and, if confirmed, remove the data from our records and confirm the deletion to you.
11. Third Party Links and Services
Our website may contain links to third party websites, plugins, and applications that are not owned or controlled by TopShine. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third party websites and are not responsible for their privacy statements.
When you leave our website, we encourage you to read the privacy policy of every website you visit. The inclusion of a link to a third party website does not imply endorsement of that website or its privacy practices by TopShine. We do not guarantee the security or privacy of any information you provide to third party sites.
We may also integrate third party services such as analytics platforms, email delivery services, and customer relationship management tools into our website and operations. These services have their own privacy policies, and we encourage you to review them. While we carefully select our service providers, we are not responsible for their data handling practices beyond the contractual obligations we have established with them.
12. International Data Transfers
TopShine operates internationally, and your personal information may be transferred to, stored in, and processed in countries other than the country where you reside. Our headquarters is located in Shuangyashan, China, and we use data hosting infrastructure located in multiple jurisdictions. When we transfer personal information across international borders, we take appropriate measures to ensure that your data receives an adequate level of protection.
For transfers of personal data from the European Economic Area, the United Kingdom, and other jurisdictions with data protection laws, we implement appropriate safeguards such as Standard Contractual Clauses approved by the relevant regulatory authorities, or we rely on adequacy decisions where applicable. We also conduct transfer impact assessments to evaluate the risks associated with cross-border data transfers and implement supplementary measures as needed.
By using our website and services, you consent to the transfer of your personal information to countries outside of your country of residence, including China and other locations where our data processing infrastructure is maintained. If you have questions about the specific safeguards we apply to international data transfers, please contact us using the details in the Contact Information section.
13. Legal Basis for Processing
We process personal information in accordance with applicable data protection laws and rely on one or more of the following legal bases depending on the specific purpose and context of processing.
Consent: In certain circumstances, we process personal information based on your explicit consent, which you may withdraw at any time. Examples include subscribing to our marketing communications or consenting to the use of non-essential cookies. Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.
Contractual Necessity: We process personal information as necessary to perform a contract with you or to take steps at your request prior to entering into a contract. This includes processing required to deliver our consulting services, respond to inquiries, and fulfill our obligations under service agreements.
Legitimate Interests: We process personal information where necessary for our legitimate business interests, provided those interests are not overridden by your data protection rights. Our legitimate interests include improving our website and services, ensuring network and information security, preventing fraud, conducting business development, and analyzing market trends.
Legal Obligations: We process personal information as required to comply with applicable laws, regulations, court orders, and government requests. This includes processing for tax reporting, regulatory compliance, and responding to lawful requests from public authorities.
14. Data Breach Notification Procedures
TopShine maintains a comprehensive incident response plan that governs our response to any actual or suspected data breach involving personal information. We have established procedures for the prompt detection, investigation, containment, and remediation of security incidents.
In the event of a confirmed personal data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authorities within the timeframe required by applicable law, which is typically 72 hours from becoming aware of the breach. We will also notify affected individuals without undue delay if the breach is likely to result in a high risk to their rights and freedoms, providing information about the nature of the breach, the types of data affected, the measures we have taken in response, and recommendations for steps you can take to protect yourself.
All notifications will be made using the contact information we have on file for you, which may include email, telephone, or postal mail depending on the urgency and nature of the incident. We maintain records of all data breaches, including the facts surrounding the breach, its effects, and the remedial actions taken.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our data processing practices, legal requirements, or operational needs. When we make material changes to this policy, we will post the updated version on this page with a new Last Updated date and, where appropriate, provide notice through our website homepage or via email to registered users.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your personal information. Changes to this policy are effective immediately upon posting unless otherwise stated. Your continued use of our website and services after any changes to this policy constitutes your acceptance of the revised terms. If you disagree with any changes, you should discontinue use of our website and services and contact us to request deletion of your personal data.
For material changes that we believe significantly affect your privacy rights, we will provide at least thirty days advance notice before the changes take effect, and we will seek your explicit consent where required by law.
16. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data handling practices, please contact us using the information below. We take all privacy inquiries seriously and will respond promptly and thoroughly.
Data Controller: Heilongjiang Dingdasheng Information Technology Co., Ltd.
Registered Address: No. 111 Commercial Service, West Side of Laoxianshu Cultural City, Baoqing Town, Baoqing County, Shuangyashan - 155100, China (CN)
Website: https://www.topshine.mom
Email: team@topshine.mom
Phone: +1 (802) 547-7963
You also have the right to lodge a complaint with the data protection supervisory authority in your jurisdiction if you believe that our processing of your personal information violates applicable data protection laws. We would, however, appreciate the opportunity to address your concerns directly before you approach any regulatory body.