1. 我们是谁1. Who we are
Sailer Hub 由赛乐咨询运营。就本政策而言,当卖家(我们的客户)授权 Sailer Hub 访问其电商平台账户时,卖家是数据控制者,Sailer Hub 是代其处理数据的数据处理者。数据保护相关事宜请联系 privacy@sailerpartners.com。Sailer Hub is operated by Sailer Partners. For the purposes of this policy, when a seller (our customer) authorizes Sailer Hub to access their marketplace account, the seller is the data controller and Sailer Hub acts as a data processor on their behalf. For data protection matters, contact privacy@sailerpartners.com.
2. 我们处理哪些数据2. What data we process
| 类别Category | 内容Contents | 用途Purpose |
|---|---|---|
| 订单数据Order data | 订单号、商品、数量、金额、状态、运单号Order IDs, items, quantities, amounts, status, tracking numbers | 履约、对账、运营看板Fulfillment, reconciliation, operations dashboard |
| 买家个人信息(PII)Buyer personally identifiable information (PII) | 收货姓名、收货地址、平台代发邮箱、电话Ship-to name, shipping address, marketplace-relayed email, phone | 仅用于履约:生成面单、发货、处理退换与客服Fulfillment only: generating labels, shipping, returns and customer service |
| 商品与库存Catalog & inventory | SKU、标题、图片、价格、库存量SKUs, titles, images, prices, stock levels | 刊登、定价、补货Listing, pricing, restocking |
| 财务与广告Financial & advertising | 结算、费用、退款、广告花费与指标Settlements, fees, refunds, ad spend and metrics | 利润核算与投放优化Profitability accounting and campaign optimization |
| 账户与凭证Account & credentials | 团队成员邮箱、口令散列;平台 API 凭证与刷新令牌Team member emails and password hashes; marketplace API credentials and refresh tokens | 登录鉴权与平台调用授权Sign-in and authorization of marketplace API calls |
3. 数据来源3. Where data comes from
数据来自卖家显式授权的电商平台 API(如 Amazon Selling Partner API、Wayfair Supplier API、Etsy Open API 等),以及卖家团队在控制台中的手工录入。授权由卖家在平台侧发起,可随时在平台侧撤销。Data comes from marketplace APIs the seller has explicitly authorized (such as the Amazon Selling Partner API, Wayfair Supplier API, and Etsy Open API), and from what the seller's team enters in the console. Authorization is granted by the seller on the marketplace side and can be revoked there at any time.
4. 存放在哪里、保留多久4. Where data is stored and how long we keep it
- 运营数据存放于 Cloudflare 的托管数据库与对象存储,传输全程 TLS 加密,静态存储由平台加密。Operational data is stored in Cloudflare's managed database and object storage, encrypted in transit with TLS and encrypted at rest by the platform.
- 平台 API 凭证不写入云端业务数据库、不进代码仓,仅以密文形式保存在密钥管理中(Worker secrets)或卖家自有的本地执行器环境中。Marketplace API credentials are never written to the cloud business database or to source control; they are held only in secret storage (Worker secrets) or in the seller's own local executor environment.
- 买家 PII 按履约所需的最短周期保留,最长 30 天,之后自动删除或匿名化;订单的非 PII 部分(金额、SKU、状态)可继续保留用于对账与报表。Buyer PII is retained only as long as fulfillment requires, up to a maximum of 30 days, after which it is deleted or anonymized; non-PII order records (amounts, SKUs, status) may be retained for reconciliation and reporting.
- 卖家终止服务后,我们在 30 天内删除该卖家的全部数据与凭证;卖家也可随时发邮件要求立即删除。When a seller ends the engagement we delete all of that seller's data and credentials within 30 days; a seller may also request immediate deletion by email at any time.
5. 谁能接触到数据5. Who can access data
只有赛乐咨询中被指派到该卖家的运营人员,按最小必要原则访问;访问需登录(每人独立账号 + 口令)并受角色限制。我们不向第三方共享卖家数据,法律强制要求或卖家书面指示的情形除外。我们使用的基础设施服务商(Cloudflare)作为分包处理者,仅提供托管能力。Only Sailer Partners staff assigned to that seller can access it, on a least-privilege basis. Access requires an individual account with a password and is limited by role. We do not share seller data with third parties except where legally required or where the seller instructs us in writing. Our infrastructure provider (Cloudflare) acts as a sub-processor providing hosting only.
6. AI 的使用方式6. How AI is used
Sailer Hub 用大语言模型辅助运营决策(如定价建议、评价回复草稿、任务编排)。发送给模型的内容按最小必要裁剪,不包含买家 PII。模型供应商不得将这些内容用于训练。任何写操作(改价、发货、回复)都落成系统内的任务记录,可审计、可回溯。Sailer Hub uses large language models to assist operational decisions such as pricing suggestions, draft review replies, and task orchestration. Content sent to models is minimized and excludes buyer PII. Model providers are not permitted to train on it. Every write action (repricing, shipping, replying) is recorded as an auditable task in the system.
7. 卖家与买家的权利7. Seller and consumer rights
卖家可随时要求导出、更正或删除其数据,并可在平台侧撤销授权。若买家(消费者)就其个人信息提出访问或删除请求,我们会将请求转交对应卖家并配合处理——因为该数据的控制者是卖家与相应平台。请求请发至 privacy@sailerpartners.com,我们在 30 天内答复。Sellers may request export, correction, or deletion of their data at any time, and may revoke authorization on the marketplace side. If a consumer submits an access or deletion request regarding their personal information, we forward it to the relevant seller and assist, since the seller and the marketplace are the controllers of that data. Send requests to privacy@sailerpartners.com; we respond within 30 days.
8. 安全事件8. Security incidents
若发生涉及卖家数据的安全事件,我们会在确认后 24 小时内通知受影响卖家,并在适用时按平台要求(含 Amazon 数据保护政策规定的 24 小时通报)通知相应平台。技术措施详见 数据安全 页。If a security incident affects seller data, we notify the affected sellers within 24 hours of confirmation, and notify the relevant marketplace where required — including the 24-hour notification required by Amazon's Data Protection Policy. Technical measures are described on our Data security page.
9. 变更9. Changes
本政策如有实质性变更,我们会更新本页顶部的生效日期,并通知在用的卖家。If we make material changes to this policy we will update the effective date at the top of this page and notify active sellers.
10. 联系我们10. Contact
赛乐咨询 Sailer Partners · 数据保护联系人:privacy@sailerpartners.com · 一般咨询:hello@sailerpartners.comSailer Partners · Data protection contact: privacy@sailerpartners.com · General enquiries: hello@sailerpartners.com