Maplehaze SDK Privacy Policy

Effective Date: January 1, 2026

Last Updated: August 18, 2026

Notice

Maplehaze Group Ltd. and its service providers (hereinafter referred to as "we", "us" or "our") respect and protect the privacy of all users of the Maplehaze SDK services. In order to provide you with more accurate and personalized services and a safer Internet environment, we have established the principles on which we collect, use and disclose personal information in accordance with applicable data protection laws and regulations, including, where applicable, the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable laws and technical standards of the countries and regions in which our services operate. This policy further describes your rights with respect to your personal information.

This policy is closely related to our products and/or services that you use. When using our SDK products and related services (hereinafter referred to as "using our products and/or services"), we will process and protect your personal information in accordance with this policy. We explain the technical terms in this policy in plain language to help you understand. Clauses in this policy that may be of significant relevance to your rights are highlighted in bold font. Please pay particular attention to them.

Please read and fully understand this policy carefully before using or continuing to use any of our products and services, and, where necessary, make appropriate choices in accordance with this policy. Your use or continued use of our products and/or services indicates that you fully understand and agree to the entire content of this Privacy Policy (including updated versions). If you do not agree with the content of this policy, our products and/or services may not function properly or may not achieve the intended service effect, and you should immediately stop accessing/using our products and/or services.

1. Definitions

1.1 Maplehaze SDK: provides programmatic marketing and traffic transaction services for traffic suppliers and advertisers, including but not limited to traffic access, ad delivery, performance data monitoring and delivery data inquiry.


1.2 Personal Information: any information relating to an identified or identifiable natural person, recorded electronically or otherwise, whether alone or in combination with other information.
Personal information referred to in this policy includes:
(1) Common device information (such as hardware model, operating system type, unique device identifiers, advertising identifiers, etc.);
(2) Location information.


1.3 Sensitive Personal Information: personal information that, if leaked, illegally provided or misused, may endanger personal or property safety, or may readily lead to damage to personal reputation, physical or mental health, or discriminatory treatment.
Sensitive personal information referred to in this policy includes:
(1) Precise location information.


1.4 Deletion of Personal Information: the act of removing personal information from the systems involved in realizing day-to-day business functions, keeping it in a state that cannot be retrieved or accessed.


1.5 Unique Device Identifier: a unique device identifier (sometimes called a universally unique ID or UUID) is a string of characters incorporated into a device by its manufacturer that can be used to uniquely identify that device (for example, the advertising identifier GAID on Android or IDFA on iOS). Different device identifiers vary in terms of validity, whether users can reset them, and how they are obtained. A device may have multiple different unique device identifiers. Unique device identifiers can be used for a variety of purposes, including security and fraud detection, service synchronization, recording user preferences and serving relevant advertising.


1.6 Cookie: a mechanism that allows server-side (or script-based) storage and retrieval of information on the client, extending web-based client/server applications with simple, persistent client-side state. When returning an HTTP object to the client, the server also sends a piece of state information, which is saved by the client. The state information specifies the scope of URLs for which the state is valid. Subsequent HTTP requests from the client within that scope will return the current value of the state information to the server. This state information is called a Cookie.


1.7 Device Information: includes device name, device model, device identifiers, operating system and application version, language settings, screen resolution, mobile network information and IP address.


2. Scope of This Policy

2.1 This policy applies to the Maplehaze SDK.


2.2 In particular, this policy does not apply to services provided to you by third parties. For example, where advertisers or merchants on the Maplehaze platform provide services to you through Maplehaze (such as third-party payment/purchase channels), the personal information you provide to such merchants is not covered by this policy. Unless expressly required by law, we assume no responsibility for any third party's use of information provided by you.


3. How We Collect and Use Personal Information

During your use of the services provided by the Maplehaze SDK, we will collect information in accordance with the principles of lawfulness, fairness and necessity, and on a valid legal basis (such as your consent or our legitimate interests, where applicable under the laws of your jurisdiction).

3.1 Function Overview

(1) Basic functions: delivering advertising campaigns within developer applications, including ad display, monitoring, attribution, and delivery performance analysis and optimization.

(2) Extended functions: personalized advertising. For configuration details, please refer to the Maplehaze SDK Developer Compliance Guidelines.


3.2 Collection of Personal Information and Related Permission Requests

The types, fields, purposes and objectives of personal information of your app end users obtained by the Maplehaze SDK are set out in the Maplehaze SDK Developer Compliance Guidelines. Please ensure that you have carefully read and agreed to comply with the content of those guidelines.

3.2.1 If the information you provide contains personal information of other users, you must ensure that you have obtained lawful authorization before providing such personal information to us.

3.2.2 If we use information for purposes not specified in this policy, or use information collected for a specific purpose for other purposes, we will obtain your prior consent.

(1) Collection of Personal Information

If you use a developer application that integrates the Maplehaze SDK, we will collect the following information through the developer application and request the corresponding permissions. Developers must inform you of the SDK name, the entity name, the categories and purposes of personal information processed, and the privacy policy, and may only use the Maplehaze SDK to carry out the relevant business functions after obtaining your consent.

Category of Personal Information Data Fields Purpose
Device Information Required information:
[Android + iOS] Device brand, model, operating system version, screen resolution, device language, device time zone and other basic device information
[iOS only] System boot time, total disk space, total system memory space, number of CPU cores and other basic information
Ad delivery, anti-fraud
Identifiers Required information:
[Android] Google Advertising ID (GAID), App Set ID
[iOS] Identifier for Advertisers (IDFA) (subject to App Tracking Transparency consent)
Optional information:
[Android] App Set ID may be used where GAID is unavailable
[iOS] Identifier for Vendors (IDFV)
The specific fields may vary depending on software and hardware versions. Users may reset or limit the use of advertising identifiers through their device settings.
Ad delivery, anti-fraud, ad measurement and attribution
Network Information Network information
[Android + iOS] IP address, network type and connection status (e.g., Wi-Fi or mobile network). The IP address may be used to estimate the general location of a device.
Ad delivery, anti-fraud, ad measurement and attribution
Ensuring the validity and stability of network services
Application Information Required information:
[Android] Application package name, version number
[iOS] Application bundle ID, version number
Ad delivery, anti-fraud
Ad Interaction Information Required information:
[Android + iOS] User product interactions and interaction data with ads, including app launches, ad impressions, taps, clicks, video views and conversions
Ad measurement and attribution, ad delivery statistics and analysis, anti-fraud
Location Information Optional information:
[Android + iOS] Precise location information and approximate location information, only where the developer application has obtained the corresponding location permissions from you. We may also derive a coarse location estimate from your IP address.
Targeted ad delivery, anti-fraud
Diagnostic and Performance Data Required information:
[Android + iOS] Information related to the performance of the app and the SDK, including crash data, app launch time, hang rate and energy usage
Reducing app crashes, providing stable and reliable services

To implement the functions of the Maplehaze SDK and to ensure its secure and stable operation, we may integrate software development kits (SDKs), application programming interfaces (APIs), application plugins or other code provided by our partners, or cooperate in other ways, to achieve the relevant purposes. We apply strict security monitoring to the code of partners that obtain information, in order to protect data security. We list the partners whose code we integrate, and their specific processing is subject to the partner's own privacy policy or service agreement. Please note that a partner's code may change its data processing types due to version upgrades, policy adjustments or other reasons; please refer to the official statements published by that partner. Due to product iteration and upgrades, some historical versions may differ from the current version; the actual situation shall prevail.

Third-party SDK information is as follows:

Third-Party SDK Name Company Providing the SDK Categories of Personal Information Processed Scenarios and Purposes of Use Third-Party SDK Privacy Notice
Google Mobile Ads SDK (AdMob) Google LLC The Google Mobile Ads SDK collects and shares the following data types automatically for advertising, analytics, and fraud prevention purposes:
1. IP Address: collects the device's IP address, which may be used to estimate the general location of a device.
2. User Product Interactions: collects user product interactions and interaction information, including app launches, taps, clicks and video views.
3. Diagnostic Information: collects information related to the performance of your app and the SDK, including app launch time, hang rate, and energy usage.
4. Device and Account Identifiers: collects the Android advertising (ad) ID (GAID), App Set ID, and, on iOS, the Identifier for Advertisers (IDFA) where consented, and, if applicable, other identifiers related to signed-in accounts on the device.
5. Ad Interaction Data: impressions, clicks and conversions of ads served through the SDK.
All of the user data collected by the Google Mobile Ads SDK is encrypted in transit using the Transport Layer Security (TLS) protocol.
Ad delivery, ad measurement and attribution, ad delivery statistics and analysis, anti-fraud, reducing app crashes, providing stable and reliable services https://policies.google.com/privacy
https://developers.google.com/admob/android/privacy/play-data-disclosure
https://support.google.com/admob/answer/6128543

(2) Related System Permission Requests

To implement the corresponding functions of our SDK products, we may request, through the developer application, that certain permissions of your device operating system be enabled. Our permission requests are aligned with those of the Google Mobile Ads SDK (AdMob).
For specific configuration methods and examples, please refer to the Maplehaze SDK Developer Compliance Guidelines.
Android operating system permission list:

Permission Function Purpose When Requested
INTERNET
Network access
[Required] Access the network Allow the user's device to access the network and retrieve ads Requested when the developer invokes SDK functions that require this permission, e.g., when connecting to the network to make ad requests.
ACCESS_NETWORK_STATE
Network information access
[Required] Obtain network status Ad delivery and anti-fraud Requested when the developer invokes SDK functions that require this permission, e.g., making precise ad delivery and anti-fraud determinations based on network conditions.
ACCESS_COARSE_LOCATION
Approximate location access
[Optional] Obtain approximate location information Ad delivery and anti-fraud Requested when the developer invokes SDK functions that require this permission, e.g., delivering ads and performing anti-fraud checks based on approximate location information.
ACCESS_FINE_LOCATION
Precise location access
[Optional] Obtain precise location information Ad delivery and anti-fraud Requested when the developer invokes SDK functions that require this permission, e.g., delivering ads and performing anti-fraud checks based on precise location information.
com.google.android.gms.permission.AD_ID
Advertising ID access
[Optional] Read the Google Advertising ID (GAID) Ad delivery, ad measurement and attribution, anti-fraud Requested when the developer invokes SDK functions that require this permission. Developers may prevent the collection of the advertising ID by updating the app's manifest file; users may reset or delete the advertising ID using the ad ID controls in the Android settings menu.

iOS operating system permission list:

Permission Function Purpose When Requested
NSUserTrackingUsageDescription [Optional] Request tracking consent to obtain the device advertising identifier (IDFA) Ad delivery, ad measurement and attribution, anti-fraud Requested when the developer invokes SDK functions that require this permission. In accordance with Apple's App Tracking Transparency framework, the IDFA is accessed only after you grant consent through the system tracking prompt.
NSAppTransportSecurity [Optional] Allow HTTP access Enhancing compatibility so that ad creatives delivered over HTTP can still be accessed, avoiding impact on experience and effectiveness Requested when the developer invokes SDK functions that require this permission, e.g., when making ad requests and impressions.
NSLocationWhenInUseUsageDescription [Optional] Obtain precise location information while the app is in use Ad delivery and anti-fraud Requested when the developer invokes SDK functions that require this permission, e.g., delivering ads and performing anti-fraud checks based on precise location information.

(3) Personalized Advertising

In order to display more relevant information and provide services that better match your interests, we may collect and use your personal information and use algorithmic models to predict your preferences, to match information or services that you may be interested in.

a) Information collected for personalized advertising: device identifiers, application information, approximate location, and other personal information that you have consented to.

b) Please understand that, since we have no direct interactive interface with you, if you wish to opt out of personalized advertising, you may disable or opt out through the mechanisms provided by the third-party developer, or through your device settings (for example, the "Opt out of Ads Personalization" setting on Android, or limiting ad tracking on iOS; you may also manage personalized ads via Google Ads Settings at https://adssettings.google.com). We have provided developers with an interface to disable personalized advertising and require developers to call that interface when you choose to opt out, to ensure that personalized advertising is genuinely disabled.

c) Developers, please note: if you provide the personalized advertising function of the Maplehaze SDK to end users, you must disclose this function in your app privacy policy and provide an easily accessible opt-out button for personalized advertising. We have provided you with an interface to disable personalized advertising. Please refer to the Maplehaze SDK Developer Compliance Guidelines to understand how to use this interface and configure it accordingly, ensuring that when an end user chooses to opt out of personalized advertising, you call the relevant interface and stop providing personalized ads to that user.

d) If you are unable to opt out of personalized advertising through the mechanisms provided by the developer, you may contact us directly via the contact details in Section 12 of this policy to request to access your personal information or to opt out of personalized advertising. We will respond after verifying the relevant information.


3.3 Exceptions to Obtaining Authorization and Consent
Please fully understand and agree that, in accordance with applicable laws and regulations, collection of your personal information in the following circumstances does not require your authorization and consent:
(1) Related to national security and national defense security;
(2) Related to public safety, public health, or major public interests;
(3) Related to criminal investigation, prosecution, trial, and enforcement of judgments;
(4) Necessary to protect your or another person's life, property, or other major legitimate interests, where it is very difficult to obtain your consent;
(5) Personal information that you have voluntarily made public;
(6) Personal information collected from lawfully publicly disclosed information, such as legitimate news reports or government information disclosure channels;
(7) Necessary for concluding or performing a contract at your request;
(8) Necessary for maintaining the safe and stable operation of the products or services provided, such as detecting and resolving product or service failures;
(9) Necessary for legitimate news reporting;
(10) Necessary for academic research institutions conducting statistical or academic research in the public interest, where personal information contained in the results is de-identified before being provided externally;
(11) Other circumstances provided by applicable laws and regulations.

4. How We Use Your Personal Information

4.1 How we use your personal information
4.1.1 To provide you with our services, and to maintain and improve these services.
4.1.2 To recommend content that you may be interested in, including sending you product or service information, displaying personalized third-party promotional information through the system, or, with your consent, sharing information with Maplehaze partners so that they may send you information about their products and services. If you do not wish to receive such information, you may unsubscribe through the corresponding opt-out function.
4.1.3 We may compile statistics on the usage of our services and may share these statistics with the public or third parties to show overall usage trends of our services. However, such statistics do not contain any information that identifies you. Third parties include our affiliates and/or partners, but we only share statistical information for lawful, legitimate, necessary, specific and explicit purposes stated in this policy.
4.1.4 We use your personal information to prevent, detect and investigate fraud, security hazards, and illegal activities or activities that violate our or our affiliates' agreements, policies or rules, in order to protect the legitimate interests of you, other users, and us or our affiliates.
4.1.5 Other purposes authorized by you.

4.2 Rules for the safe use of personal information
4.2.1 After collecting your personal information, we will use technical means to de-identify the data. De-identified information cannot identify you personally. Please understand and agree that we are entitled to use de-identified information and, without disclosing your personal information, to analyze and commercially utilize user databases. Such use does not constitute external sharing, transfer or public disclosure of personal information, and does not require separate notice to you or your consent.
4.2.2 Please note that all personal information you provide while using our services will continue to be authorized for use during the period you use our services, unless you delete it or refuse our collection through system settings. After you voluntarily cancel your account, we will stop providing products or services to you and stop using your personal information as required by law.
4.2.3 When we display your personal information, we will adopt measures including content replacement and anonymization to de-sensitize your information, in order to protect the security of your information.


5. How We Share, Transfer and Publicly Disclose Your Personal Information

5.1 Sharing your personal information is an important basis and component of providing you with our products and/or services. We only collect and use your personal information within the purposes and scope of this policy, or as required by laws and regulations, and we keep your personal information strictly confidential. We will not share your personal information with third parties and/or individuals except where one or more of the following circumstances apply:
5.1.1 We have obtained your prior consent or authorization, or you have actively chosen to share.
5.1.2 As required by laws and regulations or by administrative or judicial authorities.
5.1.3 Sharing your personal information with Maplehaze affiliates. We only share necessary personal information, subject to the purposes stated in this policy. If we share your sensitive personal information or if affiliates change the purpose of use and processing, we will again seek your authorization and consent.
5.1.4 Sharing your personal information with authorized partners. You understand and agree that, for the necessary/reasonable conduct of business and to meet your needs/requirements and fulfill our obligations under relevant user agreements or this policy, we may need to share your personal information with authorized partners. However, we require authorized partners to process such information on our instructions, in accordance with this policy and any other corresponding confidentiality and security measures. We only share your personal information for lawful, legitimate, necessary, specific and explicit purposes. Authorized partners may only access the information necessary to perform their duties and may not use the shared personal information for any other purpose. Currently, our authorized partners mainly include the following types:
(1) Sharing with affiliates to realize relevant functions or services
When you use the Maplehaze SDK services and our affiliates' products, in order to ensure consistency of services received across products provided by us and our affiliates and to facilitate unified management of your information, we share your de-identified personal information with these affiliates.
(2) We may share de-identified or anonymized information with advertising partners
We may share information you upload with partners that entrust us with promotion and ad delivery, but we will not share information that personally identifies you, such as your name or government ID number. We only provide these partners with user profile labels and de-identified or anonymized information that are difficult to associate with an individual, to help them improve the effective reach of advertising without identifying individuals.
(3) Data service providers: for example, partners for data statistics/analysis and online advertising measurement. To maintain/improve our products/services and provide you with better product/service quality, we may share your relevant information with partners that provide such services, such as device platform, device manufacturer, device brand, device identifiers (such as GAID or IDFA) and other device information, network information (such as IP address and Wi-Fi information) and location-related information.
(4) Sharing with business partners to realize specific functions
Where software service providers, smart device providers or system service providers jointly provide services with us, for example when you need to use location-based functions, we may collect your location information and related device information (such as hardware model and operating system version), de-identify it, and provide it to the aforementioned providers.
5.1.5 To assist in resolving disputes. If you are an eligible intellectual property complainant and have filed a complaint, we may disclose information to the respondent at the respondent's request so that both parties can handle potential rights disputes. Information is only shared where it is necessary to provide the services you require or to resolve disputes or controversies between you and others. The Maplehaze SDK assumes corresponding legal liability only where expressly provided by law.
5.1.6 Where disclosure to a third party is required because you have violated applicable laws, regulations or Maplehaze-related agreements or rules.
5.1.7 Sharing based on reasonable business practices, such as where, in joint marketing with a third party, you are a prize winner or winner of a contest, we may share your personal information with the third party so that you can receive your reward, in order to protect the legitimate interests of Maplehaze, its affiliates or its users.
5.1.8 We may use the personal information collected for big data analysis after anonymization, such as generating heat maps and insight reports that do not contain any personal information. We may publicly disclose and share with our partners information that has been statistically processed and contains no identifying content, for the purpose of understanding how users use our services or letting the public know the overall usage trends of our services.

5.2 We will not transfer your personal information to any company, organization or individual, except in the following circumstances:
(1) We have obtained your explicit prior consent or authorization;
(2) Where provision is required under applicable laws and regulations, legal procedures, or mandatory administrative or judicial requirements;
(3) Where provided in accordance with agreements concluded with you (including electronic agreements signed online and corresponding service rules) or other legal documents;
(4) In the event of a merger, acquisition, asset transfer or similar transaction involving the transfer of personal information, we will require the new company or organization holding your personal information to continue to be bound by this policy; otherwise, we will require that company or organization to re-obtain your authorization and consent.

5.3 Public disclosure refers to the act of releasing information to the public or unspecified groups of people. We will only publicly disclose your personal information in the following circumstances, and subject to industry-standard security protection measures:
(1) Disclosing the personal information you designate in the manner of disclosure you have explicitly consented to, based on your needs;
(2) Where we are required to provide your personal information under laws and regulations, or under mandatory administrative enforcement or judicial requirements, we may publicly disclose your personal information based on the type of personal information and manner of disclosure required. Subject to compliance with laws and regulations, when we receive such disclosure requests, we require the issuance of corresponding legal documents, such as subpoenas or letters of inquiry. We firmly believe that information we are asked to provide should be kept as transparent as legally possible. We carefully review all requests to ensure they have a lawful basis and are limited to data that law enforcement authorities are lawfully entitled to obtain for specific investigative purposes. To the extent permitted by applicable laws and regulations, the documents we disclose are protected by encryption keys.

5.4 Exceptions to prior authorization and consent for sharing, transferring and publicly disclosing personal information. Sharing, transferring and publicly disclosing your personal information in the following circumstances does not require your prior authorization and consent:
(1) Related to national security and national defense security;
(2) Related to public safety, public health, or major public interests;
(3) Related to criminal investigation, prosecution, trial, and enforcement of judgments;
(4) Necessary to protect your or another person's life, property, or other major legitimate interests, where it is very difficult to obtain your consent;
(5) Personal information that you have voluntarily made public;
(6) Personal information collected from lawfully publicly disclosed information, such as legitimate news reports or government information disclosure channels.
If you do not agree to our providing your personal information to third parties in accordance with the above clauses, please immediately stop using the Maplehaze SDK services.

5.5 Prudent assessment of and liability constraints on third parties with whom personal information is shared
(1) With your consent, we only share with third parties the information necessary to realize the purpose. If a third party genuinely needs to use personal information beyond the scope of the above authorization for business needs, that third party must again seek your consent.
(2) For third parties with whom we share your personal information, we enter into confidentiality agreements with them. At the same time, we assess their data security capabilities and environment and require them to process such information with confidentiality and security measures no lower than those required by this privacy policy.


6. How We Use Cookies, Web Beacons and Similar Technologies

6.1 To provide you with a more convenient access experience, when you visit Maplehaze-related websites or use the services provided by the Maplehaze SDK, we may identify you through small data files. These data files may be Cookies or other local storage provided by your browser or associated applications (collectively, "Cookies"). This helps you avoid repeatedly entering registration information, stores your preferences, helps optimize your choices and interactions with ads, and helps determine your login status and account or data security.


6.2 Please understand that some of our services can only be realized through the use of "Cookies". If your browser or browser add-on services allow, you may modify the extent to which you accept Cookies or refuse Maplehaze's Cookies, but in some cases this may affect your secure access to Maplehaze-related websites and use of the services provided by the Maplehaze SDK.


6.3 Web pages often contain electronic images (called "single-pixel" GIF files or "web beacons"). Web beacons help websites count users browsing web pages or access certain Cookies. We collect information about your web browsing activity through web beacons, such as the address of the page you visit, the address of the referring page you previously visited, the time you spend on the page, your browsing environment and display settings. In some cases this may affect your secure access to Maplehaze-related websites and use of the services provided by the Maplehaze SDK.


6.4 While we use Cookies and web beacons for the above purposes, we may provide non-personally identifiable information collected through Cookies and web beacons, after statistical processing, to advertisers or other partners, for analyzing how users use our services or evaluating the effectiveness of advertising services, in order to optimize the services we provide to you or to send you ads that you may be interested in. Our products and services may also contain Cookies and web beacons placed by advertisers and other partners. These Cookies and web beacons may collect non-personally identifiable information related to you for monitoring and evaluating the effectiveness of advertising services. The collection and use of such information by these third-party Cookies and web beacons is not governed by this policy but by that third party's own privacy policy.


6.5 We do not use Cookies for any purpose other than those described in this policy. You may refuse or manage Cookies or web beacons through your browser settings. However, please note that if you disable Cookies or web beacons, you may not be able to enjoy the best service experience, and some services may not function properly.


7. How We Store Your Personal Information

7.1 Location of storage. In principle, the personal information we collect and generate in the course of providing our services is stored in secure data centers appropriate to the regions in which we operate. The information and data we collect about you is stored on servers of Maplehaze and/or third-party companies. Such information and data may be transmitted to, and accessed, stored and displayed in, the country or region where you use our products or services, or the location where Maplehaze collects the information and data. Where applicable data protection laws (such as the GDPR) require safeguards for cross-border transfers, we implement appropriate safeguards, such as standard contractual clauses.
7.2 Retention period. We retain your personal information only for as long as necessary to achieve the purposes described in this policy, except where you actively delete it, cancel your account, or laws and regulations provide otherwise. After your personal information exceeds the retention period, we will delete it or anonymize it in accordance with the requirements of applicable laws.

8. How We Manage and Protect Your Personal Information

8.1 How we manage your personal information
8.1.1 Correcting or supplementing your personal information
When you find that personal information about you that we process contains errors, you have the right to request us to make corrections or supplements.
8.1.2 Deleting your personal information
In the following circumstances, you may submit a request to us to delete personal information:
(1) You will no longer use our products or services and will voluntarily cancel your account;
(2) You find that our processing of personal information violates applicable laws and regulations;
(3) You find that our collection and use of your personal information seriously violates our agreement with you and was made without your explicit consent;
(4) We will no longer provide products or services to you.
If we accept your deletion request, while processing it we will, as far as possible, notify third parties that have obtained your personal information from us with your authorization, requiring them to delete it in a timely manner (except where the third party has obtained your separate authorization or laws and regulations provide otherwise).
Due to security technology issues or where laws and regulations provide otherwise, we may not be able to delete the corresponding information immediately. We will securely store your personal information until it can be anonymized or deleted in accordance with applicable laws and regulations.
8.1.3 Changing or withdrawing your authorization and consent. Each business function requires some basic personal information to be completed. Apart from that, for the collection and use of additional personal information, you may contact our customer service to grant, change or withdraw your authorization and consent. After you withdraw your authorization and consent, we will no longer process the corresponding personal information and will no longer be able to provide you with the products or services corresponding to the withdrawn authorization and consent. However, your decision to withdraw consent will not affect the processing of personal information previously conducted based on your authorization and consent.
8.1.4 Cancelling your account. You may contact us by email at operation@maplehaze.com to submit a cancellation request. After verifying your identity, we will complete the cancellation within 15 working days.
After you voluntarily cancel your account, we will stop providing products or services to you, and delete your personal information or anonymize it in accordance with applicable laws and regulations. Please understand that once you cancel your account, you will not be able to use all of our products or services, and you will be deemed to have automatically waived your existing rights and interests.
8.1.5 If you cannot realize the above functions, you may contact our customer service at any time. However, for the security of your information, you may need to submit a written request to us or otherwise reasonably prove your identity. We will respond to your request within 15 working days after verifying your identity (if necessary).

8.2 How we protect your personal information
To protect the security of your information, we endeavor to adopt various reasonable physical, electronic and administrative security measures to protect your information against leakage, damage or loss, including but not limited to SSL/TLS encryption in transit, encrypted storage of information, and access control in data centers. We also apply strict management to employees or outsourced personnel who may come into contact with your information, including but not limited to different access controls based on positions, confidentiality agreements, and monitoring of their operations. Maplehaze provides corresponding security measures based on existing technology to protect your information, providing reasonable security safeguards, and Maplehaze will endeavor to prevent your information from being leaked, damaged or lost. Despite the aforementioned security measures, please also understand that no "perfect security measures" exist on information networks.

9. How We Handle Personal Information of Minors

We attach great importance to the protection of children's personal information. Our products, websites and services are primarily intended for adults. Children should not create their own user accounts without the consent of a parent or guardian. Although local laws and customs define children differently, we generally consider anyone under the age of 13 (or the higher minimum age applicable under the laws of your jurisdiction, such as 16 under the GDPR in certain circumstances) to be a child.
For children's user information collected with the consent of a parent or guardian, we only store, use or publicly disclose such information where permitted by law, with the explicit consent of the parent or guardian, or where necessary to protect the child; otherwise we will endeavor to delete the relevant data as soon as possible.
Given the limitations of existing technology and business models, it is difficult for us to proactively identify children's personal information. If you find that we have collected a child's personal information without our knowledge or without prior verifiable guardian consent, please contact us promptly. We will endeavor to delete it promptly upon discovery. If we ourselves discover the aforementioned circumstances, we will also delete the information promptly, except where laws require us to retain it.

10. How Your User Information Is Stored and Transferred Globally

As a global service provider, your personal information may be processed and stored in countries or regions other than your country of residence, in accordance with applicable laws and regulations.
Where cross-border transfer or storage of personal information is required, we will inform you of the purpose, recipients, security safeguards and security risks of the cross-border transfer, and obtain your consent where required by applicable laws. We implement appropriate safeguards for cross-border data transfers, such as the standard contractual clauses approved under the GDPR where applicable.
We retain your user information only for the period necessary for the purposes described in this policy and for the minimum period required by laws and regulations. After the above retention period expires, we will delete your user information or anonymize it in accordance with the requirements of applicable laws and regulations. Except where laws and regulations provide otherwise, or for purposes of public interest or scientific or historical research, or with your separate authorization and consent, in which case we may need to retain relevant data for a longer period. In terms of retention periods, different business data have different validity periods. For example, data such as ad interaction conversions involved in business review or reconciliation are generally retained for no more than 60 days after being escaped and de-sensitized, while other data are generally retained for 1-7 days depending on the characteristics of the business, and are automatically cleaned up upon expiration.

11. Revisions and Updates to This Policy

11.1 We may revise this policy from time to time, and such revisions form part of this policy. We will post any changes to this policy on this page or through other means we consider appropriate (including posting on the Maplehaze official website, sending you an email, or even providing a pop-up notice). If you continue to use our products and/or services, you are deemed to agree to be bound by the revised policy. We encourage you to review our privacy policy each time before using our products and/or services.

11.2 For material changes, we will also provide more prominent notice (including notice through our official website or even providing a pop-up notice). Such material changes include but are not limited to:
(1) Material changes to our service model, such as the purposes of processing personal information, the types of personal information processed, and the ways in which personal information is used;
(2) Material changes to our control, such as changes of ownership caused by mergers and reorganizations;
(3) Changes to the main objects of sharing, transferring or publicly disclosing personal information;
(4) Material changes to your rights in participating in the processing of personal information and the ways of exercising them;
(5) Changes to the department responsible for handling personal information security, contact methods and complaint channels;
(6) Where a personal information security impact assessment report indicates high risk.

12. How to Contact Us

12.1 If you have any questions, comments or suggestions about this policy, or any questions about our processing of your personal information, please contact us by email at operation@maplehaze.com. We will review the issue involved as soon as possible and respond within 15 working days (or within the period required by applicable law, such as one month under the GDPR, extendable where permitted).

12.2 If you have comments or feedback regarding the protection of personal information, or questions about our processing of your personal information, you may contact our Data Protection Officer directly at zhongwei@maplehaze.com. We will review the issue involved as soon as possible and respond within 10 working days.

12.3 If you are not satisfied with our response, particularly where our processing of your user information has harmed your legitimate rights and interests, you may also seek remedies through external channels, including lodging a complaint with the competent data protection supervisory authority in your jurisdiction, or filing a lawsuit with a court of competent jurisdiction over the place of residence of Maplehaze Group Ltd.