Skip to main content 跳到主内容
WideWired 网连网络
Legal

Privacy Notice

Last updated: 2026-09-15

This Privacy Notice explains what information WideWired collects when you use our network platform, why we collect it, how we use it, and your rights. It applies to our website, software clients, and managed infrastructure (collectively, the "Service").

The data controller is WIDEWIRED NETWORKS PTE. LTD. (UEN: 202315263W), 1 Raffles Place, #21-01, One Raffles Place, Singapore 048616. For users in mainland China, the personal information processor under PIPL is Nanjing Wanglian Network Technology Co., Ltd. (南京网连网络科技有限公司), our affiliate operating under MIIT IP-VPN License No. 合B1.B2-20250100. Personal data may also be processed by our regional affiliates WIDEWIRED NETWORKS LIMITED (Hong Kong SAR) and WIDEWIRED NETWORKS CORPORATION (United States) where they operate the Service in their respective regions. You can reach our compliance team at compliance@widewired.com.

1. Information We Collect

Account information. On the Global site, registration uses an email address, password hash, and email verification events. On the China site, registration uses a username, password hash, contact phone number, and SMS verification and delivery events. A verified China phone number can also be used to look up your account for sign-in and to contact you.

Network and device metadata. To operate the Service, we store the names, identifiers, configuration, and connectivity status of the networks and devices you create. This includes ACL rules, routing entries, DNS aliases, and similar controller state.

Telemetry. We collect aggregate counters about your devices' performance, such as bytes transferred, peer reachability, compression ratios, and relay usage. We do not inspect or store the contents of overlay traffic.

Billing. Credit is purchased with a one-time payment, without recurring billing or automatic renewal. We process billing profile details and transaction metadata (including order ID, amount, payment status, refunds, and disputes) to issue payment documents, manage Credit, and answer billing inquiries. Payment processors (Stripe and Alipay) provide payment events; we do not store full card numbers.

Support conversations. If you choose to open online support, our regional Chatwoot service stores the contact details, messages, and attachments you submit so that our support team can respond. The support widget is loaded only after you open it.

Logs. Our servers log standard request metadata (timestamp, IP address, user agent, status code) for security, abuse prevention, and debugging. Request bodies are not logged in production.

2. How We Use Information

3. What We Do Not Do

4. Legal Basis for Processing (EEA / UK)

If you are in the European Economic Area or the United Kingdom, we rely on the following legal bases under the GDPR / UK GDPR:

5. Sharing

We share information only with: (a) infrastructure providers strictly necessary to operate the Service (e.g., relay hosting, payment processors); (b) authorities when legally required, with notice to you where permitted; (c) successors in connection with a merger or acquisition, subject to this Privacy Notice.

6. Third-Party Processors

We engage a limited set of third-party processors strictly necessary to operate the Service. Each processor is bound by a written data processing agreement (DPA) or equivalent contractual terms requiring confidentiality, purpose limitation, and security commensurate with the data they handle. The current list is:

Third-party processors, as of 2026-09-15.
ProcessorPurposeData categoriesStorage regionDPA
Stripe Payments, Inc. One-time Credit card payments, refunds, disputes and chargebacks. Email, billing name, billing address, card last4, transaction metadata. United States (with regional processing in the EU and Singapore). Stripe DPA
Alipay (Hangzhou Alipay Network Technology Co., Ltd.) Domestic one-time CNY Credit payments, refunds, disputes and chargebacks. Order ID, amount, transaction status, Alipay buyer ID. Mainland China. Available on request
ipinfo.io (IPinfo LLC) Provides a periodically downloaded IP geolocation dataset for home region routing and abuse mitigation. Lookups run locally on our servers. No visitor IP address or account identifier is sent for a lookup; the downloaded dataset and download request metadata are processed. United States. ipinfo Privacy Policy
Feishu SMTP (Beijing Feishu Technology Co., Ltd.) Transactional email delivery (verification codes, security and billing notices). No marketing email. Email address, message body of the transactional email. Mainland China. Available on request

Optional website analytics. If you consent, the public marketing website loads Microsoft Clarity to process page views, device and browser metadata, clicks, pointer movement, scrolling, and session diagnostics. It is not loaded on the authenticated app surface and is not used by us for advertising. Microsoft states that Clarity acts as a separate data controller, stores the data in Microsoft Azure, and applies its Clarity Terms and Microsoft Privacy Statement.

When the processor list or external analytics use changes, we will update this page and, where the change is material, notify you as described in section 13.

7. International Data Transfers

WideWired operates a global network with infrastructure in multiple regions, including Singapore, mainland China, Hong Kong, the United States, and the European Union. As a result, your personal information may be transferred to and processed in jurisdictions other than your own. The minimum granularity we can disclose is the country or region in which a processor or our affiliates operates; specific data center addresses are not published for security reasons.

Transfers from the EEA / UK. Where we transfer personal data outside the EEA / UK to a country without an adequacy decision, we rely on the European Commission's Standard Contractual Clauses, Module 2 (controller to processor) or Module 3 (processor to processor) as applicable, available at the European Commission's SCC page. Transfers from the United Kingdom are covered by the UK International Data Transfer Addendum to the EU SCCs, available from the UK Information Commissioner's Office. We supplement these contractual measures with appropriate technical and organizational safeguards (TLS in transit, encryption at rest for credentials, least-privilege access).

Transfers from mainland China. Where personal information is transferred outside mainland China, we comply with the cross-border transfer mechanisms under the Personal Information Protection Law (PIPL), including (as applicable): the Standard Contract for the Cross-Border Transfer of Personal Information filed with the Cyberspace Administration of China, a security assessment, or a personal information protection certification. Separate consent for cross-border transfer is obtained at sign-up where required by law.

Transfers from Hong Kong, Macao, and Taiwan. Hong Kong transfers are conducted in line with the Personal Data (Privacy) Ordinance (Cap. 486) and current guidance from the Office of the Privacy Commissioner for Personal Data. Transfers from Taiwan are conducted in line with the Personal Data Protection Act and current guidance from the National Development Council. Macao transfers are conducted in line with the Personal Data Protection Act (Law 8/2005).

You may request a copy of the relevant transfer mechanism, or an inventory of the safeguards applied to a specific transfer, by contacting us at compliance@widewired.com.

8. Data Location and Retention

Control-plane data is stored on servers we operate. We retain account data for as long as your account is active, plus a reasonable period for legal and accounting purposes (typically up to 24 months after account closure). Telemetry counters are retained at full resolution for 30 days and aggregated thereafter.

9. Security

We use industry-standard practices including TLS for data in transit, encryption at rest for credentials, row-level security in our database, and least-privilege access for our staff. No system is perfectly secure; in the event of a breach affecting your data, we will notify you in accordance with applicable law.

10. Your Rights

Depending on your jurisdiction, you may have rights to access, correct, export, restrict, object to, or delete your personal information. You can manage most account information directly in the app, or contact us at compliance@widewired.com for assistance. We will respond within the period required by applicable law.

Singapore (PDPA). You may request access to and correction of your personal data, and you may withdraw consent for processing not required for the contract we have with you.

EEA / UK (GDPR / UK GDPR). You have the rights to access, rectification, erasure, restriction, portability, and to object to processing based on legitimate interests. You also have the right to lodge a complaint with your local supervisory authority.

Mainland China (PIPL). You have the rights to know, decide on, access, copy, correct, and delete your personal information, to request an explanation of processing rules, to port your information where technically feasible, and to withdraw consent. Where processing is based on consent, you may withdraw it at any time. If we use automated decision-making that significantly affects you, you may request human review.

Hong Kong (PDPO), Macao (Law 8/2005), Taiwan (PDPA): you have rights to access, correct, and delete your personal information, and to withdraw consent for non-essential processing. Submit requests to the email below.

California (CCPA / CPRA), Brazil (LGPD), and other regions: equivalent rights apply where mandated by local law. Contact us with your request and we will route it to the appropriate procedure.

11. Cookies and Similar Technologies

Our website uses strictly necessary cookies (for example, to keep you signed in, to remember your language preference, and to record your consent choices). Analytics and marketing cookies are set only after you opt in through the consent banner shown on first visit. You can change your choice at any time through the "Cookie preferences" link in the site footer. For the full list, see our Cookie Notice.

12. Children

The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will delete it.

13. Changes

We may update this Privacy Notice from time to time. Material changes will be announced via email or in-app notice at least 14 days before they take effect.

14. Contact

Questions about this Privacy Notice, or to exercise any of the rights described above, email compliance@widewired.com. You may also write to us at our registered address: 1 Raffles Place, #21-01, One Raffles Place, Singapore 048616, marked "Attn: Compliance".

法律

隐私政策

最近更新:2026-09-15

本《隐私政策》说明在你使用网连网络(WideWired)网络平台时,我们会收集哪些信息、为何收集、如何使用,以及你享有的权利。本政策适用于我们的网站、软件客户端及托管基础设施(合称"本服务")。

本服务的数据控制者为 WIDEWIRED NETWORKS PTE. LTD.(新加坡 UEN:202315263W),注册地址:1 Raffles Place, #21-01, One Raffles Place, Singapore 048616。对中国大陆用户,依据《个人信息保护法》(PIPL)的个人信息处理者为我方关联实体南京网连网络科技有限公司(Nanjing Wanglian Network Technology Co., Ltd.,依据工信部 IP-VPN 许可,证号合B1.B2-20250100)。在我方各区域关联实体运营本服务的范围内,WIDEWIRED NETWORKS LIMITED(中国香港)和 WIDEWIRED NETWORKS CORPORATION(美国)也可能处理你的个人信息。合规事务联系邮箱:compliance@widewired.com

1. 我们收集的信息

账号信息。Global 站注册使用邮箱地址、密码哈希及邮箱验证事件;China 站注册使用用户名、密码哈希、联系手机号及短信验证和发送事件。已验证的 China 手机号也用于登录时反查账号和联系你。

网络与设备元数据。为提供服务运转所需,我们存储你创建的网络与设备的名称、标识、配置以及连通状态,包括 ACL 规则、路由条目、DNS 别名等控制器信息。

遥测数据。我们收集设备性能相关的聚合计数,例如传输字节数、对端可达性、压缩比、接力使用量等。我们不会检查或存储 overlay 流量的内容。

计费数据。Credit 通过一次性付款购买,不设定期扣款或自动续费。我们处理账单资料及交易元数据(包括订单号、金额、支付状态、退款和争议),用于出具支付单据、管理 Credit 与答复计费咨询。支付处理方(Stripe、支付宝)向我们提供支付事件;我们不存储完整的银行卡号。

客服会话。当你主动打开在线客服时,我们的区域 Chatwoot 客服服务会保存你提交的联系方式、消息与附件,以便客服团队回复。客服组件仅在你主动打开后加载。

日志。我们的服务器会记录标准的请求元数据(时间戳、IP、User-Agent、状态码),用于安全、防滥用和排错。生产环境不记录请求体。

2. 我们如何使用这些信息

3. 我们不做的事

4. 处理的法律依据(欧洲经济区 / 英国)

如你位于欧洲经济区或英国,依据 GDPR / UK GDPR,我们的处理活动基于以下法律依据:

5. 共享

我们仅在以下情况下共享信息:(a)为运营本服务所必需的基础设施提供方(如接力托管、支付处理);(b)法律强制要求时,并在允许的情况下提前告知你;(c)合并或收购的承继方,且其继续受本《隐私政策》约束。

6. 第三方数据处理者

为运营本服务,我们仅委托下列必要的第三方数据处理者。每位处理者均签署有书面数据处理协议(DPA)或具有同等效力的合同条款,约束其在保密、目的限定与安全方面的责任,并与其所处理的数据类型相匹配。当前清单如下:

第三方数据处理者,截至 2026 年 9 月 15 日。
处理者处理目的数据类别存储地区DPA
Stripe Payments, Inc. 一次性 Credit 银行卡支付、退款、争议与拒付处理。 邮箱、账单姓名、账单地址、卡号后四位、交易元数据。 美国(在欧盟、新加坡设有区域处理节点)。 Stripe DPA
支付宝(杭州阿里巴巴支付宝网络技术有限公司) 境内人民币一次性 Credit 支付、退款、争议与拒付处理。 订单号、金额、交易状态、支付宝买家 ID。 中国大陆。 应申请提供
ipinfo.io(IPinfo LLC) 提供定期下载的 IP 地理数据集,用于归属区域路由与滥用检测;具体查询在我方服务器本地完成。 查询时不向 IPinfo 发送访客 IP 或账号标识;仅处理下载的数据集及下载请求元数据。 美国。 ipinfo 隐私政策
飞书邮件 SMTP(北京飞书科技有限公司) 事务性邮件投递(验证码、安全与计费通知)。不发送营销邮件。 邮箱地址、事务性邮件正文。 中国大陆。 应申请提供

可选网站分析。在你同意后,公开营销网站会加载 Microsoft Clarity,处理页面访问、设备与浏览器元数据、点击、指针移动、滚动和会话诊断数据。登录后的应用界面不加载该服务,我方也不将其用于广告。Microsoft 说明 Clarity 作为独立数据控制者处理数据,数据存储于 Microsoft Azure,并适用其《Clarity 条款》《Microsoft 隐私声明》

处理者清单或外部分析使用范围变化时,我们会更新本页面;如属重大变更,将按第 13 节告知你。

7. 数据跨境传输

本公司运营全球网络,基础设施分布于多个地区,包括新加坡、中国大陆、中国香港、美国及欧盟。因此,你的个人信息可能被传输至你所在地区以外的司法辖区进行处理。出于安全考虑,我们公开披露的最小粒度为处理者或关联实体所在的国家或地区;具体机房地址不予公开。

从欧洲经济区 / 英国传输。如向欧盟委员会未作出充分性认定的国家传输个人数据,我们以欧盟委员会的标准合同条款(视情形适用 Module 2 控制者至处理者,或 Module 3 处理者至处理者)作为传输机制,模板可见欧盟委员会 SCC 页面。来自英国的传输则适用《英国数据传输附录》(UK International Data Transfer Addendum),可在英国信息专员办公室(ICO)页面查询。我们同时辅以适当的技术与组织措施(传输 TLS、凭据静态加密、最小权限访问等)。

从中国大陆传输。如个人信息向中国大陆境外传输,我们将依据《个人信息保护法》(PIPL)的跨境传输要求合规处理,视情形采用:向国家网信办备案的《个人信息出境标准合同》、出境安全评估或个人信息保护认证;在法律要求单独同意的场景,我们将在注册或相关场景下另行征得你的同意。

从中国香港、澳门、台湾传输。香港地区传输依据《个人资料(私隐)条例》(第 486 章)及个人资料私隐专员公署当时的指引执行;台湾地区传输依据《个人资料保护法》及主管机关当时的指引执行;澳门地区传输依据《个人资料保护法》(第 8/2005 号法律)执行。

你可发送邮件至 compliance@widewired.com 索取相应传输机制的副本,或就特定传输申请查询所适用的保障措施清单。

8. 数据存储位置与保留

控制器数据存储在我们运营的服务器上。账号数据在账号有效期内一直保留,并在账号注销后保留合理期限以满足法律和会计要求(通常不超过 24 个月)。遥测计数以原始精度保留 30 天,之后进行聚合保留。

9. 安全

我们采用业界标准做法,包括:传输层使用 TLS、凭据数据静态加密、数据库启用行级安全(RLS)、内部员工最小权限访问。任何系统都无法做到绝对安全;如发生影响你数据的事件,我们将依据适用法律通知你。

10. 你的权利

视所在司法辖区不同,你可能享有访问、更正、导出、限制处理、反对处理或删除个人信息的权利。账号信息绝大多数可在应用内自助管理;如需协助,请联系 compliance@widewired.com。我们将在适用法律规定的期限内回应。

新加坡(PDPA)。你可申请访问和更正你的个人数据,并可针对非履行我们与你之间合同所必需的处理活动撤回同意。

欧洲经济区 / 英国(GDPR / UK GDPR)。你享有访问、更正、删除、限制处理、可携带,以及就基于合法利益的处理提出反对的权利;你也有权向所在地的监管机关提起投诉。

中国大陆(PIPL)。你享有知情权、决定权,以及对个人信息的查阅、复制、更正、删除权;可要求解释处理规则;在技术可行的情况下可申请可携带;可撤回同意。基于同意进行的处理,你可随时撤回同意。如我们使用对你有重大影响的自动化决策,你可要求人工复核。

中国香港(PDPO)、澳门(第 8/2005 号法律)、台湾(个人资料保护法)。你享有查阅、更正、删除个人资料的权利,并可撤回对非必要处理的同意。请发送邮件至下文联系邮箱提出申请。

美国加州(CCPA / CPRA)、巴西(LGPD)及其他地区:在当地法律强制规定的范围内,你享有等同的权利。请联系我们提交申请,我们将按相应程序处理。

11. Cookie 及类似技术

我们的网站使用严格必要的 cookie(例如保持登录状态、记住语言偏好、记录同意选择)。分析与营销类 cookie 仅在你通过首次访问的同意横幅明示同意后才会启用。你可以随时通过页脚的「Cookie 偏好」链接更改选择。完整清单详见《Cookie 政策》。

12. 未成年人

本服务并非面向 16 岁以下的儿童。我们不会主动收集儿童的个人信息。如你认为儿童向我们提供了个人信息,请与我们联系,我们将进行删除。

13. 政策变更

我们可能不时更新本《隐私政策》。重大变更将至少在生效前 14 天通过邮件或站内通知告知。

14. 联系我们

对本《隐私政策》有疑问,或希望行使上述任一权利,请发送邮件至 compliance@widewired.com。也可邮寄至我们的注册地址:1 Raffles Place, #21-01, One Raffles Place, Singapore 048616,注明「Attn: Compliance」。