1. Scope and Controller Information
This policy applies to all apps, games, and related digital services operated or developed by Beijing
Shengyuan Shengshang Technology Co., Ltd. We act as data controller or processor depending on project
contracts.
Contact: support@shengshangtech.com
Address: Room 302, No.3, Limu Road, Beixiaoying Town, Shunyi District, Beijing 100000, China
2. Developer Policy Adaptation
2.1 Platform Developer Rules
We maintain policy mapping and release checklists for platform developer requirements, including data
minimization, purpose limitation, secure transmission, and transparent disclosures.
2.2 Privacy-by-Design Controls
Our engineering process includes privacy impact review, permission necessity analysis, SDK audit, and
incident response mechanisms.
3. Google Play and App Store Adaptation
3.1 Google Play Compliance
We align with Google Play User Data policies, Data safety declarations, consent flows, advertising ID
handling, and permission use restrictions.
3.2 Apple App Store Compliance
We align with App Store Review Guidelines, App Privacy nutrition labels, ATT consent requirements, and
in-app data use disclosure obligations.
4. Monetization Platform Adaptation
We integrate monetization services under strict compliance controls, including ad network policies,
consent-mode signaling, anti-fraud filters, and child-directed traffic restrictions where applicable.
4.1 Revenue Channels Covered
Subscription, in-app purchase, premium features, VIP tiers, and advertising monetization are managed with
regional policy adaptation and auditable records.
5. Global Privacy Regulation Adaptation
We support compliance operations across key frameworks, including GDPR/UK GDPR, CCPA/CPRA, PIPL, LGPD,
and similar local regulations where products are distributed.
5.1 Data Subject Rights
Users may request access, correction, deletion, portability, and objection as legally applicable. We
provide response workflows and audit trails for rights management.
6. Global Age Management Adaptation
We implement age-gating, parental consent workflows (when required), and content/ads controls according to
market rules and platform standards for minors.
6.1 Child and Teen Protection
For child-directed or mixed-audience services, we apply stricter data collection limits and disable
non-compliant ad personalization.
7. Security and Retention
Data is protected through encryption in transit, role-based access, environment isolation, and operational
monitoring. Retention periods are determined by legal obligations and service necessity.
8. Policy Updates
We may update this policy to reflect legal, technical, or business changes. Significant updates will be
announced in-app or on this website.