Welcome to the privacy policy of Pur Ecom, the trading name under which Pur Ecommerce Co., Limited operates the website located at https://www.xujietrade.lol. This notice explains in plain language what happens to the personal information that passes through our systems while you browse this site, contact us, or use the online retail enablement and fulfillment services that we design and run. Pur Ecom takes the care of your data as seriously as the care of a parcel that must pass through many hands before it reaches the right address.
Last updated: 9 September 2026
1. Introduction
Pur Ecommerce Co., Limited is a company registered and operating from Rm D07 8/F KAI TAK FTY BLDG, 99 KING FUK ST SANPOKONG, Kowloon City, Hong Kong (HK). Our work sits in the field of computer integrated systems design for retail, where we build storefront systems, product catalogs, payment links, order automation, analytics panels, and cross border listing tools for merchants who sell goods online.
Every system we design touches some amount of personal data. A customer name on an order, an email address used to confirm a dispatch, a delivery address on a parcel label, a payment record from a checkout. This policy sets out our standards for handling that kind of information across our website and the services we deliver.
When this notice uses the word we or the Company, it means Pur Ecommerce Co., Limited. When it says you or your customer, it means the individual whose personal information is in question. The two fields of activity we describe belong to the Professional, Scientific, and Technical Services sector and to Computer Systems Design and Related Services, which is where our registered services are properly classified.
2. Scope of this notice
This privacy policy covers personal information collected through the public website at https://www.xujietrade.lol, through our published contact email address info@xujietrade.lol, and through telephone enquiries at +13189263662.
The scope also extends to the software systems that Pur Ecom builds and maintains on behalf of merchant clients. In that context the merchant is normally the controller of any shopper data that flows through the system, while Pur Ecom acts as a processor on the merchant instructions. The merchant privacy promise should be read together with this policy for shoppers who buy from a storefront that we have built.
Where a client power, and Pur Ecom power the machinery, the client contract decides who is responsible for asking permission and who is responsible for keeping the machinery secure. Both roles matter. This notice describes the approach we take in our own role as a controller for the people who reach us directly through this website.
3. The information we collect
We gather only the personal information that is necessary to do an honest job. The amount differs depending on whether you are a visitor reading our pages, an enquirer sending a message, a merchant contracting for services, or a shopper whose order passes through a system we maintain.
The main categories are identity data such as a name and a contact role, contact data such as an email address and a phone number, professional data such as a company name and a job title, technical data from the devices used to reach us, and in some limited cases transaction data that is needed to deliver a service. We do not collect information for its own sake, and we do not ask for details that we have no legitimate reason to hold.
Where one of our client systems needs a delivery address or payment reference to dispatch an order, the shopper supplies those details directly to the merchant storefront. Pur Ecom touches that data only to move the order along the machinery, never to mine it for other purposes.
4. Information given to us directly
The clearest way information reaches us is when you open a conversation. If you send a message through the website form, write to info@xujietrade.lol, or telephone +13189263662, you give us the details that your enquiry needs, usually a name, an email address, and the body of the message.
If we then enter a project relationship, the scope of the data broadens in a sensible way. A merchant may share business registration details, product lists, warehouse addresses, and internal contacts so that the systems we build can be configured against true facts rather than guesses.
You decide what you include in a message. We recommend that you avoid putting sensitive personal information such as health records or identity document numbers into an ordinary email, because unsealed electronic mail is not the right channel for that kind of material. If sensitive data has to flow, we advise using a secure, protected channel agreed with the wall desk first.
5. Information collected automatically
Travel through this website leaves a light footprint. Like most sites we observe a small set of technical signals so the pages can be served and maintained properly. These signals include the type of browser, the operating system, the rough geographic region implied by an internet address, the pages visited, and the time of the visit.
This automatic information helps us keep the site stable, spot pages that break, and understand which content is genuinely useful to visitors. It is gathered in an aggregated form wherever possible so that single individuals do not stand out in the crowd.
We rarely ever combine this passive technical trail with the details of a named enquiry. When a named contact later reaches us, the two records are treated as separate shelves unless there is a stated need to join them, and even then only to serve a request that person has made.
6. Information from business partners
Sometimes data reaches us from a second source rather than straight from the person concerned. A merchant client may share a list of staff who should receive system accounts. A payment partner may relay a transaction confirmation that carries names and amounts. A marketplace platform may push order details that include a buyer identity.
Directories and listing partners can also hand over catalog and pricing records that name a merchant representative. Where such records arrive, we treat them under the same standards as any other personal information and we keep the use narrowly tied to the reason the record was passed across.
If a partner gives us data about a person and that person had no direct dealing with us, the partner carries the responsibility for having the right basis to share that data in the first place. Our contracts with such partners set this expectation out in writing.
7. How we use your information
Personal information is put to a short list of honest uses. We answer enquiries, prepare proposals, deliver the systems we are contracted to build, keep those systems running, and meet the legal duties that a registered company must meet.
On the website side the uses are modest: reply to a contact form message, send the information a visitor asked for, and record whether they wanted to remain in touch about our services. We do not resell contact lists and we do not trade in personal data as a commodity.
On the client system side the machinery is used to route an order, generate a label, reconcile a payment, or refresh a catalog so a merchant can run its business. In every case the information serves the task at hand and nothing wider.
Pur Ecom sometimes relies on aggregated, fully anonymised patterns to improve the tools we build, for example to make a pick path faster or a reporting board clearer. Those patterns never single out a named shopper.
8. Legal grounds for processing
Different legal tools authorise different acts of processing. The most common ground is a contract, where we process contact and delivery data because it is needed to perform the service someone asked us to deliver.
A second ground is a legitimate interest. Answering an enquiry, keeping the site secure, and improving the software we maintain are all activities we can ground in the legitimate interest of both the Company and the people it serves, balanced against the rights of the individual concerned.
A third ground is consent, which we rely on chiefly for optional marketing communications. Where consent is the basis, you can withdraw it at any time and the withdrawal must be easy to perform. A fourth ground is a legal obligation, where we hold or share data because the law requires it, for instance to pay tax or to answer a lawful order from a court, regulator, or law enforcement authority.
9. Who we share data with
We do not park personal information on a public street. The small circle of recipients is limited to those who genuinely need it to keep the work moving and who agree to protect it.
The main groups are technology providers that host our website and email, payment gateway providers that settle merchant transactions, order and shipping systems that produce labels and dispatch records, marketplace platforms that receive the catalogs and orders a merchant asks us to move, and professional advisers such as accountants or legal counsel who help us meet our duties.
Each recipient receives only the slice of data required for its specific job. We look for providers that match our security expectations, and our written agreements with them always limit how the data may be used and how long it may be kept.
10. International transfers
Because Pur Ecom helps merchants sell across borders, the data our systems move naturally crosses country lines. A shopper in one market may order goods fulfilled by a partner in another, and the technology that carries that order may run through a data centre located in yet another.
Those transfers are handled with care. Where a transfer moves personal data out of a region that protects it under its own law, we rely on standard safeguards such as approved contracts, adequacy decisions where they apply, or clear consent, and we keep the transfer limited to what the task requires.
The headquarters of Pur Ecommerce Co., Limited is in Hong Kong at Rm D07 8/F KAI TAK FTY BLDG, 99 KING FUK ST SANPOKONG, Kowloon City, Hong Kong (HK), yet our services are delivered to merchants in many jurisdictions. Holding a copy of a record in a second region is not treated lightly, and we review our hosting map as part of every material project design.
11. Cookies and tracking
The website uses a very restrained set of cookies, which are small text files stored on a device to help a site remember something between visits. The cookies we favour are strict technical ones that keep the pages working, such as remembering a visitor choice for the duration of a session.
We keep analytics light. Where measurement is used, preferences go to aggregated counts rather than profiles that follow a single person around the web. We do not run aggressive advertising trackers against our own corporate site, because a professional service company has no need to chase visitors with behaviour ads.
Browser settings can block or clear cookies at any time. Doing so may change how a site behaves, but for our site the normal reading experience should survive with cookies disabled, since our dependence on them is small.
12. Data retention
We hold personal information no longer than the job needs it, and then we let it go. A contact enquiry is kept as long as the conversation stays live and for a short, sensible period afterwards so we are not left without a record if you return.
Client and transaction records are kept for the period that meets accounting, tax, warranty, and legal retention duties, after which they are deleted or anonymised in line with the schedule set by the governing rules. Routine technical logs are kept for a short window that supports security review without piling up for years.
When a retention period ends, deletion happens by a method that prevents accidental recovery. Anonymised statistical summaries may survive the deletion of the named records they came from, because those summaries no longer identify any person.
13. Privacy for children
Our site and services are built for adults who run or shop from retail systems. We do not aim any content at children, and we do not knowingly collect personal information from children without proper parental involvement.
Where a platform we maintain is genuinely used by a younger audience in a permitted market, the merchant client carries the responsibility for age checks and for any consent rules that apply. We build tools and safeguards that make it possible for that responsibility to be met.
If a parent becomes aware that a child has supplied personal information to us without consent, that parent should write to info@xujietrade.lol or call +13189263662 and we will act to remove the data from our hands as quickly as the situation allows.
14. Your rights
People whose data we hold enjoy a set of rights that we respect without putting up hurdles. Depending on the law that applies to you, those rights can include access to a copy of the data, correction of anything inaccurate, deletion of data we no longer need, restriction of some processing, and the right to take your data away in a portable form.
You can also object to processing that is grounded in our legitimate interests rather than your consent, and you can refuse or withdraw marketing at any stage by telling us directly or by using the unsubscribe line that every commercial message carries.
To exercise any right, write to us at info@xujietrade.lol with a clear description of what you need. We verify the identity behind a request before acting on it, because handing data to the wrong caller is a failure of care. Most requests are answered within the window that the governing law allows.
15. Security safeguards
Guarding data is a discipline, not a single lock. We apply security by design to every system we build: data moving across the network is protected in transit, access to stored records is limited to named roles, and settings are chosen conservatively rather than for convenience.
On the operations side we keep the software patches current, control who holds passwords and keys, use strong authentication where the platform permits it, and review activity records that hint at trouble. Staff and contractors receive clear guidance on handling the information that our clients trust us to touch.
No security is absolute, and we make no perfection promise. What we promise is sober care, fast detection when something looks wrong, and a truthful explanation to the people affected and to any authority that needs to hear from us. If you spot a weakness, we would rather learn it from you than from a stranger.
16. Third party links
From time to time our pages mention or link to outside services, such as a payment partner or a marketplace that a merchant uses. Those destinations sit outside our control and have their own privacy notices that you should read before you hand them the key to any personal detail.
A link on our site is not a guarantee of another company conduct. Pur Ecom takes reasonable steps to point people toward reputable services, but once you leave our pages the protection described in this policy no longer automatically follows you.
If a third party link ever appears broken or leads somewhere unexpected, tell us and we will correct or remove it so we stop pointing traffic toward a dead or doubtful door.
17. Marketing communications
Pur Ecom sends marketing only to people who have agreed to hear from us, or who have a clear existing relationship with us and a reasonable expectation of relevant updates. Newsletters, service updates, and industry notes all fall into this careful lane.
Every commercial message identifies the sender as Pur Ecommerce Co., Limited and gives a working way to stop future mail, usually a one click unsubscribe or a plain instruction to the wall desk. Withdrawing consent does not end the services a person has already bought.
We keep the mailing list small and accurate, and we do not rent or sell the names on it to advertisers who would use them without our care.
18. Changes to this policy
Legal rules, business practice, and the systems we run all move over time, so this notice will be revised from time to time. When a change is material, we date the update clearly at the top of this page and describe what shifted, so a returning reader can see the difference at a glance.
Continued use of the site after a changed policy is posted counts as acceptance of the new wording. For named contacts and clients, we may send a specific notice when a change touches how their personal data is handled rather than burying the news in a general edit.
Archived versions of this policy can be requested from info@xujietrade.lol if a reader needs to see the wording that applied at an earlier date.
19. Governing law
This policy and the handling of the personal information it describes are governed by the law that applies to a company registered in Hong Kong, given that the registered office of Pur Ecommerce Co., Limited stands at Rm D07 8/F KAI TAK FTY BLDG, 99 KING FUK ST SANPOKONG, Kowloon City, Hong Kong (HK).
Where a data subject falls under the protection of another jurisdiction, such as the European Union or elsewhere, that jurisdiction own rules also continue to apply to the data of that person. Pur Ecom will not use the Hong Kong seat as a reason to dodge a safeguard that a protected person is owed at home.
This does not remove the legal rights that any customer holds under the consumer or privacy rules of the region where they live.
20. How to contact us
If you have a question about this privacy policy, about the data we hold, or about your rights, the wall desk at Pur Ecom is ready to help. The fastest written route is an email to info@xujietrade.lol, and a direct voice call to +13189263662 can resolve urgent matters during business hours.
Our full registered details are: Pur Ecommerce Co., Limited, Rm D07 8/F KAI TAK FTY BLDG, 99 KING FUK ST SANPOKONG, Kowloon City, Hong Kong (HK), website https://www.xujietrade.lol.
For any dispute that cannot be settled by a friendly word, the matter falls under the governing law described in the section above, and we welcome the chance to sort out a misunderstanding before any formal step is taken. Privacy is a promise we aim to keep with clean, open habits.