Privacy · Terms · Refund · Pricing
Privacy Policy
Floreboard is committed to protecting your personal data in compliance with GDPR, CCPA, and Waffo MoR account review standards. This policy details what personal data is collected, how it is stored and secured, third-party sharing, and your rights (access, rectification, erasure, and account cancellation).
1. Personal Data We Collect
- Account Credentials: Email address, flower shop or studio name, and cryptographically hashed passwords.
- Floristry Business Data: Flower varieties, inventory quantities, purchase costs, custom vessel profiles, and saved floral design drafts.
- Billing & Payment Data: All transactions are processed by our authorized Merchant of Record, Waffo.ai. Financial details (credit card numbers, CVVs, billing addresses) are tokenized by Waffo; Floreboard never collects or stores raw credit card details on our servers.
- Technical & Log Data: IP addresses, device identifiers, browser types, and diagnostic crash logs used for security monitoring and fraud prevention.
2. How Data is Stored and Protected
- Encryption in Transit: All data exchanged between your browser and our servers is encrypted using modern TLS 1.3 cryptographic protocols.
- Encryption at Rest: Data stored in our Cloudflare D1 distributed database is secured with AES-256 standard encryption.
- Access Controls: We enforce strict least-privilege administrative access to production systems.
3. Third-Party Data Sharing
We share data only with trusted infrastructure and service providers essential to operating our platform:
• Merchant of Record: Waffo.ai (secure global payment processing, sales tax/VAT compliance, billing management).
• Cloud Hosting & Delivery: Cloudflare (edge hosting, DDoS protection, database persistence).
• AI Inference Processors: Google Gemini (Nano Banana), FLUX.1 (Black Forest Labs), OpenAI GPT Image, Seedream (utilized strictly for processing design prompts and image rendering; your proprietary florist assets are never sold or used for public AI training).
4. User Data Rights & Account Cancellation
In accordance with GDPR, CCPA, and international data protection laws, you possess the following rights:
• Right of Access: You may request a machine-readable copy of all personal and project data associated with your account.
• Right to Rectification: You can update inaccurate account details in Settings or by contacting us.
• Right to Erasure & Account Cancellation: You may request complete, permanent cancellation of your account and deletion of all associated personal records.
• How to Exercise: Email your request to corlin@qq.com. We commit to verifying your identity and permanently purging your data from our production systems within 30 days.
5. Cookies and Local Storage
We use local storage (IndexedDB and LocalStorage) to enable offline draft caching and fast catalog loading.
We deploy only essential first-party session cookies necessary to maintain authentication and language preferences. We do not use third-party behavioral advertising cookies.
6. Privacy Inquiries and Contact Information
For any questions or requests concerning your data privacy, contact our Data Protection Officer at corlin@qq.com.
隐私政策 (Privacy Policy)
Floreboard(芳华绘)高度重视您的个人隐私与数据安全。本隐私政策依据 GDPR、CCPA 及 Waffo MoR 官方审核标准制定,详细阐明我们收集哪些个人数据、如何存储保护、第三方共享明细以及您的法定数据权利(访问、更正、删除、注销账户)。
1. 我们收集的个人数据类型 (Personal Data Collected)
- 账户凭据:注册与登录时填写的电子邮箱地址、花店或工作室名称、加密哈希密码。
- 花艺业务与资产数据:您录入的花材品种名称、真实库存数量、采购成本单价、花器型号及历史生成的插花方案参数。
- 支付与金融数据:所有付费与订阅均由我们的记录商户 Waffo.ai 直接处理。敏感支付数据(如完整信用卡号、CVV 安全码)由 Waffo 进行银行级加密采集,Floreboard 服务器不收集、不存储您的原始银行卡信息。
- 技术与设备日志:访问 IP 地址、浏览器版本、操作系统型号、操作时间戳与系统异常日志(用于系统稳定性与防欺诈风控)。
2. 数据存储与安全保护机制 (Data Storage & Protection)
- 传输加密:全站数据交互强制采用 TLS 1.3 现代安全加密通道,防止中间人嗅探。
- 静态存储加密:业务数据库部署于 Cloudflare 边缘安全数据网络,采用行业级 AES-256 静态加密保护。
- 权限与安全访问:严格遵循最小必要权限原则,限制内部工程团队访问生产数据。
3. 第三方数据共享明细 (Third-Party Sharing)
Floreboard 严格限制数据向第三方的共享,仅出于提供核心服务的必要性与以下受信处理方合作:
• 支付记录商户 (MoR):Waffo.ai(安全承兑全球结账、处理销售税与增值税合规、防止金融欺诈)。
• 云计算与存储服务商:Cloudflare(提供全球 CDN 加速、D1 分布式数据库及 Web 应用防火墙)。
• AI 图像与推理模型服务商:Google Gemini (Nano Banana)、FLUX.1、OpenAI GPT Image、Seedream(仅处理生成方案所需的提示词与花材参数,绝不向第三方出售您的私有业务资产,亦不将您的私有数据用于公共基础模型训练)。
4. 用户数据权利与账户注销 (User Data Rights & Account Cancellation)
依据 GDPR、CCPA 及相关隐私法规,您对自己的个人数据享有以下完整法定权利:
• 访问权 (Right of Access):您有权随时查阅并导出我们所持有的关于您的账户与业务数据副本。
• 更正权 (Right to Rectification):您可以在个人“设置”页面中自行更新不准确的信息,或联系客服协助修改。
• 删除权与账户注销 (Right to Erasure / Account Cancellation):您有权随时申请彻底注销您的 Floreboard 账户并清除所有关联数据。
• 权利行使与时效承诺:如需行使上述权利或申请注销账户,请发送邮件至 corlin@qq.com。我们承诺在收到申请后 30 日内核验身份并从生产数据库中永久物理擦除您的个人识别信息与历史数据。
5. Cookie 与本地离线存储说明
Floreboard 使用浏览器本地存储(LocalStorage / IndexedDB)以实现花材库存的毫秒级离线读取与方案草稿缓存。
我们仅使用维持登录态会话与界面语言偏好所必需的第一方功能性 Cookie,绝不投放任何第三方侵入式广告追踪 Cookie。
6. 政策更新与联系专员
本政策若发生重大修改,我们将在系统显著位置提前公告。
数据保护与隐私事务专员邮箱:corlin@qq.com。
隱私權政策 (Privacy Policy)
Floreboard 承諾依據國際 GDPR、CCPA 與 Waffo MoR 審核標準保護您的個人資料。本政策說明收集項目、儲存加密、第三方共用及使用者四大權利(查閱、更正、刪除、註銷帳號)。
1. 個人資料收集項目
- 帳號資訊:電子信箱、花店名稱及密碼雜湊值。
- 花藝業務資料:花材品名、庫存數量、成本單價、花器檔案及設計方案歷史。
- 支付金融資料:由合規記錄商戶 Waffo.ai 加密處理,本平台伺服器絕不儲存您的信用卡完整卡號與 CVV。
- 系統技術日誌:IP 位址、瀏覽器型號與防詐日誌。
2. 資料儲存保護與第三方共用
- 傳輸與儲存全程採用 TLS 1.3 與 AES-256 高規格加密。
- 僅與 Waffo.ai(支付與稅務)、Cloudflare(雲端基建)及 AI 生圖供應商(Google Gemini、FLUX.1、OpenAI GPT Image)進行必要處理,絕不對外販售個人資料。
3. 使用者權利與帳號註銷 (30日內完成)
您享有查閱複製本、請求更正及要求永久註銷帳號並刪除所有資料之權利。請寄信至 corlin@qq.com,我們承諾於 30 日內從正式資料庫完成物理刪除。
プライバシーポリシー (Privacy Policy)
Floreboard は GDPR および Waffo MoR 審査基準に基づき、個人データの保護に万全を期しています。収集データ、安全管理、第三者提供、およびユーザー権利(開示、訂正、削除、アカウント解約)について説明します。
1. 収集する個人データと安全管理
- アカウント情報(メールアドレス、店舗名、暗号化パスワード)
- フラワーデザイン履歴、花材在庫データ
- クレジットカード決済は販売代行事業者 Waffo.ai が安全に処理し、当サービスはカード情報を保持しません。
- 通信経路は TLS 1.3、保管データは AES-256 により暗号化保護されています。
2. 第三者提供および利用先
Waffo.ai(決済・税務)、Cloudflare(ホスティング基盤)、AI 推論プロバイダ(Google Gemini、FLUX.1、OpenAI GPT Image)に限定し、第三者への個人データの販売は一切行いません。
3. ユーザーの権利とアカウント削除申請 (30日以内)
個人データの開示、訂正、完全削除、およびアカウントの解約をいつでも請求できます。corlin@qq.com までご連絡ください。30日以内に本番データベースより完全に消去いたします。