VIP.World Privacy Policy
- Last updated:
- Effective date:
VIP.World (the “App,” “we,” or “us”) respects and protects your personal information. This Policy explains how we collect, use, store, share, and protect personal information when we provide account services, identity verification, tasks and orders, chat and audio or video calls, location services, wallets, payments, withdrawals, and notifications, as well as how you may exercise your related rights.
Please note: On first launch, the App presents this Policy and the Terms of Service in a separate Simplified Chinese dialog. We initialize third-party SDKs such as JPush and Mi Push only after you actively select “Agree and continue.” If you select “Decline and exit,” those SDKs will not be initialized. Merely viewing this Policy, opening an agreement page, or remaining silent does not constitute consent.
Before you consent, we will not request non-essential system permissions or use a third-party SDK to collect or upload personal information. You may decline non-essential permissions. Apart from the corresponding feature being unavailable, doing so will not affect other basic features.
1. Scope and operator
This Policy applies to the VIP.World Android app and the websites and services directly associated with it. The operator and app filing information for the officially released version are identified by the notice above and the results in the filing system of the Ministry of Industry and Information Technology. Services that a third party provides through its own page or app are governed by that third party’s separately published privacy policy.
2. Information we collect and use
We process information only as necessary to provide clearly identified features, in accordance with the principles of lawfulness, fairness, necessity, and good faith. A feature page will explain the information it needs before collection. We process that information only after you enter, upload, or authorize it.
| Service scenario | Information that may be processed | Purpose | How it is provided |
|---|---|---|---|
| Registration, sign-in, and account security | Mobile number, SMS verification code, nickname, avatar, email address, sign-in credentials, and account status | Create and identify an account, verify sign-in, recover or change account information, and prevent account theft | You submit the information; the system generates sign-in credentials |
| Identity verification | Name, identity-document type and number, verification materials, and verification result submitted on the verification page | Meet legal, transaction-security, order acceptance, payment-receipt, or withdrawal requirements | Collected only when you initiate identity verification; the fields shown on the page control |
| Tasks, products, services, and orders | Task or order details, service address and contact, transaction amount, order and fulfillment times, order status, after-sales information, and dispute records | Display and match services, fulfill orders, arrange delivery or on-site services, provide after-sales support, resolve disputes, and manage security risks | You submit the information, or it is generated when you use the relevant feature |
| Chat, audio or video calls, and content publishing | Chat text, images, video, voice, call status, locations you actively send, task content, reports, and feedback | Enable communication, message delivery, calls, content display, report handling, and community-safety management | You send the information, or it is generated when you use the relevant feature |
| Wallet, payment, and withdrawal | Order number, payment channel, amount, payment or refund status, wallet balance and transaction history, top-up and withdrawal records, and receiving-account information needed for a withdrawal | Initiate payment, verify transaction results, keep accounts, issue refunds, settle funds, process withdrawals, reconcile accounts, and control risk | You submit the information, or it is generated during a transaction. Payment institutions directly process sensitive credentials such as payment passwords; we do not obtain them |
| Location and nearby services | Latitude and longitude, approximate or precise location, and locations or addresses you select | Show nearby services, fill in your current location, select a point on a map, or send a location in chat | Obtained only after you use the relevant feature and authorize foreground location access. The App does not request background location access |
| Operation, security, and notifications | Device brand and model, operating system and app version, IP address, network type and status, Android ID, OAID, push Registration ID, crash and operation logs, and push-delivery and click records | Keep the App stable, protect accounts and transactions, diagnose faults, and, after you consent, send service notifications about orders, chats, or calls | Automatically generated or obtained within the necessary scope by the App or the push SDKs described below after you consent to this Policy |
Except where consent is not legally required—for example, when processing is necessary to enter into or perform a contract to which you are a party, fulfill a legal obligation, respond to a public-health emergency, or protect life, health, or property in an emergency—we will not process information beyond the purposes described in this Policy. If a purpose changes materially, we will notify you again and obtain renewed consent where required by law.
3. When and why we request system permissions
System permissions are off by default. We explain the purpose and request a permission when you actively use the corresponding feature. Agreeing to this Policy does not cause us to request all permissions at once.
| System permission | When and why it is requested | Effect of declining |
|---|---|---|
| Camera | Requested when you photograph an avatar, chat image, or verification material, so the App can take and upload the image. | You cannot take a photo directly, but features that do not depend on the camera remain available. |
| Photos, videos, or storage | Requested when you select, send, upload, or save an image or video. On supported Android versions, we prefer the system photo picker or selected-photos access. | You cannot select or save local media. Text chat and other features remain available. |
| Microphone | Requested when you record a voice message or start an audio or video call, to capture audio for that session. | You cannot record or send audio from your device. Other features remain available. |
| Foreground location (approximate or precise) | Requested when you look for nearby services, use your current location, select a point on a map, or send a location. We do not request background location access. | Your current location cannot be obtained automatically, but you can still enter or select an address manually. |
| Notifications | Requested when you want service alerts for chats, order status, or calls, including standard notifications, incoming-call alerts, sound, and vibration. | You can still view information in the App, but may not receive timely alerts after leaving it. |
You can change permissions at any time in Android under Settings → Apps → VIP.World → Permissions / Notifications. Withdrawing authorization does not affect processing already completed on the basis of that authorization.
4. Third-party SDKs and services
To provide push notifications and payments, the App may integrate the third-party SDKs below. We perform necessary security assessments and require third parties to process information only for agreed purposes. Each third party’s official privacy policy governs its processing.
4.1 JPush (JPush Android SDK 6.1.0)
- Provider: Shenzhen Hexun Huagu Information Technology Co., Ltd.
- Purpose: Generate a push identifier, deliver order, chat, call, and other service notifications, measure delivery, and diagnose push failures.
- Information that may be processed: Device brand, model, and operating system; app version; Android ID; OAID; network type and status; IP address; JPush Registration ID; push logs; and notification-delivery and click records.
- When enabled: Initialized only after you actively consent to this Policy; the JPush SDK is not called if you decline. In the current version, optional collection and features for IMEI, IMSI, MAC address, SSID, BSSID, Wi-Fi scanning, base stations, geofencing, intelligent push, user insights, linked wake-up, and app-active-time statistics are disabled. JPush is not used for personalized marketing messages.
- Policy: JPush Privacy Policy.
4.2 Mi Push
- Provider: Beijing Xiaomi Mobile Software Co., Ltd.
- Purpose: Improve delivery of order, chat, call, and other service notifications on Xiaomi devices.
- Information that may be processed: Device identifiers such as OAID and Android ID, device brand and model, system and SDK versions, carrier and network type, IP address, push content, notification settings, and push-delivery and click logs.
- When enabled: Enabled through the JPush channel after you consent to this Policy. If you do not allow notifications, messages remain available in the App.
- Policy: Mi Push Privacy Policy.
4.3 WeChat Pay
- Provider: Shenzhen Tencent Computer Systems Co., Ltd. and the licensed payment institution that actually provides payment and settlement services.
- Purpose: Open WeChat, when you actively choose WeChat Pay, to complete payment or a refund and verify the transaction result.
- Information that may be processed: Order number, transaction amount, merchant and app information, basic device and network information, and payment status. WeChat Pay directly processes sensitive credentials such as the payment password you enter in WeChat; we do not obtain them.
- When enabled: Called only when you actively choose WeChat Pay.
- Policy: WeChat Privacy Protection Guidelines.
4.4 Alipay
- Provider: Alipay (China) Network Technology Co., Ltd.
- Purpose: Open Alipay, when you actively choose Alipay, to complete payment or a refund and verify the transaction result.
- Information that may be processed: Order number, transaction amount, merchant and app information, basic device and network information, and payment status. Alipay directly processes sensitive credentials such as the payment password you enter in Alipay; we do not obtain them.
- When enabled: Called only when you actively choose Alipay.
- Policy: Alipay Privacy Policy.
5. Sharing, transfer, and public disclosure
- Except for the service providers identified in this Policy, counterparties as necessary to fulfill an order you select, or as otherwise required by law, we do not share your personal information with another company, organization, or individual.
- We do not sell personal information. If personal information is transferred because of a merger, division, restructuring, asset transfer, or similar transaction, we will identify the recipient and require it to remain bound by this Policy. If the purpose or method of processing changes, we will obtain renewed consent as required by law.
- As a rule, we do not publicly disclose personal information. If disclosure becomes necessary, we will explain its purpose, type, and scope and obtain separate consent as required by law, unless the law provides otherwise.
6. Storage, retention, and security
- We retain personal information only for the shortest period necessary for the purposes described in this Policy. Information that laws or regulations require us to retain—such as orders, payments, settlements, tax and accounting records, and security logs—is kept for the legally required period. When a retention period expires, we delete or anonymize the information unless the law provides otherwise.
- After account deletion, we stop providing services and delete or anonymize account-related information within the period required by law. Transaction or compliance records that must legally be retained are isolated and no longer used for ordinary business.
- We use safeguards including HTTPS encryption in transit, access controls, identity authentication, log auditing, backups, and security-incident response to prevent unauthorized access, disclosure, alteration, or loss.
- If a security incident may harm your rights or interests, we will, as required by law, explain the incident, its possible effects, and measures taken or recommended, and report it to the appropriate regulator.
- If personal information collected in China must be provided outside China in the future, we will complete the legally required security assessment, certification, standard contract, or other procedure; separately identify the recipient, purpose, method, information categories, and means of exercising rights; and obtain separate consent.
7. Your personal-information rights
As provided by law, you may access, copy, correct, supplement, or delete personal information; withdraw authorization; turn off system permissions; delete your account; and ask us to explain our personal-information processing rules. You may do so as follows:
- Change your nickname, avatar, mobile number, email address, and other account information in the App.
- Turn off camera, photos, microphone, location, or notification access in Android settings.
- Account-deletion path: after signing in, open the bottom language page, select the Security Center icon in the upper-right corner, choose “Delete account” under “Account security,” and follow the confirmation prompts.
- Email support@vip.world to request access, correction, deletion, a copy, withdrawal of consent, or account deletion.
To protect account security, we may first verify your identity. After receiving a complete and verifiable request, we will handle it promptly and respond or complete processing no later than 15 business days afterward. If laws or regulations provide otherwise, or if an unsettled order, dispute, or statutory retention duty exists, we will explain the reason and expected handling.
8. Protection of minors
The App is primarily intended for users with the corresponding capacity for civil conduct. A minor under 14 years old should use the services only after a parent or other guardian has read and agreed to this Policy, and the guardian should provide any required consent on the minor’s behalf. We do not knowingly collect the personal information of a child under 14 without guardian consent. If you become aware of such information, contact us below; we will verify the report and delete the information or take other protective measures as required by law.
9. Policy updates
We may update this Policy to reflect changes in our business, technology, laws, or regulations. If a significant change affects the purpose or method of processing, categories of information, or your rights, we will notify you through a prominent in-app notice, dialog, or website announcement. Where renewed consent is legally required, we will obtain your active consent before the change takes effect.
10. Contact us
For questions, comments, complaints, or requests concerning this Policy, personal-information protection, or account deletion, email support@vip.world. After verifying your identity, we will handle the matter promptly and respond no later than 15 business days afterward.