Hangzhou Zhihua Technology Co., Ltd.
Consider the privacy policy
We take the security of corporate documents, model configurations, and personal information seriously. This policy helps you understand how this information is processed and the rights you can exercise in our services.
Updated: August 5, 2026
Effective date: August 5, 2026
1. Scope of application
This policy explains how Hangzhou Zhihua Technology Co., Ltd. collects, uses, stores, shares and protects personal information and corporate document data when providing the "Consider" corporate Word document AI workbench and related services. When a corporate customer serves as the decision-making party regarding the processing of the information of its employees, partners or other relevant persons, it shall fulfill notification, authorization or other obligations to the relevant persons in accordance with the law.
2. Information we collect
- Account and identity information: email address, verification code verification status, company name, membership, roles and permissions.
- Enterprise documents and task information: Word templates, documents, attachments, processing instructions, review requirements, modification suggestions, versions, differences and export results actively uploaded by users.
- Model configuration information: model service provider, interface address, model name, call settings, and enterprise API Key actively saved by the user.
- Usage and device information: login and operation time, function usage records, task status, error logs, browser and necessary network information for security audits, troubleshooting and product improvement.
- Business and service information: packages, quotas, storage usage, consultation records, information required for orders and invoicing.
3. How we use information
- Create and maintain accounts, corporate workspaces, member permissions, and login status.
- Parse, generate, modify, review, store, display and export user-specified documents and results.
- Perform model invocation, quota management, billing, after-sales support, troubleshooting and security auditing.
- Detect and prevent fraud, unauthorized access, malicious requests, file risks and other security incidents.
- Improve product interaction, performance and reliability, and comply with legal and regulatory requirements.
4. Document content and AI model processing
We only process corporate documents within the scope necessary to provide the document processing functions requested by users, ensure security, and perform the contract. We do not actively use corporate documents for the purpose of training general models for unspecified publics.
When a user uses the platform AI, the document fragments, instructions and context necessary to complete the task will be sent to the model service provider we configured; when the user uses the enterprise's own model API Key, the relevant content will be sent to the model service provider selected and configured by the user. The data processing rules of different model service providers may be different, and enterprise administrators should choose the appropriate calling method based on their own compliance requirements.
If an enterprise has special requirements for data export, storage area, model service provider or isolation method, it should contact us to evaluate privatized deployment or other suitable solutions before uploading relevant data.
5. API Key and Security Measures
The enterprise-owned model API Key is saved using AES-256-GCM authentication encryption. The system only displays the last four digits and other necessary prompt information. Ordinary members and pages will not read or echo the complete Key.
We use measures such as access control, enterprise data isolation, operation logging, file security checks, transmission protection, backup and necessary security monitoring to reduce risks. However, Internet services cannot guarantee absolute security. Enterprise administrators should still allocate permissions reasonably, check member and model configurations regularly, and avoid uploading data beyond what is necessary for business.
6. Cookies and login status
We use cookies or similar technologies that are necessary to provide login sessions and security to keep users logged in after authentication, identify abnormal requests, and maintain basic functionality. The current service does not use cookies for the purpose of cross-site ad tracking. After users disable necessary cookies, login and some functions may not work properly.
7. Information sharing, entrusted processing and disclosure
In order to provide cloud infrastructure, file storage, email sending, model calling, monitoring and technical support, we may entrust service providers with corresponding capabilities to process necessary information, and restrict their processing scope through contracts, security measures and the minimum necessary principle.
We will not sell or disclose users' personal information and corporate documents to unrelated third parties except when necessary for services, obtaining user authorization, company administrator instructions, legal and regulatory requirements, or protecting the safety of users and the public. When transactions such as mergers, divisions, asset transfers, etc. occur, we will require the undertaking party to continue to be bound by this policy in accordance with the law.
8. Information storage and retention
Account, enterprise workspace and paid service data are generally retained for as long as necessary to provide the service. The trial period, trial data retention period and expiration cleanup rules are subject to the page prompts at the time of registration, package rules or mutual agreement.
After a user deletes a document, exits the company, or terminates the service, the relevant data will enter the deletion, recycling, or backup cleaning process according to product rules. Records that need to be retained due to audits, transactions, dispute resolution or legal requirements will be kept in isolation for the necessary period. Users should promptly download materials that require long-term storage before expiration or termination.
9. User and business rights
- Users can view and update accounts, corporate members, model configurations and related information within the product.
- Enterprise administrators can manage members, delete documents, adjust configurations, or apply for service termination based on permissions.
- Users may contact us to apply for access, correction, copying, deletion of relevant personal information, or withdrawal of consent-based processing; unless otherwise provided by law or necessary to perform a contract.
- If you have any objection to the processing of personal information, you can contact us at info@xixisys.com, and we will handle it in accordance with the law after verifying your identity.
10. Protection of minors
This service is mainly intended for businesses and organizations and is not provided to minors. Minors should not register or upload personal and business information on their own. If you find that minors' information has been collected without appropriate authorization, please contact us for processing.
11. Policy updates
We may update this policy due to changes in product features, processing methods, or laws and regulations. When major changes occur, we will notify you through reasonable means such as page announcements, site prompts, or emails, and indicate the update date on the page.
12. Contact us
Questions related to personal information protection and privacy can be sent to info@xixisys.com, or contact Hangzhou Zhihua Technology Co., Ltd. via QQ 3063633738.
Operating entity: Hangzhou Intelligent Technology Co., Ltd.
Contact email:info@xixisys.com
Contact QQ: 3063633738