1. Introduction
Orsel (China) Technologies, Inc. ("Orsel," "we," "us," or "operating") is committed to protecting the privacy and security of your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you visit our website at www.orseltranslation.com, engage our translation and localization services, or otherwise interact with us.
This Privacy Policy is effective as of January 1, 2026, and applies to all information collected through our website, services, and any related communications.
By using our website or services, you acknowledge that you have read, understood, and agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies, please do not use our services.
2. Information We Collect
We collect several types of information from and about users of our services:
2.1 Project Files and Content
When you submit translation projects, we collect and process the source files, reference materials, glossaries, style guides, and any other content you provide for translation or localization purposes.
2.2 Contact Information
We collect personal and business contact details including name, email address, phone number, company name, job title, and mailing address when you register an account, request a quote, or communicate with us.
2.3 Payment Data
For billing purposes, we collect payment information including billing address, bank account details, and transaction records. Credit card data is processed by our third-party payment processors and is not stored on our servers.
2.4 Usage Data
We automatically collect certain information when you visit our website, including your IP address, browser type, operating system, referring URLs, pages visited, time spent on pages, and other diagnostic data through cookies and similar tracking technologies.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Service Delivery: To process and deliver your translation, localization, DTP, interpreting, and multimedia projects, including assigning linguists, managing workflows, and delivering completed work.
- Communication: To respond to inquiries, send project updates, deliver invoices, provide customer support, and communicate about our services.
- Quality Improvement: To improve our services, train our quality assurance systems, develop translation memories and terminology databases (only with your explicit consent and on anonymized data where possible), and enhance our platform.
- Legal Compliance: To comply with applicable laws, regulations, and legal processes, and to enforce our terms of service.
- Business Operations: To manage our business operations, conduct internal analytics, and improve our website and service offerings.
4. Data Security
We implement robust technical and organizational measures to protect your data:
- Encryption: All data in transit is encrypted using TLS 1.3. Data at rest is encrypted using AES-256 encryption.
- ISO 27001 Compliance: Our information security management system is certified under ISO 27001, ensuring systematic management of sensitive company and client information.
- Access Controls: We enforce strict role-based access controls (RBAC), multi-factor authentication (MFA) for all internal systems, and principle of least privilege.
- Non-Disclosure Agreements: All employees, contractors, and linguists sign comprehensive NDAs before accessing any client data.
- Regular Audits: We conduct regular security audits, vulnerability assessments, and penetration testing to identify and address potential risks.
5. Confidentiality of Translation Materials
We understand that translation materials often contain sensitive, proprietary, or confidential information. We treat all client materials with the highest degree of confidentiality:
- Mandatory NDA: Every translator, editor, reviewer, and project manager in our network is required to sign a binding non-disclosure agreement before being assigned any project.
- Translator Vetting: Our linguists undergo a rigorous 3-stage qualification process, including identity verification, professional credential review, and background checks.
- Data Isolation: Client project data is stored in isolated, encrypted environments. Access is granted only for the duration of the project and revoked upon completion.
- Secure File Transfer: All file transfers occur through encrypted channels (SFTP/HTTPS). We do not accept or transmit sensitive documents via unencrypted email.
6. Third-Party Sharing
We do not sell your personal information. We may share your data with the following categories of third parties:
- Linguists and Contractors: Our vetted network of translators, editors, and reviewers access project materials solely for the purpose of completing your assignments. All are bound by NDA.
- Payment Processors: We use third-party payment processors to handle financial transactions. These processors are PCI-DSS compliant and operate under their own privacy policies.
- Cloud Storage Providers: We use enterprise-grade cloud storage solutions (with data residency options) to store project files securely. Our cloud providers are SOC 2 Type II certified.
- Legal Requirements: We may disclose information if required by law, court order, or governmental regulation.
7. Data Retention
We retain your information only as long as necessary to fulfill the purposes for which it was collected:
- Project Files: Translation project files are retained for the duration of the project plus 90 days for quality assurance purposes, unless you request earlier deletion or a longer retention period is agreed upon.
- Account Information: Contact and account information is retained for the duration of our business relationship and for 3 years thereafter for legal compliance.
- Financial Records: Billing and payment records are retained for 7 years as required by applicable tax and financial regulations.
- Deletion: Upon request or at the end of the retention period, data is permanently deleted using cryptographic erasure methods. You may request deletion at any time by contacting us.
8. International Data Transfers
As a global translation company, your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place:
- We comply with applicable data protection laws regarding cross-border transfers, including GDPR (for EU/EEA data subjects), PIPL (for PRC data subjects), and other regional regulations.
- We use Standard Contractual Clauses (SCCs) and other approved transfer mechanisms for international data transfers.
- Data residency options are available — you may request that your data be stored and processed within a specific geographic region.
- Our linguists operate under the same data protection standards regardless of their location.
9. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete personal data.
- Deletion: Request deletion of your personal data, subject to legal retention requirements.
- Portability: Request your data in a structured, commonly used, machine-readable format.
- Restriction: Request that we restrict the processing of your data in certain circumstances.
- Objection: Object to our processing of your data based on legitimate interests.
- Withdraw Consent: Withdraw previously given consent at any time.
To exercise any of these rights, please contact us at alex@orseltranslation.com. We will respond to your request within 30 days.
10. Cookies & Tracking
Our website uses cookies and similar tracking technologies to enhance your experience:
- Essential Cookies: Required for basic website functionality, including session management and security features.
- Analytics Cookies: Help us understand how visitors interact with our website so we can improve user experience.
- Functional Cookies: Remember your preferences and settings to provide a personalized experience.
You can control cookie preferences through your browser settings. Disabling certain cookies may affect website functionality. We do not use cookies for advertising purposes.
11. Children's Privacy
Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you become aware that a child has provided us with personal data, please contact us immediately, and we will take steps to delete such information.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- Post the updated policy on this page with a revised "Last Updated" date.
- Notify registered users via email for material changes.
- Provide a 30-day notice period before material changes take effect.
Your continued use of our services after the effective date of any changes constitutes acceptance of the revised policy.
13. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
For EU/EEA data subjects: You also have the right to lodge a complaint with your local data protection supervisory authority.