All Products
Search
Document Center

Dataphin:Compliance & certification

Last Updated:Jan 21, 2025

Security compliance certification

  • Lingyang has developed a rigorous and effective data security protection system to support enterprises across various industries in their digital transformation efforts. Actively engaging in data security and compliance standards set by regulators and industry associations, Lingyang shares its best compliance practices, earning recognition and accolades from both. Lingyang's core products have achieved the Level 3 Information Security Management System certification from the Ministry of Public Security, the SDK Security Evaluation Certification from the China Academy of Information and Communications Technology, and the ISO/IEC 27001 Information Security Management System Certification and ISO/IEC 27018 Public Cloud Personal Information Protection Management System Certification from the British Standards Institution (BSI).

  • As a pivotal offering in Lingyang's cloud portfolio, Dataphin Intelligent Data Construction and Governance prioritizes compliance, aligning with the highest domestic and international standards. Dataphin's development, testing, operations, and maintenance services are all ISO/IEC 27001 and ISO/IEC 27018 certified, demonstrating that both Dataphin and Lingyang adhere to international benchmarks in enterprise information processing security and technological innovation, providing robust data intelligence services to businesses.

    • ISO/IEC 27001:2013 is a leading international standard for information security management. Achieving this certification indicates that Lingyang operates at an internationally advanced level in information security management, safeguarding enterprises against potential threats and underscoring its commitment to information security to stakeholders and customers.

    • ISO/IEC 27018, known as the Cloud Privacy Protection Certification, is established by the British Standards Institution (BSI). It is a globally recognized and rigorous certification for cloud service providers that manage personal data security in the cloud, representing a comprehensive information and privacy protection management system.

Personal information protection

  • Lingyang Intelligent Service Company diligently adheres to domestic and international compliance standards for its products. It actively engages with regulators at all levels to ensure compliance and has established a dedicated team to oversee user privacy agreements, product privacy design, and the handling of user privacy data, maintaining transparency with users.

  • The personal information protection section of the Dataphin product service agreement defines confidential information as commercial, financial, and technical secrets, business know-how, and other sensitive information obtained or generated through the agreement. This encompasses a wide range of materials, regardless of format, and requires confidentiality regardless of how it is communicated by the disclosing party.

Personal information

  • Both parties are obligated to strictly adhere to relevant cybersecurity and data protection laws and regulations. Users must collect, store, process, and use personal information in accordance with legal principles and Lingyang's service agreements and rules.

  • When handling third-party personal information, users must ensure the legality of their data sources, the legitimacy of their business purposes, and have obtained consent from the subjects of the personal information. Lingyang does not permit the unauthorized use, sharing, or disclosure of personal information it owns or controls.

  • In the event that Lingyang is required to correct, delete, or cease using personal information or data, impacting service functionality, users must cooperate. Should third parties or personal information subjects make direct claims, users must inform Lingyang in writing and await its direction before reaching any agreements.

  • If users need Lingyang to process their data or share data to utilize service functions, a separate data processing agreement must be executed.

  • Data and personal information must be stored within China unless cross-border transmission or overseas access is required, in which case a data security impact assessment must be conducted in accordance with legal provisions. Data originating from outside China shall not be processed without written consent.

User business data

  • User business data processed through Dataphin services is the sole property of the users. Dataphin, as a platform tool provider, will process this data strictly according to user instructions and will not disclose it without authorization, except as agreed or legally required.

  • Users are responsible for the legality of their business data's sources, content, and processing. Users should ensure compliance with legal requirements, including obtaining necessary consents and permissions, and will bear all consequences for any legal infractions.

  • Both you and Dataphin are committed to safeguarding confidential information. In the event of a breach, prompt cooperative action is required to mitigate damage, with compensation provided for any direct economic losses incurred.