Legal · GDPR

GDPR Compliance

How ZTSPT International protects personal data and supports your rights under the EU General Data Protection Regulation (GDPR).

Last updated: 24 September 2026
Contents
  1. Our Commitment
  2. Data Controller
  3. Principles We Follow
  4. Legal Bases
  5. Processors We Use
  6. International Transfers
  7. Security
  8. Your Rights
  9. Data Breaches
  10. Complaints

1. Our Commitment

ZTSPT International (“ZTSPT”, “we”) processes personal data in line with the EU General Data Protection Regulation (Regulation (EU) 2016/679). This page summarises how we meet its requirements. Full details of what we collect and why are in our Privacy Policy and Cookie Policy.

2. Data Controller

ZTSPT, the operating entity of Shanghai ZT Smart Packaging Technology Co., Ltd., is the data controller for personal data collected through this website.

Europe & Nordic Region Office · Malmö, Sweden
Email: info@ztspt-international.com
Phone: +46 700 439 103

3. Principles We Follow

5. Processors We Use

We use a small number of service providers to run this website and handle enquiries:

ProviderPurpose
Cloudflare, Inc.Website hosting, security, email routing and cookieless website analytics
GoogleEmail inbox where enquiries are received

6. International Transfers

Some of our processors, and our group company in China, may process personal data outside the European Economic Area. Where this happens, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses or, for providers in the United States, the EU–U.S. Data Privacy Framework.

7. Security

8. Your Rights

Under the GDPR you have the right to access, correct, delete, restrict and port your personal data, to object to processing based on legitimate interests, and to withdraw consent at any time.

To exercise any of these rights, email info@ztspt-international.com. We will respond within one month and may ask you to confirm your identity first. More detail on each right is in section 9 of our Privacy Policy.

9. Data Breaches

If a personal data breach occurs, we will assess it promptly. Where required, we will notify the Swedish Authority for Privacy Protection (IMY) within 72 hours and inform affected individuals without undue delay.

10. Complaints

If you are unhappy with how we handle your personal data, please contact us first so we can put it right. You also have the right to lodge a complaint with a supervisory authority — in Sweden, IMY (Integritetsskyddsmyndigheten), or the authority in your own EU country.