Legal

Security & Data Protection

This page carries our legal notice (Impressum) under German law, our data protection information under the EU General Data Protection Regulation, and the security commitments we hold ourselves to as a manufacturer serving defence, aerospace and automotive customers.

Version dated 1 January 2026

Part A — Legal notice (Impressum)

Information pursuant to section 5 of the German Digital Services Act (DDG) and section 18 of the German Media State Treaty (MStV).

Service provider

Lianxin Partners
[Registered address, Germany]
Germany

Represented by

[Managing Director name]

Contact

Email: info@lianxin.trade
Web: lianxin.trade

Register entry and VAT identification

Commercial register: [Amtsgericht / court], HRB [number]
VAT identification number pursuant to section 27a UStG: [DE number]
Economic identifier (W-IdNr.), where issued: [number]

Responsible for content

Pursuant to section 18(2) MStV: [name], address as above.

Professional liability insurance

Insurer and scope: [insurer, registered office, territorial scope].

Other group entities

Our offices in Switzerland, Serbia and China, and their registered details, are listed on our contact page.

Consumer dispute resolution

We are neither obliged nor willing to participate in dispute resolution proceedings before a consumer arbitration board. The European Commission's online dispute resolution platform is available at ec.europa.eu/consumers/odr.

Liability for content and links

As a service provider we are responsible for our own content on these pages under general law, but are not obliged to monitor transmitted or stored third-party information, or to investigate circumstances pointing to unlawful activity. Liability is only possible from the point at which we become aware of a specific infringement, at which point we will remove the content without delay.

Our pages contain links to external third-party websites whose content we do not control. Responsibility lies with the respective provider or operator. Linked pages were checked for possible legal violations at the time of linking; no unlawful content was apparent. We will remove a link without delay if we become aware of an infringement.

Copyright and trade marks

Content and works created by us on these pages are subject to German copyright law. Reproduction, editing, distribution and any kind of exploitation outside the limits of copyright require our written consent. Product designations, series names and marks used on this site are the trade marks of Lianxin or of their respective owners, and are used for identification only.

Part B — Data protection information (Datenschutz)

This notice explains how we process personal data under the EU General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG). It applies to this website, our enquiries, quotations and the performance of contracts.

1. Controller

Lianxin Partners
[Registered address, Germany]
Email: info@lianxin.trade

Data protection officer, where one has been appointed: [name and contact details].

2. What we process, and why

PurposeDataLegal basis
Answering enquiries, quotations and sample requestsName, company, business contact details, the technical content of your messageArt. 6(1)(b) GDPR (steps prior to entering a contract)
Performing and administering contractsOrder, delivery and invoice data, payment details, VAT identificationArt. 6(1)(b) GDPR; Art. 6(1)(c) GDPR (tax and commercial law)
Operating and securing the websiteIP address, requested URL, timestamp, user agentArt. 6(1)(f) GDPR (legitimate interest in availability and security)
Compliance with export control, sanctions and product-safety dutiesIdentity, address, end-use information where requiredArt. 6(1)(c) GDPR (legal obligation)

We do not use the data for automated decision-making or profiling, and we do not sell personal data.

3. Server logs

When you visit the site, our hosting provider records the technical access data above in server logs. These logs are used to deliver the site, diagnose faults and defend against attacks, and are deleted after [retention period, e.g. 7 days] unless a security incident requires longer storage.

4. Cookies and local storage

This site is designed to work without tracking cookies. We use only technically necessary storage (for example, to remember your interface preferences). No analytics, advertising or third-party tracking cookies are set. Where any non-essential storage is introduced, it will be enabled only after your prior consent under section 25(1) of the German Telecommunications Digital Services Data Protection Act (TDDDG), which you may withdraw at any time.

5. Recipients and transfers outside the EU/EEA

We share personal data only where necessary: with hosting, freight, payment and IT service providers acting as processors under Art. 28 GDPR; with our group companies where necessary to answer your enquiry or perform the contract; and with authorities where we are legally required.

Our group includes entities in Switzerland and China. Where personal data is transferred to a country without an adequacy decision, the transfer is protected by appropriate safeguards under Art. 46 GDPR, in particular the EU Standard Contractual Clauses, together with a transfer impact assessment and, where required, supplementary technical and organisational measures such as encryption.

6. Retention

We keep personal data only as long as necessary for the purposes above. Enquiry correspondence is kept for [period, e.g. 3 years] from the last contact. Contract and invoice records are kept for the statutory retention periods of the German Commercial Code and Fiscal Code (generally six or ten years). After these periods the data is deleted or irreversibly anonymised.

7. Your rights

You have the right to:

  • obtain access to the personal data we hold about you (Art. 15 GDPR);
  • have inaccurate data rectified (Art. 16 GDPR);
  • have data erased (Art. 17 GDPR) or processing restricted (Art. 18 GDPR);
  • receive your data in a portable format (Art. 20 GDPR);
  • object to processing based on legitimate interests (Art. 21 GDPR);
  • withdraw any consent you have given, with effect for the future (Art. 7(3) GDPR).

To exercise any of these, write to info@lianxin.trade. You also have the right to lodge a complaint with a supervisory authority, in particular in the member state of your habitual residence, place of work or the place of the alleged infringement.

8. Security of processing

We apply appropriate technical and organisational measures under Art. 32 GDPR, described in Part C below, to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access.

9. Changes to this notice

We update this notice when our processing changes. The version dated at the top of the page is the current one.

Part C — Information security

Security is a production requirement, not an afterthought. Our commitments, which we extend across our plants and supply chain:

Management system

  • An information security management system aligned to ISO/IEC 27001, and quality management aligned to ISO 9001 and IATF 16949 for automotive supply.
  • An annual review of risks, controls and access rights, with documented owners.
  • A supplier security review before onboarding, and where the relationship warrants it, periodic reassessment.

Access and identity

  • Access to systems and product data is granted on a least-privilege, need-to-know basis.
  • Multi-factor authentication is required for administrative and remote access.
  • Access is revoked promptly when a role ends, and reviewed at defined intervals.

Protecting customer data and drawings

  • Customer drawings, specifications and test data are treated as confidential information. They are shared internally only with the staff who need them to manufacture or qualify a part.
  • We will sign a mutual non-disclosure agreement on request, and we handle ITAR- and EAR-relevant technical data in line with the applicable export-control requirements.
  • Data at rest and in transit is encrypted where the platform supports it (TLS in transit).

Operations

  • Systems are kept current with vendor security updates through a managed patching cycle.
  • Backups are taken on a defined schedule and restoration is tested.
  • Security-relevant events are logged and monitored, and we maintain a documented incident response procedure.

Incident notification

If we become aware of a personal data breach affecting your data, we will notify the competent supervisory authority without undue delay and, where required, within 72 hours under Art. 33 GDPR, and inform you without undue delay where the breach is likely to result in a high risk to your rights under Art. 34 GDPR.

Reporting a vulnerability

If you believe you have found a security issue in this website or in our systems, please contact info@lianxin.trade with enough detail to reproduce it. We ask that you act in good faith, avoid privacy violations and service disruption, and give us reasonable time to remedy the issue before public disclosure. We will acknowledge your report and keep you informed of progress.

Part D — Statements that require confirmation

Items shown in square brackets are placeholders. They must be completed with the registered company details, retention periods and contact data before this page is published, and the text should be reviewed by a qualified German lawyer for the entity that actually contracts with customers.