YitaiCOS
Privacy Policy
Last updated: May 13, 2026
1. Who provides the app
This Privacy Policy applies to the YitaiCOS ERP web workspace, desktop browser experience, mobile web routes, and YitaiCOS Mobile native app, package name cn.yitaicos.app. The service is provided for business users of NINGBO ELIOT INTERNATIONAL TRADE CO., LTD. and its authorized workspaces.
2. What the app does
YitaiCOS is an ERP workspace for authorized staff. It supports products, inventory, orders, dispatch, customers, suppliers, files, finance, tasks, approvals, warehouse scanning, product lookup, picking, tracking and pickup checks, and operational monitoring.
3. Camera permission and barcode scanning
The app requests android.permission.CAMERA only when the user opens the scanner. The scanner uses the device camera through the native ML Kit barcode scanner to detect QR codes and common barcode formats.
Camera frames are processed for barcode detection. For normal scanner use, the app does not intentionally store camera photos or videos and does not upload camera images or video streams to the ERP backend. The decoded code value is used as scanner input.
4. Scan data we process
When a user scans or manually enters a code, the app may process the raw code, normalized code, scan mode or work area, scan source, timestamp, quantity, selected warehouse or location, matched product, order, shipment, tracking, location, and the ERP action chosen by the user.
The decoded code may be sent to the tenant ERP backend to resolve products, orders, tracking numbers, shipments, inventory locations, and permissions. If the user confirms an action, the backend may create cart entries, inventory events, dispatch picking records, pickup workflow actions, work assignments, and audit events.
The mobile scanner keeps a short recent scan history and an offline pending-scan queue in app memory for the current session. This local scanner state is used for undo, retry, and last-scan display.
5. Account, workspace, and ERP data
To provide the service, YitaiCOS processes account identifiers, profile information, tenant and workspace membership, roles, permissions, session data, operational records, products, inventory, orders, dispatch records, customers, suppliers, files, tasks, approvals, notifications, and audit logs.
The app may also process technical data needed to operate the service, such as network status, device platform, app version, request metadata, diagnostics, and security logs.
6. Why we use data
Data is used to authenticate users, enforce tenant isolation and permissions, resolve scans, run ERP workflows, prevent unauthorized access, troubleshoot service issues, maintain audit trails, support customer operations, and comply with legal or security obligations.
7. Access control and tenant isolation
Tenant checks and permission checks are enforced server-side. Users should only access and change records allowed by their workspace role. Native mobile code does not make final ERP authorization decisions.
8. Sharing and service providers
YitaiCOS may process data through infrastructure, database, hosting, storage, messaging, notification, security, and operational service providers needed to run the ERP service. These providers are used to deliver the service and are not allowed to use the data for their own advertising purposes.
The app does not sell personal or sensitive user data and does not use scanner data for advertising or cross-app tracking.
9. Retention
ERP records, scan-derived workflow actions, and audit logs are retained for as long as needed to provide the workspace service, maintain operational history, comply with contractual or legal obligations, resolve disputes, and protect the system. Session-only scanner history in the mobile UI is temporary.
10. Security
YitaiCOS uses access controls, tenant scoping, permission checks, transport security, audit logging, and operational safeguards to protect workspace data. No method of transmission or storage is completely risk-free, but the service is designed to limit access to authorized users and roles.
11. User choices and rights
Users can deny camera permission, but scanner features that require the camera will not work without it. Users can still use manual input where available. Workspace administrators control account access, roles, and many ERP records.
Depending on applicable law, users may have rights to access, correct, delete, restrict, or export personal data. Requests should be sent to the workspace administrator or the developer contact published in the app store listing.
12. Children
YitaiCOS is a business ERP service and is not intended for children or consumer use.
13. Changes to this policy
This policy may be updated when the app, ERP workflows, permissions, service providers, or legal requirements change. The updated date at the top of this page shows when the policy was last revised.
14. Contact
For privacy questions, contact your workspace administrator or use the developer contact published in the Google Play or App Store listing for YitaiCOS Mobile.