Language Option
Italian(Italiano) | Spanish(Español) | Japanese(日本語) | German(Deutsch) | Portuguese(Português) | French(Français) | Canadian French(Français canadien) | Bulgarian(Български) | Croatian(Hrvatska) | Czech(Čeština) | Greek(Ελληνικά) | Hungarian(Magyar) | Dutch(Nederlands) | Polish(Polski) | Slovak(Slovenský) | Russian(Pусский) | Kazakh(Қазақ)
Updated: July of 2026
This policy applies only to ZTE Corporation smart router products.
This Privacy Policy is available in other languages. If there is any inconsistency, the English version shall prevail.
If you have any questions, comments, or suggestions, please contact us through the following means:
E-mail: DataPrivacy@zte.com.cn
Company Name: ZTE Corporation
Registered Address: ZTE Building, No. 55, Hi-Tech Road South, Nanshan District, Shenzhen, P.R. China
DataPrivacy@zte.com.cn is only used to handle problems related to users' personal information and privacy protection. For problems about terminal equipment failure or account settings, please send emails to mobile@zte.com.cn. Our terminal after-sales staff will reply to you at the first time.
ZTE understands the importance of personal information to you, and will make every effort to ensure the security and reliability of your personal information. We are committed to maintaining your trust in us and abiding by the following principles to protect your personal information: consistency of authority and responsibility, clear purpose, selection of consent, minimum sufficiency, security, subject participation, openness and transparency. Meanwhile, ZTE promises to take appropriate security measures to protect your personal information in accordance with well-established security standards in the industry.
Please read and understand this Privacy Policy carefully before using our products or services.
This policy helps you understand the following:
Ⅰ. How we collect and use your personal information
Personal information refers to the information that is recorded electronically or in other ways and that can be used independently or in conjunction with other information to identify a specific natural person or reflect the activities of a specific natural person. ZTE will collect and use your personal information only for the following purposes described in this policy:
Business function : Version update
To update your system in the timely manner and to make sure your routers work properly, the following information needs to be collected: IMEI, SN and software version of router device.
The data mentioned above will be stored in the FOTA servers that are deployed by ZTE. Because ZTE provides service all over the world, ZTE deploys FOTA servers globally. For example, EU’s servers are deployed in Frankfort, Germany, the personal information we collect and generate in the People's Republic of China will be stored within the territory of the People's Republic of China.
Personal information storage period: 5 Years.
We will use your personal information in the following ways: Version update will consume mobile data.We will collect and process IMEI, SN and software version of router device to provide auto-update function for your device in order to resolve critical failures your device might have and to update security patch. This function is enabled by default. If you need to disable version updates function that are intended to fix critical issues or install security patches,you can close it in the following ways:
1. Through the WebUI management interface: Log in to your device management account, go to "System Settings" → "Update"/”Advanced Setting”→”Update”, and close it.
2. Through the device screen interface (for some devices with screens): Enter "Update" → "Auto Update",and close it.
If you choose to close, the above data collection and transmission will cease, But your device will not be able to perform fix security issues.
If we want to use the information for other purposes not specified in this policy, we will seek your approval in advance. If we want to use the information collected for specific purposes for other purposes, we will seek your approval in advance.
Ⅱ. How we share, transfer and disclose your personal information
To ensure the security of your personal information, we shall follow the minimization principle and share, transfer, or disclose your personal information in accordance with applicable laws and requirements.
For the companies, organizations, and individuals that share personal information with us, we will take organizational and technical measures in accordance with the local laws and regulations, and require them to process personal information in accordance with our security standards, this policy, and related confidentiality and security measures.
We will not share your personal information with any company, organization, or individuals other than ZTE Corporation and its subsidiaries, except in the following cases:
(1) After obtaining your explicit consent, we will share your personal information with other parties.
(2) We may share your personal information in accordance with laws and regulations or mandatory requirements of government authorities.
(3)We may share minimum and necessary information with authorized partners, such as manufacturers of equipment under ZTE Corporation's brand, to provide services for you. We will sign strict confidentiality agreements with our partners, and require them to protect your personal information with strict security measures.
We will not transfer your personal information to any company, organization or individual except in the following cases:
(1) Transfer with express consent: After obtaining your express consent, we will transfer your personal information to other parties.
(2) If personal information transfer is involved in a merger, acquisition, or bankruptcy liquidation, we will require new companies or organizations that hold your personal information to continue to be subject to this privacy policy. Otherwise, we will require the companies or organizations to re-request authorization from you.
We will disclose your personal information only in the following cases:
(1) With your express consent.
(2) Disclosure based on law: We may disclose your personal information in case of law, legal procedure, litigation, or mandatory requirements of government authorities.
Ⅲ. How we protect your personal information
1. We have taken the security protection measures that comply with industry standards to protect the personal information provided by you against unauthorized access, public disclosure, use, modification, damage or loss. We will take all reasonable and feasible measures to protect your personal information.
We provide the safe browsing mode of https for services. We use encryption technologies to ensure data confidentiality. We use trusted protection mechanisms to prevent data from being maliciously attacked. We will deploy access control mechanisms to ensure that only authorized personnel can access personal information. In addition, we will hold the training course on security and privacy protection to enhance employees' awareness of the importance of personal information protection.
2. We have obtained the following certifications:
In the context of the accelerating global digitalization process, the importance of user privacy and data security has become increasingly prominent, and strict data protection legislation has become a common global trend. In order to actively respond to this trend, we have established and continuously improved a mature and robust privacy management system, and are committed to complying with the requirements of international authoritative privacy standards such as ISO/IEC 27701:2019 and EU ePrivacy.
We have been committed to protecting your personal information security.
We have taken various security measures, such as access control system, monitoring system, encryption, anonymization or pseudonymisation, employee training and so forth, to protect your personal information from unauthorized access, use, disclosure, modification, damage or loss and other forms of illegal processing.
We have developed a business continuity plan to ensure that services can be provided continuously. Our information security policies and procedures are designed in strict accordance with international standards, and reviewed and updated regularly, and the effectiveness of the security management architecture and measures is ensured through regular third party security audits. ZTE Corporation and some of its subsidiaries have passed the ISO 27001 information security certification, and can effectively protect your personal information. In case of personal information leakage, we will initiate an emergency plan, take effective measures to prevent the situation from getting worse, and notify the relevant supervisory authority and you in a timely manner.
E-mail: DataPrivacy@zte.com.cn
In addition, we will actively report the handling of personal information security incidents in accordance with the requirements of the regulatory department.
Ⅳ. Your rights
In accordance with personal information protection laws, regulations, standards, and common practices in other countries and regions, we guarantee that you have the following rights over your personal information:
You have the right to access your personal information, except for exceptions as required by laws and regulations. If you want to exercise data access rights, you can access the data by yourself in the following ways:
You can send an e-mail to DataPrivacy@zte.com.cn, which will be replied within an appropriate time.
If you cannot access this personal information through the method, you can submit the request by login the data subject right response system: pdsr.zte.com.cn. As long as we do not need to make too many efforts, we will provide you with other personal information generated when you use our products or services.
When you find that your personal information processed by us is incorrect, you have the right to request us to correct it. You can apply for a correction through the method listed in "(1) Access to your personal information". If you cannot correct this personal information through the above method you can submit the request by login the data subject right response system: pdsr.zte.com.cn at any time.
You can delete your personal information in the following cases:
(1) we violated laws and regulations.
(2) We violated this policy.
(3)The purposes for which the personal information is processed as stipulated in this policy are achieved or cannot be achieved, or the personal information is no longer necessary for the purposes.
(4)You will not use our products or services any longer, or your account is canceled.
(5)You changed the scope of authorization that we have no right to process your personal information.
(6)We do not provide products or services for you, or the storage period expires.
Once you have deleted your personal information, we will also notify the entities that obtain your personal information from us and require them to delete your personal information in a timely manner, unless required by other laws and regulations, or these entities obtain your independent authorization. After you delete information, we may not immediately delete the corresponding information in the backup system, but we will securely store your personal information, restrict further processing of it, and delete the information during the backup update.
4. Change the scope of your authorization
This application only provides basic functions and services for you. In addition to the necessary personal information required for implementing the function, no additional personal information will be collected. if you need to withdraw the authorization, You can perform the following operations by yourself:
Through the WebUI management interface: Log in to your device management account, go to "System Settings" → "Update"/”Advanced Setting”→”Update”, and close it.
Through the device screen interface (for some devices with screens): Enter "Update" → "Auto Update",and close it.
If you cannot access this personal information through these links/methods, you can send an e-mail to DataPrivacy@zte.com.cn, Please understand that each business function can be implemented only after some basic personal information is obtained. When you withdraw your permission or authorization, we cannot provide you with the corresponding service. If the information is necessary for us to fulfill our obligations under laws and regulations or to provide major services, we may not be able to respond to your request or the normal use of our services will be affected. After you withdraw your consent, we will not process the corresponding personal information. However, your decision to withdraw your consent will not affect the previous processing of personal information based on your authorization.
5. Personal information subjects cancel accounts
There is no need to register (or login) an account to use this application, so there is no way to register or cancel an account in the application.
6. Personal information subjects obtain copies of personal information
You have the right to obtain a copy of your personal information. You can perform the following operations by yourself:
You can apply for a copy of your personal information through the method listed in "(1) Access to your personal information". If you cannot obtain the copy through the above method you can submit the request by login the data subject right response system: pdsr.zte.com.cn at any time.
Under the prerequisite that the technology is feasible, for example, data interface matching, we can transmit the copy of your personal information directly to the third party specified by you.
This application does not use any automatic decision-making and related technologies.
To ensure security, you may need to provide a written request or prove your identity in other ways. We may ask you to verify your identity before processing your request.
We will make every effort to ensure that a response is made within one month since we received your request. Considering the complexity and quantity of the request, this period may be extended by another two months if necessary. In the case of postponed respond, we will notify you of the relevant circumstances and the reason for the delay. If the time limit set in this paragraph conflicts with local laws and regulations, the local laws and regulations shall prevail.
In principle, we do not charge for your reasonable requests, but we will charge for repeated requests that exceed a reasonable limit. We may reject requests that repeat unreasonably, require excessive technical means (for example, development of a new system or a fundamental change of current practice), and bring risks to other people's legitimate rights and interests or that are extremely impractical (for example, involving information stored on the backup tape).
We will not be able to respond to your request in accordance with laws and regulations if:
(1) It’s directly related to national security and national defense security of your country or region..
(2) It’s directly related to public safety, public health, and major public interests of your country or region.
(3) It’s directly related to any criminal investigation, prosecution, trial, and execution of a judgment of your country or region.
(4) There is sufficient evidence that you have subjective malice or abuse of rights.
(5) Responding to your request will cause serious damage to the legal rights and interests of yours or other individuals' and organizations'.
(6) Business secrets are involved.
Ⅴ. How we process the personal information of children
Our products and services are mainly for adults. Without the consent of parents or guardians, children are not allowed to create their own user accounts or provide information to us.
If the personal information of children is collected with the consent of their parents, we will only use or disclose this information with the permit of law,the express consent of parents or guardians or the necessary protection of children.
Although local laws and customs define children differently, we regard anyone under 16 (or the legal age in your country) as a child.
If we find that we have collected personal information of children without obtaining confirmed parental consent, we will try to delete the information as soon as possible.
Ⅵ. How we store and transfer your personal information
1. Storage location and cross-border transfer of personal information
Because ZTE deploys FOTA servers globally.The personal information we collect and generate in EEA,UK, Serbia,North Macedonia,Turkey,Switzerland,Moldova,Albania and Bosnia and Herzegovina will be stored in Frankfort, Germany.
The personal information we collect and generate in the People's Republic of China will be stored within the territory of the People's Republic of China(Excluding Hong Kong,China, Macao,China and Taiwan,China).
The personal information we collect and generate in India and Japan will be stored in India.
The personal information we collect and generate in the USA and Mexico will be stored in the USA.
The personal information we collect and generate in Hong Kong,China and Canada will be stored in the local server.
For the users in other country or region, your personal information may be transferred to the server located in Hong Kong,China.Any such transfer of personal information shall take place only in accordance with applicable law.
Your personal information will be remotely accessed based on necessary scenarios such as FOTA upgrade verification test.
The above cross-border transfer shall be implemented within the scope of applicable laws and regulations and the necessary limits for providing services to you. We will complete cross-border transfer prerequisites in accordance with relevant laws and regulations, including the international data transfer agreement.
There may be different data protection laws or even no laws in such jurisdictions. In such cases, we will ensure that your personal information is protected properly as it is protected in the People's Republic of China. For example, we will implement security measures such as data de-identification before cross-border data transfer.
2. Personal Information Storage Period
Unless otherwise specified in this Policy, we will retain your personal information within the period required to achieve the purposes described in this policy, unless as required by law that retention period need to be extended or be permitted by law. The data storage period may vary with different scenarios and products and services. The criteria for determining the retention period (the longer one prevails) include: the time when personal information needs to be retained for the purpose of the service which including the provision of products and services, maintenance of corresponding transaction and service records, control and improvement of product and service performance and quality, the guarantee of system, product and service security and respond to possible user queries or complaints; whether users agree to a longer retention period; and whether there are special requirements for keeping information such as laws and contracts.
After the storage period expires, we will delete your personal information or anonymize it according to the requirements of applicable laws and regulations.
For the storage period of your personal information, please refer to Part I of this privacy.
Ⅶ. GDPR-Specific Provisions
The following provisions only apply to you if you live in Europe.
1.Legal Bases for the Processing of Personal Data
Our processing of your personal data as described in the Section "How We Collect and Use Your Personal Data" is based on the following legal grounds:
1.1 Consent: We may process your personal data with your consent. In particular, we may ask for your consent to participate in promotional activities, such as to send you promotional messages or enable you to participate in the User Experience Program and certain Services, including services through which we collect location information. You have the right not to provide consent, or to withdraw it at any time. The withdrawal of your consent does not affect the lawfulness of our use of your personal data before your withdrawal. If you have granted us consent to use your personal data, we will use it only for the purposes specified in the consent declaration. Please note that to the extent our processing is based on your consent and you deny your consent or withdraw it, we may not be able to provide the service relating thereto. Besides from that, neither the initial denial nor a withdrawal will have any negative consequences for you.
1.2 Legitimate interests: The processing of your personal data may also be necessary for ZTE's legitimate interests. We have a legitimate interest in the version updates that are limited to fixing critical issues or install security patches and this activity will not infringe upon the basic rights and freedoms of users.
Your personal data will only be processed on the above grounds after we have appropriately assessed and balanced our interests against your right to privacy.
2.Additional Information on Your Rights Regarding Personal Data
Subject to the legal requirements under the GDPR, you have the following rights:
The right to access: You may request access to the personal data we hold about you.
The right to rectification: If you find that the personal data we process about you is inaccurate or incomplete, you are entitled to ask us to make rectifications without undue delay and to request the completion of your personal data where appropriate.
The right to erasure: You can submit a request to us to delete personal data, and we shall have the obligation to erase it without undue delay in some circumstances – for example, if we do not have a legal reason to continue to process the personal data to the extent required by applicable laws and regulations. Please note in so far as you delete all the data that is contained in your device, this does not mean that you have deleted all data that ZTE collects and processes about you. Therefore, we encourage you to contact us (please refer to the section "Contact Us" ) to request that your personal data is deleted.
The right to restriction of processing: You have the right, in certain circumstances, to request ZTE to temporarily restrict the processing of your personal data, such as where the accuracy of that personal data is contested by you, while we verify the accuracy of that personal data. We will keep just enough data, or process such data as is necessary to ensure that we comply with your restriction request in the future.
THE RIGHT TO OBJECT: You have the right to object to any processing justified by legitimate interests based on grounds relating to your particular situation at any time. Should you decide to object to the processing of your personal data, we will stop processing personal data that concerns you, unless we can demonstrate compelling reasons for continuing to process your personal data that override your interests, rights and freedoms, or in the case that we establish, exercise or defend our legal claims. You can object to direct marketing activities at any time for any reason whatsoever.
The right to data portability: You have the right to obtain a copy of your personal data in a structured, commonly-used and machine-readable format and transmit such data to another provider or have such data transmitted to another provider under certain circumstances.
The right to withdraw consent: If you have given us your consent to process your personal data but change your mind later, you have the right to withdraw your consent at any time. The withdrawal of your consent does not affect the lawfulness of our use of your personal data before your withdrawal. If you want to withdraw your consent with regard to receiving promotional communications, you can unsubscribe through the method described in each promotional message. If you withdraw your consent, we may no longer be able to provide you with the corresponding Service.
The right to lodge a complaint: You have the right to lodge a complaint with a competent supervisory authority about the way we handle or process your personal data, or file a lawsuit in a court with jurisdiction. Information about how to contact your local data protection supervisory authority is available here at https://edpb.europa.eu/about-edpb/board/members_en.
3.Additional Information on Cross-border transfer
We takes steps to ensure that appropriate technical and organizational security measures and safeguards are applied when transferring personal information outside of the EEA and that privacy rights outlined in this Policy are preserved.
We are committed to signing Standard Contractual Clauses of the EU Commission with
data receiver to provide an adequate level of protection for the personal information we process globally.We ensures that all transfers of Personal Information are subject to appropriate safeguards as defined by the regulation.
(1) Data Receiving Country
We may transfer data to the following countries or regions:
China (for example, our technical support and operation team is located in China)
(2) Purpose and type of data transmission
The purposes of cross-border data transmission include:
Based on FOTA upgrade verification test, The IMEI/SN needs to be remotely accessed across borders
(3) Data Assurance Mechanism
In accordance with Section 46 of the GDPR, we will take one or more of the following appropriate safeguards to ensure the security of your personal data during transmission:
Sign the Standard Contractual Clauses (SCC) with the data receiver.
Take technical protection measures such as encryption and data minimization.
The receiver is required to sign the Data Processing Agreement (DPA) and accept data access restrictions.
If you would like more information about these safeguards or to view a copy of the standard contract terms used by us, please send an email to DataPrivacy@zte.com.cn. to contact us.
(4) Your Rights
Even if your data is transferred to a country outside the EU, you still have all rights under the GDPR. For details, refer to "2. Additional Information on Your Rights Regarding Personal Data" in this chapter.
Ⅷ. Notice to California Consumers
California consumers have the privacy rights listed below. The rights listed below under the California Consumer Privacy Act and Shine the Light are not the same. To exercise your rights, you will need to follow the directions below that are specific to each law.
California Consumer Privacy Act (“CCPA”)
Please note that the CCPA provides certain exceptions with respect to the Personal Information that we collect in connection with providing products or services to other businesses. Similarly, it does not apply to information we collect in the context of a person’s role as a job applicant, employee or contractor of ZTE. With respect to the Personal Information collected in connection with the above individuals or circumstances, you may not have any or all of the privacy rights listed below.
Collection, Use and Disclosure of Personal Information in the Past 12 Months
The CCPA requires that we make certain disclosures about our general collection, use and disclosure of Personal Information over the past 12 months. Accordingly, in the past 12 months:
You have the right to request to know more specific disclosures about your personal information as detailed under “Request to Know” below.
California Privacy Rights
You have the following privacy rights under the CCPA:
You may exercise your right to request to know twice a year, free of charge. If we are unable to fulfill your request to know, we will let you know the reason why. Please note, in response to a request to know, we are prohibited from disclosing your Social Security number, driver’s license number or other government-issued identification number, financial account number, any health insurance or medical identification number, an account password, security questions or answers, unique biometric data generated from measurements or technical analysis of human characteristics.
To make a request to know or a request to delete, contact us at 001-877-817-1759 or send an e-mail to DataPrivacy@zte.com.cn. If you are an authorized agent making a request on behalf of a California resident, contact us at 001-877-817-1759 or send an e-mail to DataPrivacy@zte.com.cn.
To opt-out of the sale of your Personal Information, contact us at 001-877-817-1759 or send an e-mail to DataPrivacy@zte.com.cn. If you are an authorized agent making a request on behalf of a California resident, contact us at 001-877-817-1759 or send an e-mail to DataPrivacy@zte.com.cn.
We will take steps to verify your identity before processing your request to know or request to delete. We will not fulfill your request unless you have provided sufficient information for us to reasonably verify you are the individual about whom we collected Personal Information. If you have an account with us, we will use our existing account authentication practices to verify your identity. If you do not have an account with us, we may request additional information about you so that we can verify your identity. We will only use the Personal Information you provide to verify your identity and to process your request, unless you initially provided the information for another purpose.
You may use an authorized agent to submit a request to know or a request to delete. When we verify your agent’s request, we may verify both your and your agent’s identity and request a signed document from you that authorizes your agent to make the request on your behalf. To protect your Personal Information, we reserve the right to deny a request from an agent that does not submit proof that they have been authorized by you to act on your behalf.
Shine the Light
California consumers may also request information from us once per calendar year about any Personal Information shared with third parties for the third party’s own direct marketing purposes, including the categories of information and the names and addresses of those businesses with which we have shared such information. To request this information, please send an e-mail to DataPrivacy@zte.com.cn or contact us at 001-877-817-1759. Your inquiry must specify “Shine the Light Request” in the subject line of the email or the first line of the letter, and include your name, street address, city, state and ZIP code.
Ⅸ. How to update this policy
Our privacy policy may change.
Without your express consent, we will not reduce your rights under this privacy policy.
We will release any changes to this policy on this page. For major changes, we will also provide more noticeable notifications (including notifications for some services, which will be sent via email to describe the specific changes in the privacy policy).
Major changes mentioned in this policy include but are not limited to the following situations:
We will also archive the old version of this policy for your reference.
Ⅹ. Contact us
We have established a special personal information protection department – Data Compliance Dept.. If you have any questions, comments, or suggestions on this privacy policy, please feel free to send an email to us at DataPrivacy@zte.com.cn, which will be replied within at the appropriate time.
In addition, you can send letters to the Data Compliance Dept. of ZTE headquarters.
To: Data Compliance Dept. of ZTE Corporation
Address: 26/F, R&D Building, No. 55, Hi-Tech Road South, Shenzhen, China (Post Code: 518057)
If you are unsatisfied with our response, especially when our personal information processing activities have damaged your legal rights and interests, you can seek solutions through the local data protection agency.
For contact information about personal information supervisory authority in other areas, you can consult the local government. For the contact information of the European Union data protection agency, please refer to: https://ec.europa.eu/justice/article-29/structure/data-protection-authorities/index_en.htm

