Privacy Policy
Privacy Policy
This Privacy Policy explains how NICENIC INTERNATIONAL GROUP CO., LIMITED ("NiceNIC", "we", "us") collects, uses, discloses, stores, and protects personal data when you use nicenic.com, a NiceNIC account, or services including domain registration, reseller/API services, email, hosting/server services, SSL, Buy Now domains, and AI-enabled features.
1. Who We Are
NiceNIC is a company established in Hong Kong and an ICANN-accredited domain-name registrar.
Contact address:
Room 52, 12/F, Block B, Wing Chai Industrial Building, 27-29 Ng Fong Street, San Po Kong, Hong Kong.
Privacy requests may be submitted through NiceNIC's Contact Us page, support-ticket system, or the support contact published on nicenic.com.
2. Scope and Applicable Law
NiceNIC processes personal data in accordance with applicable law, including the Hong Kong Personal Data (Privacy) Ordinance ("PDPO"), and where applicable to a particular individual or processing activity, other data-protection laws such as the EU/EEA GDPR or other mandatory local privacy requirements.
Domain Registration Data is also processed in accordance with applicable ICANN policies and registry requirements.
3. Personal Data We Collect
Depending on the service, we may collect:
Account and identity information
name;
organization;
postal address;
country/region;
telephone number;
email address;
account username or ID;
identity or eligibility documentation where required for fraud prevention, registry eligibility, sanctions/legal compliance, payment review, or account recovery.
Domain Registration Data
Registered Name Holder data required by applicable ICANN or registry policy;
optional or registry-required technical/other contact data;
registrant-organization information;
domain, nameserver, DNSSEC, status, transfer, and registry transaction data;
verification and registration-history records.
Payment and transaction information
billing information;
payment method and transaction identifiers;
account-credit activity;
invoices, refunds, chargebacks, and fraud indicators. Payment-card details may be processed directly by payment providers rather than stored in full by NiceNIC.
Technical and security data
IP address;
browser/device information;
login records;
cookies and similar identifiers;
2FA/security events;
API calls;
fraud and abuse signals;
service and system logs.
Communications and support
support tickets;
emails and chat communications;
files or evidence you submit;
call or communication metadata where applicable.
Service content
email or hosted content only to the extent necessary to provide, secure, support, or lawfully administer those services;
AI prompts/input and output where AI features are used, subject to the AI Terms of Use.
4. Why We Use Personal Data
We may process personal data to:
create and secure accounts;
register, renew, transfer, restore, and manage domain names;
satisfy ICANN, registry, escrow, verification, and dispute-policy requirements;
provide reseller/API, DNS, privacy/proxy, email, hosting/server, SSL, Buy Now, AI, and support services;
process payments, account credit, refunds, taxes, and chargebacks;
prevent fraud, abuse, DNS Abuse, unauthorized access, and security incidents;
verify identity, eligibility, or authority where necessary;
communicate service, renewal, expiration, transfer, verification, abuse, security, and legal notices;
respond to lawful registration-data disclosure requests;
comply with law, court orders, regulatory obligations, ICANN and registry requirements;
establish, exercise, or defend legal claims;
improve reliability, usability, support, and security;
measure website/service performance; and
send marketing where permitted by applicable law and the user's preferences.
We do not require consent where another lawful basis applies. Where applicable law requires consent, we will seek it in the required form.
5. Domain Registration Data and RDDS
NiceNIC collects and processes Registration Data required by applicable ICANN policy and registry rules.
Public Registration Data output through RDDS, including RDAP or WHOIS where applicable, is provided in accordance with the ICANN Registration Data Policy, applicable law, and registry requirements.
Where redaction is required or applied under the ICANN Registration Data Policy:
applicable personal data fields may be shown as redacted rather than publicly disclosed;
NiceNIC will provide the required method to facilitate contact with the Registered Name Holder without exposing the underlying email address; and
where required by policy, NiceNIC will provide the Registered Name Holder an opportunity to consent to publication of eligible data fields.
A request for non-public Registration Data is handled under NiceNIC's Request for Disclosure of Nonpublic Registration Data policy.
6. Registrant Organization
Where a registrant provides an organization value, NiceNIC may request confirmation regarding accuracy and publication as required by the ICANN Registration Data Policy.
Where the organization value is published following the Registered Name Holder's agreement, it may be treated in accordance with the applicable ICANN policy.
7. Who We Share Data With
We may disclose personal data to the extent necessary to:
registries and registry service providers for domain registration and lifecycle transactions;
ICANN and ICANN-authorized service providers where required by the Registrar Accreditation Agreement or Consensus Policies;
data escrow providers as required by ICANN or registry rules;
resellers where the customer obtains services through a reseller or where necessary to administer that relationship;
payment processors, banks, and fraud-prevention providers ;
hosting, network, email, SSL, software, cloud, customer-support, analytics, security, and AI service providers ;
professional advisers, auditors, insurers, and corporate transaction counterparties under appropriate confidentiality protections;
dispute-resolution providers for UDRP, URS, ccTLD, transfer, or other applicable domain disputes;
courts, regulators, law-enforcement bodies, governmental authorities, or other requesters where disclosure is required or permitted by law or is approved under NiceNIC's registration-data disclosure process; and
a successor or purchaser in a merger, reorganization, financing, sale of business/assets, or similar transaction, subject to applicable privacy requirements.
NiceNIC does not sell personal data to third-party advertisers.
8. International Transfers
NiceNIC serves customers internationally and uses registries, ICANN systems, service providers, data centers, payment providers, and other processors located in multiple countries.
Personal data may therefore be transferred outside the country in which it was collected.
Where applicable law requires cross-border safeguards, NiceNIC will use appropriate contractual, technical, organizational, consent-based, or other legally recognized measures.
9. Marketing
Service messages necessary to operate an account or domain—such as security, verification, renewal, expiration, transfer, dispute, registry, or compliance notices—are not marketing opt-in messages and may continue while relevant.
Marketing communications will be sent in accordance with applicable law. Where consent is required, NiceNIC will obtain the required consent or indication of no objection. Users may opt out of marketing without losing necessary service communications.
NiceNIC will not provide personal data to another party for that party's direct marketing where prohibited by law or without required consent.
10. Cookies and Analytics
NiceNIC uses cookies and similar technologies for authentication, account security, preferences, fraud prevention, site functionality, analytics, and where applicable marketing.
Where legally required, non-essential cookies will be used based on the required consent or choice mechanism.
Blocking essential cookies may prevent account or checkout functions from working correctly.
11. Data Retention
NiceNIC retains personal data for no longer than reasonably necessary for the purpose for which it is processed, except where a longer period is required or permitted by law, ICANN policy, registry rules, taxation/accounting obligations, security, fraud prevention, dispute resolution, or legal claims.
For ICANN-governed Registration Data, NiceNIC retains the data elements necessary for Transfer Dispute Resolution Policy purposes for at least the period required by the ICANN Registration Data Policy, including the applicable minimum period after NiceNIC's sponsorship ends or after a change of registrant.
Different service records may have different retention periods.
12. Security
NiceNIC uses reasonable technical, administrative, and organizational measures designed to protect personal data against unauthorized or accidental access, processing, erasure, loss, use, modification, or disclosure.
No internet or storage system is completely secure. Users are responsible for protecting passwords, 2FA credentials, API keys, and recovery information.
13. Your Rights and Choices
Depending on applicable law and the context, you may have rights to:
request access to personal data;
request correction of inaccurate data;
object to or restrict certain processing;
withdraw consent where processing is based on consent;
request deletion where legally available;
opt out of direct marketing; or
exercise other rights provided by applicable law.
Domain Registration Data may need to be retained, transferred, or processed notwithstanding a deletion request where required by ICANN, registry rules, law, dispute proceedings, fraud/security needs, or legal claims.
Identity verification may be required before fulfilling a privacy request.
14. Data About Other People
If you provide personal data relating to another individual, you represent that you are authorized to provide it and have given the person any notice or obtained any consent required by applicable law.
15. Children
NiceNIC services are intended for persons who have legal capacity to enter into the applicable service agreement. NiceNIC does not knowingly invite children to create accounts independently where they lack such legal capacity.
16. Changes to this Privacy Policy
NiceNIC may update this Privacy Policy to reflect changes in law, ICANN or registry requirements, technology, or services.
Material changes will be identified by an updated date and, where required by law, additional notice or consent will be provided.
17. Language
Translations may be provided for convenience. The English version controls to the extent permitted by applicable law.