ZONGDE Official Foreign-Trade Website
Chapter 01
Overview
The official B2B foreign-trade website of 浙江众德宠物用品有限公司 (Zhejiang Zongde Pet Products Co., Ltd.; ZONGDE), aimed at overseas pet product importers, wholesalers and private-label customers. It provides, in English, Spanish and Chinese, the product catalog, OEM private labeling, factory, materials and technical documentation, sample requests and inquiry entry points, with a Chinese-language admin console.
Chapter 02
Screenshots
06 images
Chapter 03 07 items
My work
-
Independently responsible for requirements research, information architecture, UI design, front-end and back-end development, launch and operations.
-
Chinese-language admin console: trilingual product copy, specifications, images, SEO titles and descriptions, and review and publishing; certificates and technical documents, factory photos and videos, sales channel links and procurement resource articles; viewing inquiry leads and product view statistics. Only SKUs that have been manually reviewed are made public.
-
SEO / GEO: per-language canonical / hreflang output, a dynamic sitemap, JSON-LD structured data and llms.txt; separate AI crawler rules for search and for training use; IndexNow integration. After launch in August 2026, issues were fixed day by day based on the findings of Google Search Console and Bing Webmaster; all 63 public pages on the site have a unique title, a single H1, a self-referencing canonical and 4 hreflang tags (English / Spanish / Chinese + x-default).
-
Security: admin passwords are salted and hashed; session signatures are bound to the password (old sessions become invalid after a password change), and every admin action re-verifies identity; public write endpoints are strictly validated, request bodies are limited, and sensitive information such as payment and ID document details is blocked; login, inquiry and similar endpoints are rate-limited by source IP, and the real visitor can still be identified when traffic passes through Cloudflare; uploaded files are checked for extension, type and file header; security response headers and HSTS across the whole site.
-
Privacy-protecting design: no third-party analytics scripts are loaded, and the self-built product analytics only report after the visitor consents; access to uploaded materials such as certificates and factory videos, and to product images, is controlled by publication status, and they cannot be accessed once taken down.
-
Developed an AI inquiry assistant (DeepSeek API): product recommendations, customer profiling, handoff to a human, and prompt-injection protection, combined with pgvector vector search.
-
Docker multi-stage builds running as non-root, Nginx reverse proxy, end-to-end HTTPS through Cloudflare, automatic certificate renewal; each release uses a new image version and switches over after the health check passes, with the previous version kept for rollback.
Chapter 04 10 items
Tech stack
- Next.js 16
- React 19
- TypeScript
- Tailwind CSS 4
- Prisma
- PostgreSQL 16
- pgvector
- Docker
- Nginx
- Cloudflare