Privacy Policy
Commitment
This Policy describes how a fully independent global shopping platform handles consumer personal information. We focus on necessity, transparency, and security, with a strong emphasis on protecting credit card numbers, addresses, and other sensitive information that enable safe, efficient transactions.
Data Categories
We collect identifiers (account name, username), credentials (hashed password, tokens), contact information (shipping and billing addresses, optional phone), commercial information (purchases, returns, preferences), internet activity (IP address, device, browser, referrer), and site interactions (views, clicks, cart events). Payment processors provide transaction tokens and partial card references; we do not store full card numbers or CVV codes.
Collection Practices
We collect data you share via forms and automatically via cookies, logs, and SDKs. To combat fraud, we collect device and behavioral risk signals, including mismatches between billing and shipping, and unusual ordering patterns. We avoid collecting sensitive details not required for retail operations.
Use of Data
We process personal information to create and manage accounts, process payments, fulfill orders, enable returns, prevent fraud, analyze performance, personalize product experiences, and comply with legal obligations. We apply role-based access and audit logging to ensure data is used only for appropriate purposes.
Credit Card Number Protection
Card data is entered into secure payment elements hosted by certified processors. The card number is encrypted and sent directly to the processor; our systems receive only a token, card brand, and last four digits for reference. We enforce strict network and application controls, including TLS, content security policies, firewall segmentation, and multi-factor authentication for administrative access to payment settings.
Protection of Contact Details
Addresses and phone numbers are encrypted and masked in operational views. Access is limited to roles that require it for fulfillment or support workflows. We automatically redact contact information in exports when not strictly necessary and retain only the minimum data needed for ongoing operations.
Cookies & Preferences
Essential cookies maintain sessions and checkout. Functional cookies store preferences. Analytics cookies help us measure performance and improve navigation. You can adjust cookie preferences through browser settings and available site tools; disabling certain cookies may limit features such as persistent carts.
Personalization
Recommendations are generated from browsing behavior, order history, and stock levels. We rotate identifiers and aggregate metrics to reduce identifiability, and we avoid sensitive inferences. You can reset personalization by clearing cookies or using account tools to remove history where offered.
Service Providers
We share limited personal data with providers that host our infrastructure, process payments, detect fraud, analyze performance, and deliver orders. They are contractually required to protect the data and to use it only according to our instructions. We do not sell consumer personal information.
Global Transfers
To support international operations, data may be processed in various countries. We implement contractual clauses and security controls to protect data during transfers and restrict access based on role and necessity.
Security Controls
Security measures include encryption, secure development training, code and dependency scanning, penetration tests, intrusion detection, and incident response. Production access requires strong authentication and is time-bounded and logged. Backups are encrypted and routinely tested for recovery.
Retention & Deletion
We retain personal information for as long as necessary for order processing, returns, compliance, and fraud prevention. After retention, data is deleted or de-identified. Users can remove optional fields via account settings, including saved addresses and preferences, where tools exist.
User Controls
Account settings allow you to view and edit profile data, manage saved addresses, control cookies, and deactivate your account. Deactivation triggers staged archival and deletion, leaving only records required for compliance or fraud defense.
Children
Our services are intended for a general audience. We do not knowingly collect personal information from users who cannot legally consent under local law. We remove ineligible accounts through site mechanisms.
Automated Processes
Risk evaluation systems help prevent fraud by analyzing order velocity, device reputation, and address inconsistencies. We calibrate thresholds to reduce false positives and monitor for fairness. You can improve accuracy by keeping your account and address information up to date.
External Links
Some pages may reference external services (payment gateways, shipment tracking). Their use is governed by their respective policies, which we recommend reviewing.
Policy Evolution
We refine this Policy as we enhance features and protections. When changes are significant, we highlight updates within the site so that you can review them promptly.