1. Who controls your data
Pinoypreneur Trading FZC LLC (trade licence: 4430195.01) acts as controller for the processing described here. Address: Business Centre, Sharjah Publishing City Free Zone, Sharjah, United Arab Emirates. Privacy enquiries may be sent to info@indomarketuae.com.
2. Data we collect
- Identity and contact data: name, WhatsApp number, email, delivery address, and location instructions.
- Transaction data: items, quantities, value, payment method and status, order notes, invoices, delivery, returns, and service communications.
- Account data: customer number, password hash, order history, loyalty points, and wishlist.
- Technical and security data: IP address, access time, user agent, sessions, security logs, login attempts, and administrative audit records.
- Preferences: language, theme, cart, guest wishlist, and notification choices stored through cookies, sessions, or browser storage.
- Communication data: WhatsApp/email messages, enquiries, complaints, damage evidence, and survey responses where applicable.
3. Purposes and grounds for processing
We process data only for clear purposes and use an appropriate ground, including performance of a contract, steps before a contract, legal obligations, protection of legitimate interests and security, or consent where required.
- Receive, confirm, prepare, deliver, charge for, and track orders.
- Manage accounts, wishlists, invoices, loyalty points, returns, warranty, and customer service.
- Prevent fraud, abuse, attacks, unauthorised access, and protect system integrity.
- Meet accounting, tax, consumer, product-recall, and lawful-authority obligations.
- Use proportionate website analytics to improve catalogue, stock, and user experience.
- Send marketing only with consent or where lawfully permitted, with a clear opt-out.
4. WhatsApp and communications
A WhatsApp number is required at checkout for confirmation and follow-up. When you communicate through WhatsApp, message data is also processed by the WhatsApp service provider under its own terms. Avoid sending unnecessary sensitive information.
5. Recipients of data
We do not sell personal data. We may share the minimum necessary data with hosting and technology providers, couriers, payment providers, communication services, suppliers handling warranty claims, professional advisers, and authorities with a lawful basis.
Service providers may use the data only for agreed tasks and are expected to apply appropriate safeguards.
6. Cross-border transfers
Some technology or communication providers may process data outside the UAE. Where a cross-border transfer occurs, we will use mechanisms and safeguards appropriate under applicable law, such as an adequate-protection jurisdiction or relevant contractual and technical arrangements.
7. Retention and deletion
We keep data only as long as needed for processing purposes, order and claim resolution, security, and legal, tax, accounting, and evidentiary obligations. Different data types may have different periods.
Guest sessions and browser preferences may expire sooner. Data no longer needed is deleted, anonymised, or access-restricted unless retention is required by law or for legal claims.
8. Cookies, sessions, and browser storage
The website uses necessary cookies/sessions for login security, CSRF protection, language, cart, wishlist, and checkout. Browser storage may retain theme, scroll position, and notification preferences. Disabling essential functions can prevent parts of the service from working.
The base project does not deploy third-party advertising cookies. If analytics or advertising integrations are added later, this policy and the consent mechanism must be updated before use.
9. Security and incidents
We use reasonable technical and organisational measures including access controls, password hashing, random tokens, input validation, CSRF protection, audit logs, backups, and system updates. No system is entirely risk-free.
If a data breach creates a relevant risk to privacy or security, we will assess it and notify the parties required by law.
10. Your rights
Subject to applicable law and exceptions, you may request information about processing, access, correction, completion, portability, deletion, restriction, stopping certain processing, withdrawal of consent, or objection to direct marketing.
We may verify identity before responding. Some data cannot be deleted immediately where needed for transactions, safety, legal obligations, or defence of claims.
11. Children
The service is not intended for children to transact independently. Users under 18 should involve a parent or guardian. Do not submit a childβs data unless genuinely necessary for delivery or service.
12. Privacy requests and complaints
Send requests to info@indomarketuae.com with the subject βPrivacy Requestβ. Describe the right and relevant data. You may also complain to the competent data-protection authority where available and applicable.
Account deletion requests can also be submitted through the Delete Account page on the website or application.
13. Policy changes
We may update this policy when services, providers, or legal requirements change. Material updates will carry a new date and, where required, additional notice.
Questions about this policy?
Contact the store before placing an order if any term is unclear.
Contact us
