ATHAR Scents ("we", "us") is committed to protecting your privacy. This policy explains what personal data we collect, why, and how we use and share it. We operate this Shopify store and comply with Egyptian laws and global best practices (e.g. GDPR principles and Egypt's PDPL Law No. 151/2020). By visiting or purchasing, you agree to this policy.
2.1. Information We Collect
Personal Data You Provide: name, email, shipping address, billing address, phone number, payment information (handled securely by our payment processor), and any other data you enter when creating an account or placing an order.
Transactional Data: order details, payment receipts, and communication logs (support requests, emails).
Device & Usage Data: We use cookies and similar tech to collect your IP address, device/browser info, pages visited, and referral data (e.g. how you found our site).
Cookies: We use essential cookies (to operate the store) and non-essential cookies (for analytics and marketing). You can control non-essential cookies via our cookie banner or browser settings.
2.2. How We Use Your Data
Order Fulfillment: Your data is used to process and ship orders (name, address, payment info, etc.).
Communications: We send order confirmations, shipping updates, and customer service responses.
Marketing: With your consent, we send promotional emails (newsletters, offers). See 2.6 Email Marketing & Consent below.
Analytics & Improvement: We analyze usage data (via Shopify Analytics, Google Analytics, etc.) to improve our website and services.
Legal Compliance: We use data to comply with legal obligations (tax, accounting) and prevent fraud (e.g. payment verification).
2.3. Lawful Basis for Processing
Under Egyptian law and similar privacy laws, we process your data based on:
- Contract: Necessary for order processing and service provision.
- Consent: When you opt-in for newsletters or marketing. You can withdraw consent anytime (e.g. unsubscribe link in emails).
- Legitimate Interests: For fraud prevention, security, analytics, and direct marketing (only as permitted by law).
- Legal Obligation: To comply with tax or commercial laws.
2.4. Shopify and Third-Party Processors
Shopify: We use Shopify to manage our store and data. Shopify's own privacy policy governs how Shopify handles data on our behalf.
Payment Providers: Stripe/PayPal/Fawry (or local gateways) process your payment info, but we never see your full card numbers.
Shipping Partners: Bosta receives only name/address/phone for delivery.
Marketing/Analytics: We may use third-party tools (e.g. Google Analytics, Facebook Pixel, Mailchimp) to analyze traffic or send emails. These services have their own privacy policies. When they process data on our behalf, we remain responsible for compliance.
Data Sharing: We do NOT sell your personal data. We only share it with service providers needed to fulfill our services (payment gateways, shipping, law enforcement if required).
2.5. Cookies and Tracking
Our site uses cookies. A cookie banner notifies visitors and requests consent for non-essential cookies. We use cookies to remember your preferences and track site usage. You can change cookie settings in the banner or your browser anytime.
2.6. Email Marketing & Consent
You will not receive marketing emails unless you explicitly opt-in (e.g. at checkout or newsletter sign-up). You can unsubscribe at any time via the link in our emails or by contacting us. Once unsubscribed, we will stop promotional emails. Order-related emails (receipts, shipping notices) will still go out as needed.
2.7. Data Retention and Security
We retain your personal data only as long as needed to fulfill orders and legal requirements (e.g. 5–7 years for accounting). Account data remains unless you request deletion. You can delete your account via your account settings or by contacting us.
We implement appropriate security measures (SSL/TLS encryption, secure payment gateways, limited access) to protect your data, but no online service can be 100% secure. We strive to use industry-standard practices.
2.8. Your Rights (Subject Access)
Under Egypt's PDPL and similar regulations, you have rights regarding your personal data:
- Access & Portability: You can request a copy of your data.
- Correction: You can ask us to correct or update inaccurate data.
- Deletion: You can request we delete your data (subject to legal retention requirements).
- Withdrawal & Restriction: You can withdraw consent for marketing or ask us to stop processing.
- Object: You can object to certain processing (e.g. automated marketing).
To exercise any right, contact us using the details below. We will respond within a reasonable time as required by law. Note: Some data (like transaction records) may need to be retained for legal reasons.
2.9. Children's Privacy
Our site is intended for users 18+. We do not knowingly collect personal data from children under 13 (or the local age of consent). If we learn we have, we will delete it. Parents should supervise children's online activity.
2.10. International Transfers
We operate in Egypt; however, some data may be stored or processed outside Egypt (e.g. on Shopify's servers in the US, EU). In such cases, we ensure compliance with legal requirements (e.g. appropriate safeguards). By using our service, you consent to this transfer.
2.11. Policy Updates
We may update this Privacy Policy to reflect legal or business changes. The latest version will be on our website with the updated date. Significant changes will be communicated (e.g. email notification). Your continued use after changes means you accept them.
2.12. Contact & Data Questions
For questions about this policy or your data, please contact:
- Email: care@atharscents.com
- Phone: +20-11 28217222 (Egypt)
Our Data Protection Officer (DPO) is reachable via the above contact details for any privacy concerns.