Privacy Policy
Effective date: January 2025
WHO WE ARE
https://bhebylon.store (the ‘Site’) is owned and operated by Bhebylon.store. Bhebylon.store is a registered company with the BRN C22192763. Bhebylon.store is situated in Mauritius.
PURPOSE
The purpose of this privacy policy (this ‘Privacy Policy’) is to inform users of our Site of the following:
- The personal data we will collect;
- Use of collected data;
- Who has access to the data collected;
- The rights of Site users; and the Site’s cookie policy.
This Privacy Policy applies in addition to the Terms and Conditions of our Site.
CONSENT
By using our Site users agree that they consent to:
- The conditions set out in this Privacy Policy; and
- The collection, use and retention of the data listed in this Privacy Policy.
PERSONAL DATA WE COLLECT
We only collect data that helps us achieve the purpose set out in this Privacy Policy. We will not collect any additional data beyond the data listed below without notifying you first.
DATA COLLECTED AUTOMATICALLY
When you visit and use our Site, we may automatically collect and store the following information:
- Products you’ve viewed;
- Location, IP address and browser type.
DATA COLLECTED IN A NON-AUTOMATIC WAY
We may also collect the following data when you perform certain functions on our Site:
- First and last name;
- Username;
- Date of birth;
- Email address;
- Phone number;
- Address;
- Billing address;
- Shipping address; and
- Credit card / Payment information.
This data may be collected using the following methods:
- Submitting forms for user registration, login and profiles;
- Creating an account;
- Subscribing to newsletter; and
- Making a purchase.
HOW WE USE PERSONAL DATA
Data collected on our Site will only be used for the purposes specified in this Privacy Policy or indicated on the relevant pages of our Site. We will not use your data beyond what we disclose in this Privacy Policy.
The data we collect automatically is used for the following purposes:
- To show you products you’ve recently viewed;
- To fulfill orders;
- For purposes such as estimating taxes and shipping;
- Statistics; and
- Important communique.
The data we collect when the user performs certain functions may be used for the following purposes:
- Communication;
- Processing payment;
- Delivery; and
- Email marketing.
COMMENTS
Comments can only be left by registered customers. When registered customers leave comments on the Site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymised string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to registered customers in the context of your comment.
MEDIA
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
COOKIES
Our website uses cookies to enhance your browsing experience, analyse site traffic, and provide personalised content. Cookies are small files stored on your device that help us understand your preferences and improve our services.
For more detailed information about how we use cookies, refer to our Cookie Policy.
WHO WE SHARE PERSONAL DATA WITH
Members
We may disclose user data to any member of our organisation who reasonably needs access to user data to achieve the purpose set out in this Privacy Policy.
Members of our organisation have access to the information you provide us. Members can access order information like what was purchased, when it was purchased, and where it should be sent, and Customer information like your name, your email address and billing and shipping information.
Members of our organisation have access to this information to help fulfil orders and support you.
Third parties
We may share user data with the following third parties:
- Vendors;
- Post offices;
- Banks;
- Payment processors; and
- Marketing agency.
We may share the following user data with third parties:
- Orders related information; and
- Payment related information.
We may share user data with third parties for the following purposes:
- Fulfil orders; and
- Targeted advertising.
Third parties will not be able to access user data beyond what is reasonable necessary to achieve the given purpose.
PAYMENTS
We accept payments through Bank Transfer, MCB Juice and Credit Card. When processing payments, some of your data will be passed, including information required to process or support payment, such as the purchase total and billing information.
OTHER DISCLOSURES
We will not sell or share your data with other third parties, except in the following cases:
- If the law requires it;
- If it is required for any legal proceeding;
- To prove or protect our legal rights; and
- To buyers or potential buyers of this company in the event that we seek to sell the company.
If you follow hyperlinks from our Site to another Site, please note that we are not responsible for and have no control over their privacy policies and practices.
HOW LONG WE STORE PERSONAL DATA
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see and edit their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
Registered user information is retained in our Site’s database indefinitely unless you decide to delete your account.
If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognise and approve any follow-up comments automatically instead of holding them in a moderation queue.
We since data with a 3rd party service when user subscribe to our newsletter. This data is retained there until unsubscribed or deleted.
WHAT RIGHTS YOU HAVE OVER YOUR DATA
If you have an account on this Site, or have left comments, you can request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
WHERE YOUR DATA IS SENT
We use the services of third parties for the purpose of email marketing. User data may be passed to these external services.
HOW WE PROTECT YOUR PERSONAL DATA
In order to protect your security, we use the strongest available browser encryption and store all of your data on servers in secure facilities. All data is only accessible to our employees. Our employees are bound by strict confidentiality agreements and a breach of this agreement would result in the employee’s termination.
While we take all reasonable precautions to ensure that user data is secure and that users are protected, there always remains the risk of harm. The Internet as a whole can be insecure at times and therefore we are unable to guarantee the security of user data beyond what is reasonably practical.
CHILDREN
The minimum age to use our Site is 18 years of age. We do not knowingly collect or use personal data from children under 13 years of age. If we learn that we have collected personal data from a child under 13 years of age, the personal data will be deleted as soon as possible. If a child under 13 years of age has provided us with the personal data their parent or guardian may contact us at team@bhebylon.store.
HOW TO OPT-OUT OF DATA COLLECTION, USE OR DISCLOSURE
To opt-out of any data collection, use or disclosure you can delete your account from our Site.
To opt-out of the use of your personal data for marketing emails, you can click “unsubscribe” on the bottom of an email for marketing purposes.
WHAT DATA BREACH PROCEDURES WE HAVE IN PLACE
Identify and contain the breach
We will detect the breach and determine what data has been compromised. We will stop further unauthorized access for example disconnect affected systems, reset passwords etc.
Assess the impact
We will determine the type and extent of the breach for example personal, financial or confidential data. We will assess the potential risks to affected individuals or the organization.
Report the breach
We will notify internal security teams or incident response teams. If legally required, we will report the breach to regulators.
Notify affected parties
We will inform customers, employees and stakeholders whose data was compromised. We will provide guidance on protective measures.
Investigate and mitigate further risks
We will conduct a forensic investigation to determine the cause. We will implement security patches or improvements to prevent future breaches.
Review and improve security measures
We will update policies, training and security protocols. We will conduct post-incident analysis to strengthen defense.
MODIFICATIONS
This Privacy Policy may be amended from time to time in order to maintain compliance with the law and to reflect any changes to our data collection process. When we amend this Privacy Policy we will update the “Effective Date” at the top of this Privacy Policy. We recommend that our users periodically review our Privacy Policy to ensure that they are notified of of any updates. If necessary, we may notify users by email of changes to this Privacy Policy.
CONTACT INFORMATION
If you have any questions, concerns or complaints, you can contact us through our contact form at https://bhebylon.store/contact-form