Privacy Policy
8COM Beauty – Privacy Policy (GCC & MENA)
1. Background
At 8COM Beauty, we respect your privacy and are committed to protecting your personal data. We process data in a lawful, transparent, and secure manner in line with applicable data protection laws, including (where applicable):
- UK GDPR / EU GDPR
- Saudi Personal Data Protection Law (PDPL)
- Other applicable privacy and data protection laws across GCC and MENA destinations
This Privacy Policy applies when you visit or use our website, create an account, place an order, contact us, or interact with our services.
This policy should be read together with the following resources:
- Terms & Conditions
- Shipping Policy
- Returns & Refunds Policy
- Cosmetics Warranty Policy
- Cookie Policy (or the Cookies section within this policy)
2. Definitions
- Account: Your registered profile on 8COM Beauty.
- Cookies: Small text files stored on your device when you visit our website, used to improve performance and user experience.
- Personal Data: Any information that identifies you directly or indirectly (e.g., name, phone number, email, device identifiers, IP address).
3. About 8COM Beauty (Data Controller)
- Brand / Store name: 8COM Beauty
- Business nature: Online retail store for cosmetics and beauty products
- Operations / fulfilment: May include fulfilment from the UK and/or EU, and delivery to GCC & MENA destinations
- Privacy contact (Data Protection): legal@8combeauty.com
- Customer support: support@8combeauty.com
If you publish a legal entity name, registration number, and official address, add them here.
4. Scope of This Policy
This Privacy Policy covers:
- Website browsing and account usage
- Checkout, payment processing, and order fulfilment
- Shipping, delivery, returns, and warranty support
- Customer support communications
- Marketing communications (where you opt-in)
- Cookies, analytics, and website security
5. What Personal Data We Collect
Depending on how you use our Store, we may collect:
A) Identity & Contact Data
- Full name
- Email address
- Phone number
- Shipping and billing address
B) Order & Transaction Data
- Products purchased, order history, preferences
- Invoices and transaction references
- Payment status and confirmations
We do not store full card details. Payments are processed by authorized payment providers.
C) Technical Data
- IP address
- Device type, browser type, operating system
- Cookies and similar technologies
- Log data (date/time, pages viewed, error logs)
D) Customer Support Data
- Messages you send us (email, forms, chat)
- Attachments or evidence you provide for issues (e.g., damaged item photos)
E) Third-Party Data
We may receive limited data from:
- Payment providers (payment confirmation, transaction reference)
- Shipping carriers (delivery status, tracking updates)
- Fraud prevention and security services (risk signals)
6. How We Use Your Data (Purposes & Legal Bases)
We use your data for:
|
Purpose |
Legal Basis (as applicable) |
|
Create/manage your account |
Contract performance |
|
Process orders, fulfilment, delivery |
Contract performance / Legitimate interests |
|
Payments, invoicing, tax compliance |
Legal obligation / Contract performance |
|
Customer support, complaints, warranty/returns |
Contract performance / Legitimate interests |
|
Fraud prevention and security |
Legal obligation / Legitimate interests |
|
Improve website performance and user experience |
Legitimate interests |
|
Marketing messages (email/SMS) |
Consent (opt-in) |
7. Your Rights
Depending on your location and applicable laws (UK/EU GDPR, PDPL, and local laws), you may have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion (where allowed)
- Restrict or object to certain processing
- Withdraw consent at any time (for marketing)
- Request a copy of your data (data portability, where applicable)
- Not be subject to purely automated decisions (where applicable)
To submit a request, contact: support@8combeauty.com or legal@8combeauty.com.
We aim to respond within 30 days, subject to verification and legal limits.
8. Data Storage, Security & International Transfers
Storage locations may include secure servers in the UK and/or EU and/or KSA / and/or Egypt and trusted cloud providers used for ecommerce operations.
Security measures include:
- SSL/TLS encryption
- Access controls and role-based permissions
- Fraud detection and security monitoring
- Secure service providers and contractual protections
International transfers: Because we serve GCC & MENA customers and may fulfil from UK/EU, your data may be transferred across borders where necessary for processing, shipping, payments, and support. We apply appropriate safeguards required by applicable laws.
9. Sharing Data with Third Parties
We share personal data only when necessary for operations, including with:
- Shipping carriers and logistics partners (labels, delivery, tracking)
- Payment providers (payment processing under PCI-DSS standards)
- Technology providers (hosting, email/SMS, analytics, security, customer support tools)
- Authorities (when required by law or valid legal requests)
We do not sell your personal data.
10. Marketing Preferences
You can opt out of marketing communications at any time by:
- Clicking “unsubscribe” in marketing emails
- Adjusting preferences in your account (if available)
- Contacting support
Service-related messages (order confirmations, shipping updates) are not marketing and may still be sent.
11. Cookies & Similar Technologies
We use cookies for:
- Essential website functions (security, checkout, session)
- Performance and analytics (to improve the Store)
- Marketing cookies (only where you choose/consent)
You can manage cookies through:
- Website cookie banner (if enabled)
- Your browser settings
12. Data Retention
We keep personal data only as long as needed for:
- order fulfilment and customer support
- legal, tax, and accounting obligations
- fraud prevention and dispute handling
Retention periods may vary depending on applicable laws in the UK/EU and your destination country.
13. Children’s Privacy
Our Store is not intended for children where local law requires parental consent. If you believe a child has provided data, contact us to review and remove it where appropriate.
14. Updates to This Policy
We may update this Privacy Policy to reflect legal or operational changes. Updates will be posted on our website, and significant changes may be notified by email or website notice. Continued use after the effective date indicates acceptance of the updated policy.