Privacy Policy

8COM Beauty – Privacy Policy (GCC & MENA)

1. Background

At 8COM Beauty, we respect your privacy and are committed to protecting your personal data. We process data in a lawful, transparent, and secure manner in line with applicable data protection laws, including (where applicable):

  • UK GDPR / EU GDPR
  • Saudi Personal Data Protection Law (PDPL)
  • Other applicable privacy and data protection laws across GCC and MENA destinations

This Privacy Policy applies when you visit or use our website, create an account, place an order, contact us, or interact with our services.

This policy should be read together with the following resources:

  • Terms & Conditions
  • Shipping Policy
  • Returns & Refunds Policy
  • Cosmetics Warranty Policy
  • Cookie Policy (or the Cookies section within this policy)

2. Definitions

  • Account: Your registered profile on 8COM Beauty.
  • Cookies: Small text files stored on your device when you visit our website, used to improve performance and user experience.
  • Personal Data: Any information that identifies you directly or indirectly (e.g., name, phone number, email, device identifiers, IP address).

3. About 8COM Beauty (Data Controller)

  • Brand / Store name: 8COM Beauty
  • Business nature: Online retail store for cosmetics and beauty products
  • Operations / fulfilment: May include fulfilment from the UK and/or EU, and delivery to GCC & MENA destinations
  • Privacy contact (Data Protection): legal@8combeauty.com
  • Customer support: support@8combeauty.com

If you publish a legal entity name, registration number, and official address, add them here.


4. Scope of This Policy

This Privacy Policy covers:

  • Website browsing and account usage
  • Checkout, payment processing, and order fulfilment
  • Shipping, delivery, returns, and warranty support
  • Customer support communications
  • Marketing communications (where you opt-in)
  • Cookies, analytics, and website security

5. What Personal Data We Collect

Depending on how you use our Store, we may collect:

A) Identity & Contact Data

  • Full name
  • Email address
  • Phone number
  • Shipping and billing address

B) Order & Transaction Data

  • Products purchased, order history, preferences
  • Invoices and transaction references
  • Payment status and confirmations

We do not store full card details. Payments are processed by authorized payment providers.

C) Technical Data

  • IP address
  • Device type, browser type, operating system
  • Cookies and similar technologies
  • Log data (date/time, pages viewed, error logs)

D) Customer Support Data

  • Messages you send us (email, forms, chat)
  • Attachments or evidence you provide for issues (e.g., damaged item photos)

E) Third-Party Data
We may receive limited data from:

  • Payment providers (payment confirmation, transaction reference)
  • Shipping carriers (delivery status, tracking updates)
  • Fraud prevention and security services (risk signals)

6. How We Use Your Data (Purposes & Legal Bases)

We use your data for:

Purpose

Legal Basis (as applicable)

Create/manage your account

Contract performance

Process orders, fulfilment, delivery

Contract performance / Legitimate interests

Payments, invoicing, tax compliance

Legal obligation / Contract performance

Customer support, complaints, warranty/returns

Contract performance / Legitimate interests

Fraud prevention and security

Legal obligation / Legitimate interests

Improve website performance and user experience

Legitimate interests

Marketing messages (email/SMS)

Consent (opt-in)


7. Your Rights

Depending on your location and applicable laws (UK/EU GDPR, PDPL, and local laws), you may have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion (where allowed)
  • Restrict or object to certain processing
  • Withdraw consent at any time (for marketing)
  • Request a copy of your data (data portability, where applicable)
  • Not be subject to purely automated decisions (where applicable)

To submit a request, contact: support@8combeauty.com or legal@8combeauty.com.
We aim to respond within 30 days, subject to verification and legal limits.


8. Data Storage, Security & International Transfers

Storage locations may include secure servers in the UK and/or EU and/or KSA / and/or Egypt and trusted cloud providers used for ecommerce operations.

Security measures include:

  • SSL/TLS encryption
  • Access controls and role-based permissions
  • Fraud detection and security monitoring
  • Secure service providers and contractual protections

International transfers: Because we serve GCC & MENA customers and may fulfil from UK/EU, your data may be transferred across borders where necessary for processing, shipping, payments, and support. We apply appropriate safeguards required by applicable laws.


9. Sharing Data with Third Parties

We share personal data only when necessary for operations, including with:

  • Shipping carriers and logistics partners (labels, delivery, tracking)
  • Payment providers (payment processing under PCI-DSS standards)
  • Technology providers (hosting, email/SMS, analytics, security, customer support tools)
  • Authorities (when required by law or valid legal requests)

We do not sell your personal data.


10. Marketing Preferences

You can opt out of marketing communications at any time by:

  • Clicking “unsubscribe” in marketing emails
  • Adjusting preferences in your account (if available)
  • Contacting support

Service-related messages (order confirmations, shipping updates) are not marketing and may still be sent.


11. Cookies & Similar Technologies

We use cookies for:

  • Essential website functions (security, checkout, session)
  • Performance and analytics (to improve the Store)
  • Marketing cookies (only where you choose/consent)

You can manage cookies through:

  • Website cookie banner (if enabled)
  • Your browser settings

12. Data Retention

We keep personal data only as long as needed for:

  • order fulfilment and customer support
  • legal, tax, and accounting obligations
  • fraud prevention and dispute handling

Retention periods may vary depending on applicable laws in the UK/EU and your destination country.


13. Children’s Privacy

Our Store is not intended for children where local law requires parental consent. If you believe a child has provided data, contact us to review and remove it where appropriate.


14. Updates to This Policy

We may update this Privacy Policy to reflect legal or operational changes. Updates will be posted on our website, and significant changes may be notified by email or website notice. Continued use after the effective date indicates acceptance of the updated policy.