Privacy Policy

1. Information We Collect

When you create an account on our website, we collect personal information necessary to provide our services, including:

  • Full name

  • Email address

  • Username and password

  • Billing and shipping address (if provided)

  • Contact number (if provided)

  • Order and account activity history

Sensitive personal information is not collected during registration.


2. Purpose of Collection

Your personal data is collected and processed for the following purposes:

  • To create, manage, and secure your customer account

  • To process purchases and provide customer support

  • To communicate account-related updates and service notifications

  • To improve website functionality and user experience

  • To comply with legal, regulatory, and contractual obligations

Data is processed lawfully, fairly, and transparently in accordance with applicable data protection laws.


3. Legal Basis for Processing

We process your personal data based on one or more of the following legal grounds:

  • Consent – when you register and agree to this Privacy Policy

  • Contractual necessity – to fulfill orders and manage your account

  • Legal obligation – compliance with tax, accounting, and regulatory laws

  • Legitimate interest – improving services and preventing fraud


4. Data Sharing and Disclosure

We do not sell your personal data.

Your information may be shared only with trusted third parties when necessary, including:

  • Payment processors

  • Shipping and logistics providers

  • Website hosting and IT service providers

  • Legal or regulatory authorities (when required by law)

All third parties are contractually obligated to protect your data and use it solely for authorized purposes.

Payment Processing (GCash, InstaPay, PayPal)

To process payments made through our WooCommerce store, we use trusted third-party payment providers, including GCash, InstaPay, and PayPal.

Information Shared with Payment Providers

When you make a purchase, we may share necessary transaction-related information with the selected payment provider, which may include:

  • Name

  • Email address

  • Billing address

  • Payment amount and transaction reference

  • Order details

We do not store your full payment credentials (such as e-wallet PINs, bank account numbers, or PayPal login details) on our servers.


How Payment Providers Use Your Data

Each payment provider processes your personal data in accordance with their own privacy policies and applicable data protection laws:

  • GCash (Mynt / Globe) – for e-wallet payment verification and transaction processing

  • InstaPay – for real-time interbank fund transfers

  • PayPal – for online payment processing and fraud prevention

These providers may act as independent data controllers, meaning they determine how your payment data is processed once received.


Legal Basis for Payment Data Processing

Payment-related data is processed based on:

  • Contractual necessity – to complete your purchase

  • Legal obligation – financial record-keeping and fraud prevention

  • Legitimate interest – secure and efficient payment processing

  • Consent – when you choose a specific payment method at checkout


Cross-Border Data Transfers

Some payment providers (such as PayPal) may process data outside the Philippines.

Where cross-border transfers occur, appropriate safeguards are in place, including:

  • Compliance with GDPR-approved transfer mechanisms (e.g., Standard Contractual Clauses)

  • Adherence to applicable international data protection standards


Manual Payment Verification (If Applicable)

For payments requiring manual validation (e.g. GCash or InstaPay transfers), we may temporarily collect:

  • Transaction reference numbers

  • Screenshots or proof of payment

These records are used solely for payment verification, stored securely, and retained only as long as necessary for accounting, dispute resolution, or legal compliance.


Payment Disputes and Refunds

Payment information may be retained and processed to:

  • Resolve disputes or chargebacks

  • Process refunds

  • Comply with financial and regulatory requirements


5. Cookies and Automated Data

We use cookies and similar technologies to:

  • Keep you logged in to your account

  • Remember preferences and settings

  • Improve performance and security

You may disable cookies through your browser settings; however, some account features may not function correctly.


6. Data Retention

We retain personal data only for as long as necessary to:

  • Maintain your active account

  • Complete transactions

  • Comply with legal, accounting, and regulatory requirements

Inactive accounts may be securely deleted or anonymized after the required retention period.


7. Your Data Privacy Rights

Under the Philippine Data Privacy Act (RA 10173):

You have the right to:

  • Be informed about data collection and processing

  • Access and correct your personal data

  • Object to processing

  • Request data deletion or blocking

  • File a complaint with the National Privacy Commission (NPC)

Requests may be subject to identity verification and applicable legal limitations.


8. Data Security

We implement appropriate technical and organizational security measures to protect your personal data against unauthorized access, loss, misuse, or disclosure.

Passwords are encrypted and stored securely. Users are responsible for maintaining the confidentiality of their account credentials.


9. Updates to This Policy

This Privacy Policy may be updated periodically to reflect changes in legal requirements or business practices. Updates will be posted on this page and will take effect immediately upon publication.


10. Contact Information

For privacy-related concerns or to exercise your data rights, contact us at:

Email: [your-email@example.com]
Website: [your-website-url]

For Philippine users, concerns may also be escalated to the National Privacy Commission (NPC).