Privacy policy
This Privacy Policy explains how Taji Hijabs (“we,” “us,” “our”) collects, uses, shares, and protects personal information when you visit our website, create an account (including via Google Login), or purchase our products (the “Services”).
By using the Services, you agree to this Policy and our Terms of Service.
1) Information we collect
-
You provide directly: name, email, phone number, shipping/billing addresses, order/return details, support messages, preferences (e.g., size/color).
-
Google Login (OAuth): if you choose “Continue with Google,” we receive your name, email, and (if available) profile picture and a Google user ID to create or sign you into your account. You can revoke access anytime from your Google Account permissions.
-
Automatic data: device/browser type, IP address, pages viewed, timestamps, and identifiers collected via cookies or similar technologies.
-
Payments: handled by our payment processors (e.g., Shopify Payments/Stripe). We do not store full card numbers on our servers.
-
Analytics/ads (if enabled): aggregated usage data from tools such as Google Analytics and Meta Pixel.
2) How we use information
-
Provide, operate, and improve the Services and your shopping experience.
-
Process orders, payments, shipping, returns, and customer support.
-
Enable and manage Google Login and customer accounts.
-
Send transactional emails (order confirmations/updates) and—if you opt in—marketing emails/SMS/WhatsApp.
-
Personalize content, measure performance, and perform analytics.
-
Detect and prevent fraud or misuse; secure the Services.
-
Comply with legal obligations (tax, accounting, lawful requests).
3) Legal bases (EU/UK where applicable)
-
Contract (to fulfill orders/provide Services).
-
Consent (marketing, cookies/analytics, Google Login where required).
-
Legitimate interests (security, service improvement, fraud prevention).
-
Legal obligation (records, compliance).
4) Email, SMS & WhatsApp marketing
We send marketing only with your consent/opt-in. You can unsubscribe at any time (email link; reply STOP for SMS). Message & data rates may apply.
5) Cookies & similar technologies
We use:
-
Essential cookies (site functions like cart/checkout).
-
Analytics cookies (to understand usage).
-
Advertising cookies (only if enabled) to measure campaigns.
Manage cookies via your browser settings or consent tools; note that essential cookies are required for core functions.
6) Sharing your information
We share data with service providers that help us run the Services, including:
-
E-commerce/hosting (e.g., Shopify), payments, email/SMS providers, analytics, customer support, fraud prevention, and shipping/couriers—only as needed to provide the Services.
-
Legal & compliance (to comply with law, enforce our Terms, protect rights/safety).
-
Business transfers (merger, acquisition, or asset sale under appropriate safeguards).
We do not sell personal information.
7) Google API Services & Limited Use
When you use Google Login, we access Google user data strictly to provide sign-in and account features. We comply with the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google data for advertising or unrelated purposes, and we do not transfer Google data to third parties except as necessary to provide or secure the Services. You can revoke access anytime in your Google Account settings.
8) Data retention
We retain personal data only as long as necessary for the purposes above—typically for the duration of your account/transaction plus a reasonable period to comply with legal obligations, resolve disputes, and enforce agreements.
9) Security
We implement reasonable administrative, technical, and physical safeguards appropriate to the data we process. However, no method of transmission or storage is 100% secure.
10) Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or port your personal data, and to withdraw consent. To exercise rights, contact [CONTACT EMAIL].
For marketing, use the unsubscribe link or reply STOP to SMS.
11) International transfers
Your data may be processed in countries different from your own. Where required (e.g., EEA/UK), we use appropriate safeguards such as Standard Contractual Clauses.
12) Children’s privacy
The Services are not intended for children under 13 (or the age required by local law). We do not knowingly collect data from children. If you believe a child provided data, contact us to delete it.
13) Account deletion & Google access revocation
You may request account deletion by emailing [CONTACT EMAIL] from the email associated with your account. If you signed in with Google, you may also revoke our access via your Google Account permissions. We may retain information we are legally required to keep (e.g., invoices).
14) Changes to this Policy
We may update this Policy from time to time. Changes are effective upon posting with an updated Effective date. Your continued use of the Services constitutes acceptance.
15) Contact
Email:contact@tajihijabs.com