Short version: We collect only what we need, never sell your data, and give you full control over what you share with us.
1. Who We Are
Prodoraa ("we", "us", "our") operates the website at https://www.prodoraa.com. We are the data controller for personal data collected through this Site. You can reach us at [email protected].
2. Data We Collect
We collect information you provide directly to us and data generated automatically when you use the Site:
- Account & order data: name, email address, billing/shipping address, phone number, payment details (processed securely by our payment provider — we never store card numbers).
- Skin profile data: skin type, concerns and product preferences you share when seeking product recommendations through our contact form. This is used solely to provide personalised product advice.
- Contact form data: name, email and message content when you contact us.
- Usage data: IP address, browser type, pages visited, time on site, referring URLs — collected via server logs and analytics cookies.
- Marketing preferences: whether you have opted in to receive promotional emails.
3. How We Use Your Data
We use personal data to:
- Process and fulfil your orders and send order confirmations.
- Respond to your enquiries and provide customer support.
- Send marketing emails (only if you have opted in — you may unsubscribe at any time).
- Personalise your experience and improve our products and Site.
- Comply with legal obligations and enforce our Terms and Conditions.
- Detect and prevent fraud or abuse.
4. Legal Bases for Processing (GDPR)
If you are located in the European Economic Area (EEA), we process your personal data under the following bases:
- Contract performance — to process and deliver orders.
- Legitimate interests — to prevent fraud, improve our Site and communicate service updates.
- Consent — to send marketing emails and set non-essential cookies.
- Legal obligation — to comply with applicable laws.
5. Cookies
We use cookies to keep your session active, remember preferences and analyse Site traffic. You can control cookies in your browser settings. Blocking cookies may affect Site functionality. We use:
- Essential cookies: required for the Site to function (e.g., shopping cart, session).
- Analytics cookies: help us understand how visitors use the Site (e.g., Google Analytics with IP anonymisation).
- Marketing cookies: only set with your consent to deliver relevant advertising.
6. Sharing Your Data
We do not sell your personal data. We share data only with trusted third parties necessary to operate our business:
- Payment processors (e.g., Stripe) — for secure transaction handling.
- Shipping carriers — to deliver your orders.
- Email service providers — to send transactional and marketing emails.
- Analytics providers — under data processing agreements, with anonymisation where possible.
- Legal authorities — when required by law or to protect our rights.
7. Data Retention
We retain your personal data only as long as necessary for the purposes outlined above or as required by law. Order data is kept for 7 years for tax and accounting purposes. You may request deletion of your account data at any time (see Your Rights below).
8. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Request deletion of your data ("right to be forgotten").
- Object to or restrict certain processing activities.
- Request a portable copy of your data.
- Withdraw consent at any time (without affecting prior processing).
To exercise any of these rights, email us at [email protected]. We will respond within 30 days.
9. Security
We implement industry-standard security measures including HTTPS encryption, secure payment processing and access controls. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by posting a notice on the Site or by email. Your continued use of the Site after changes are posted constitutes acceptance.
11. Contact Us
For privacy-related questions, contact our Data Protection team at [email protected] or by post at 142 Bandra West, Mumbai, Maharashtra 400050, India.