Privacy Policy
Last Updated: December 15, 2024 | Effective Date: January 1, 2024
This Privacy Policy describes how Bsderma ("we," "our," or "us") collects, uses, and shares your personal information when you use our e-commerce platform, website, and mobile application (collectively, the "Service").
1. Information We Collect
1.1 Personal Information You Provide
- Account Information: Name, email address, phone number, password, and profile picture
- Purchase Information: Billing and shipping addresses, payment details, order history, and product preferences
- Communication Data: Messages sent through our contact forms, customer support interactions, and reviews
- Profile Data: Date of birth, gender, preferences, and interests (optional)
- Social Media Information: When you sign in using Google, Facebook, or other social platforms
1.2 Information Collected Automatically
- Device Information: Device type, operating system, browser type, IP address, and unique device identifiers
- Usage Data: Pages visited, time spent on pages, clicks, searches, and navigation patterns
- Location Data: Approximate location based on IP address and GPS coordinates (with permission)
- Mobile App Data: App version, crash reports, performance metrics, and feature usage
- Cookies and Tracking: Session cookies, persistent cookies, and similar technologies
1.3 Third-Party Integrations
- Payment Processors: PayPal, Paymob, and other payment gateways
- Analytics Services: Google Analytics, Firebase Analytics
- Social Media: Google Sign-In, Facebook Login
- Maps and Location: Google Maps API for delivery tracking
- Push Notifications: Firebase Cloud Messaging
2. How We Use Your Information
- Service Provision: Process orders, manage accounts, and provide customer support
- Personalization: Customize product recommendations and user experience
- Communication: Send order confirmations, shipping updates, and promotional offers
- Security: Protect against fraud, unauthorized access, and security threats
- Analytics: Improve our services, analyze usage patterns, and optimize performance
- Legal Compliance: Comply with applicable laws, regulations, and legal processes
- Marketing: Send promotional materials (with your consent) and conduct market research
3. How We Share Your Information
3.1 Service Providers
We share information with third-party service providers who assist us in operating our platform:
- Payment processors for transaction processing
- Shipping companies for order fulfillment
- Cloud hosting providers for data storage
- Analytics providers for website and app optimization
- Customer support platforms for assistance
3.2 Legal Requirements
We may disclose information when required by law or to:
- Comply with legal obligations and court orders
- Protect our rights, property, or safety
- Prevent fraud or security threats
- Investigate violations of our terms of service
3.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new entity.
4. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
- Encryption: Data transmission using SSL/TLS encryption
- Access Controls: Limited access to personal data on a need-to-know basis
- Regular Audits: Security assessments and vulnerability testing
- Secure Storage: Protected databases and secure cloud infrastructure
- Employee Training: Regular security awareness training for staff
- Incident Response: Procedures for handling security breaches
5. Your Rights and Choices
5.1 Access and Control
- Access: Request a copy of your personal information
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your personal data (subject to legal requirements)
- Portability: Receive your data in a structured, machine-readable format
- Restriction: Limit how we process your information
5.2 Communication Preferences
- Opt out of marketing emails through unsubscribe links
- Manage push notification settings in your device
- Control cookie preferences through browser settings
- Update communication preferences in your account settings
5.3 Mobile App Permissions
- Location: Enable/disable location services for delivery tracking
- Camera: Grant/revoke camera access for profile pictures
- Notifications: Control push notification preferences
- Storage: Manage local data storage permissions
6. Cookies and Tracking Technologies
6.1 Types of Cookies
- Essential Cookies: Required for basic website functionality
- Performance Cookies: Collect anonymous usage statistics
- Functional Cookies: Remember your preferences and settings
- Marketing Cookies: Track visitors for advertising purposes
6.2 Third-Party Services
- Google Analytics for website analytics
- Firebase for mobile app analytics and push notifications
- Social media plugins for sharing and authentication
- Payment processors for secure transaction processing
7. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers:
- Standard contractual clauses approved by relevant authorities
- Adequacy decisions for countries with adequate protection
- Certification schemes and codes of conduct
- Your explicit consent for specific transfers
8. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy:
- Account Data: Until account deletion or 7 years of inactivity
- Transaction Records: 7 years for legal and accounting purposes
- Marketing Data: Until you unsubscribe or 3 years of inactivity
- Analytics Data: Aggregated and anonymized after 26 months
- Support Communications: 3 years for quality assurance
9. Children's Privacy
Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us to have such information removed.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make changes, we will:
- Update the "Last Updated" date at the top of this policy
- Notify you via email or in-app notification for material changes
- Post the updated policy on our website and mobile app
- Obtain your consent for significant changes as required by law
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Data Protection Officer
- Email: support@bsderma.net
- Phone: +201557019709
- Address: Bsderma Headquarters, Sues Channel, Masnoura, Dakahlia, Egypt 35511
- Website: https://bsderma.net
Response Time: We aim to respond to all privacy inquiries within 30 days. For urgent matters, please call our support line.
12. Regional Privacy Rights
12.1 European Union (GDPR)
If you are in the EU, you have additional rights under the General Data Protection Regulation:
- Right to be informed about data processing
- Right of access to your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Rights related to automated decision-making
12.2 California (CCPA)
California residents have specific rights under the California Consumer Privacy Act:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of the sale of personal information
- Right to non-discrimination for exercising privacy rights
12.3 Other Jurisdictions
We comply with applicable privacy laws in all jurisdictions where we operate. Contact us for information about your specific regional rights.
Note: This Privacy Policy is effective as of the date listed above and applies to all users of our website and mobile application. By using our Service, you acknowledge that you have read and understood this Privacy Policy.