Privacy Policy
1. Introduction
Welcome to ideashop.al (“we”, “us”, “our”). We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website (ideashop.al) and our mobile applications (iOS app, Android app).
By using our website or mobile app, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with the terms below, please do not access or use our services.
2. Definitions
-
Personal Data means any information relating to an identified or identifiable individual (e.g. name, email address, phone number).
-
Usage Data means data collected automatically, either generated by use of the service or from the service infrastructure (e.g. IP addresses, browser type).
-
Cookies are small files stored on your device (computer or mobile) by your web browser.
-
Controller / Data Controller refers to ideashop.al (or its parent entity) which determines the purposes and means of processing personal data.
-
Processor refers to any entities that process data on behalf of ideashop.al.
3. Data We Collect & When We Collect It
We may collect the following types of information:
A. Information You Provide
-
Name
-
Email address
-
Postal address, billing / shipping address
-
Phone number
-
Payment information (credit card, PayPal, etc.) — Note: We only store what’s necessary (or use third-party payment processors)
-
Account username and password
-
Order history, preferences, reviews / ratings
-
Customer support communications
B. Information Collected Automatically
-
Device information (device model, operating system version)
-
Log data such as IP address, browser type, referring/exit pages, timestamps
-
Usage metrics: pages viewed, time spent, click behavior
-
App analytics data (crashes, app version, screen flow)
-
Location information (if you allow it)
-
Cookies, web beacons, tracking pixels
C. From Third Parties
-
Payment processors
-
Advertising / analytics services
-
Social network providers (if you login via social)
4. How We Use Your Information
We use your data for purposes including:
-
To provide and maintain our services
-
To process orders, payments, deliver goods
-
To communicate with you (notifications, email, SMS)
-
To provide customer support
-
To analyze usage, improve, update, optimize the app / website
-
To send promotional materials (if you opt in)
-
For fraud prevention, security, compliance
-
For legal and regulatory requirements
5. Legal Basis for Processing (for EU / GDPR compliance)
If you are in the EU or in a jurisdiction requiring lawful basis, we rely on:
-
Consent (when you explicitly agree, e.g. newsletters)
-
Contractual necessity (to fulfill orders, provide services)
-
Legitimate interests (e.g. improving our service, preventing fraud)
-
Legal obligation (complying with laws)
6. Data Sharing & Disclosure
We may share your personal data in the following circumstances:
-
Service providers / processors — e.g. payment gateways, delivery partners, analytics, hosting
-
Third-party integrations — e.g. social login, advertising networks
-
Business transfers — in case of merger, acquisition, sale of assets
-
Legal requirements — to comply with court orders, law enforcement
-
With your consent
We require third parties to maintain confidentiality and to use your data only as permitted by us.
7. International Data Transfers
Your personal data may be transferred to and maintained on servers located outside your country (e.g., in other jurisdictions). We ensure appropriate safeguards (e.g. standard contractual clauses, EU model clauses) where required.
8. Data Retention
We keep your personal data only as long as necessary for the purposes described:
-
Orders, transactions: typically for accounting / tax / warranty periods
-
Analytics, logs: for a limited period (e.g. 1–3 years)
-
Marketing preferences: until you withdraw consent
-
We regularly review retention policies and purge data when no longer needed.
9. Security of Data
We implement technical and organizational measures to protect your personal data, including:
-
SSL / TLS encryption in transit
-
Secure infrastructure, access controls
-
Data anonymization / pseudonymization where possible
-
Regular security audits, vulnerability testing
-
Employee training, least-privilege access
However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.
10. Your Rights (for EU / applicable jurisdictions)
Depending on your location, you may have the following rights:
-
Right to access your data
-
Right to correct / rectify
-
Right to erase / “right to be forgotten”
-
Right to restrict processing
-
Right to data portability
-
Right to object
-
Right to withdraw consent
-
Right to lodge complaint with supervisory authority
To exercise these rights, contact us (see “Contact Us” section).
11. Cookies & Tracking Technologies
We use cookies and similar technologies to:
-
Enable core site/app functionality
-
Remember your preferences
-
Analyze site/app usage
-
Serve ads / marketing campaigns (if opted in)
You can control cookies settings via browser options or in-app settings. However, disabling cookies may affect the functionality.
12. Children’s Privacy
Our service is not intended for children under 13 (or relevant age in your jurisdiction). We do not knowingly collect personal data from children. If discovered, we will delete such data.
13. Third-Party Links & Services
Our website or app may contain links to external sites. We are not responsible for the privacy practices of those. We encourage you to read their privacy policies.
14. Changes to This Privacy Policy
We may update this policy from time to time. We will notify you by posting the new policy here, and, if appropriate, via email or app notification before changes take effect.
The “Last updated” date at the top indicates when the latest revision was made.
15. Contact Us
If you have any questions about this Privacy Policy, or to exercise your rights, contact us:
-
Email: [your_email@example.com]
-
Address: [Your physical address / company registered address]
-
Phone: [+Country Code Phone Number]
16. App Store / Google Play Additional Requirements (for iOS / Android)
To satisfy App Store / Google Play policies, include:
-
Data collection disclosure: what data you collect (user-provided, automatic, third-party)
-
Data use: how data is used (functionality, analytics, advertising)
-
Data sharing: which third parties you share data with
-
Data retention & deletion: how long data is stored, how user can request deletion
-
Security measures: how data is protected
-
User consent and opt-in / opt-out: especially for push notifications, advertising, location, sensitive permissions
-
Children’s data: state your policy if your app is directed to children
-
In-app settings or UI: a place in the app where users can view privacy policy and manage consent / permissions
You may provide a “Privacy Policy” link in the app’s settings or legal section, pointing to the full policy (hosted on your website). Also, in App Store listing / Google Play listing, provide a URL to your privacy policy.
Suggested Structure / Headings Summary
-
Introduction
-
Definitions
-
Data We Collect
-
How We Use Data
-
Legal Basis
-
Data Sharing & Disclosure
-
International Transfers
-
Data Retention
-
Security
-
Your Rights
-
Cookies & Tracking
-
Children’s Privacy
-
Third-Party Links
-
Changes
-
Contact
-
App-specific / Store Compliance