Privacy Policy
We are committed to protecting your personal information and your right to privacy.
Introduction
Welcome to Abhrikaa ("we," "our," or "us"). Abhrikaa is an online women's fashion retailer specialising in sarees and related products, operated from Road 5, Sector 10, Uttara, Dhaka-1230, Bangladesh.
This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit https://abhrikaa.com/ (the "Website") or interact with us through any of our digital channels, including our Facebook Page at https://www.facebook.com/Abhrikaabyeka.
By using our Website or placing an order with us, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with its terms, please discontinue use of our services.
Information We Collect
2.1 Information You Provide Directly
- ◆Full name
- ◆Email address
- ◆Phone number (mobile)
- ◆Delivery address (street, area, city, district, postal code)
- ◆Payment information: bKash, Nagad, Rocket account numbers and transaction IDs; bank card details (processed securely); cash on delivery confirmation
- ◆Order details, product preferences, and special instructions
- ◆Messages and queries you send via email, Facebook Messenger, or our contact forms
2.2 Information Collected Automatically
When you visit our Website, we and our third-party partners automatically collect:
- ◆IP address and approximate geolocation
- ◆Browser type, operating system, and device identifiers
- ◆Pages viewed, time spent on each page, and clickstream data
- ◆Referral source (how you found us)
- ◆Cookies and similar tracking technologies (see Section 7)
2.3 Information From Third Parties
- ◆Facebook / Meta: if you interact with our Facebook Page, run ads, or use social login features
- ◆Google: via Google Analytics and Google Ads when you engage with our advertising campaigns
- ◆TikTok: if you interact with our TikTok advertising
- ◆Delivery / courier partners: delivery status updates linked to your order
How We Use Your Information
- ◆Order Processing & Fulfilment: to confirm, process, ship, and deliver your orders
- ◆Payment Processing: to verify and complete transactions via bKash, Nagad, Rocket, bank card, or cash on delivery
- ◆Customer Service: to respond to your queries, complaints, and return/exchange requests
- ◆Communications: to send order confirmations, shipping notifications, and service updates by email or SMS
- ◆Marketing & Promotions: to send newsletters, special offers, and personalised product recommendations (you may opt out at any time)
- ◆Advertising & Remarketing: to deliver targeted advertisements on Google, Meta (Facebook/Instagram), and TikTok to users who have previously visited our Website
- ◆Analytics & Improvement: to understand how visitors use our Website using Google Analytics
- ◆Legal Compliance: to meet our obligations under Bangladeshi law and applicable international regulations
- ◆Fraud Prevention: to detect and prevent fraudulent transactions or misuse of our services
Legal Basis for Processing (GDPR)
If you are located in the EEA or UK, we process your personal data only where we have a valid legal basis under the GDPR or UK GDPR:
- ◆Contractual Necessity: processing required to fulfil your order and deliver our services
- ◆Legitimate Interests: analytics, fraud prevention, and direct marketing (where not overridden by your rights)
- ◆Legal Obligation: compliance with applicable law
- ◆Consent: for optional marketing emails, cookies, and remarketing (you may withdraw consent at any time)
Sharing Your Information
We do not sell your personal data. We may share your information with trusted third parties only as necessary:
- ◆Delivery & Logistics Partners: your name, address, and phone number are shared with courier companies (e.g., Pathao, Paperfly, Steadfast) to fulfil your order
- ◆Payment Processors: transaction data is processed through secure payment gateways
- ◆Advertising Platforms: Google Ads, Meta (Facebook/Instagram), and TikTok receive hashed identifiers and pixel data — no raw payment information is shared
- ◆Analytics Providers: Google Analytics receives anonymised usage data
- ◆Legal & Regulatory Authorities: if required by Bangladeshi law, court order, or to protect rights, property, or safety
- ◆Business Transfers: in the event of a merger or sale of assets, your data may be transferred to the successor entity
Payment Security
- ◆bKash, Nagad, Rocket: processed through official gateway integrations. We never ask for your mobile banking PIN or OTP.
- ◆Bank Card: processed through PCI-DSS compliant payment gateways. We do not store full card numbers on our servers.
- ◆Cash on Delivery (COD): requires no advance payment information beyond your delivery details.
Cookies & Tracking Technologies
We use cookies and similar technologies to enhance your experience, analyse traffic, and deliver relevant advertising:
- ◆Essential Cookies: necessary for the Website to function (shopping cart, session management)
- ◆Analytics Cookies: Google Analytics cookies that help us understand visitor behaviour in aggregate
- ◆Advertising & Remarketing Cookies: placed by Google Ads, Meta Pixel, and TikTok Pixel to serve you personalised ads based on prior visits to our Website
You can opt out of personalised advertising via:
- ◆Google: https://adssettings.google.com
- ◆Meta (Facebook): https://www.facebook.com/ads/preferences
- ◆TikTok: TikTok Ads Settings within the app
- ◆All networks: https://optout.aboutads.info (Digital Advertising Alliance)
Children's Privacy
- ◆We do not knowingly collect sensitive personal data from children under 13 without verifiable parental consent.
- ◆Any personal information submitted by or on behalf of a child under 13 (e.g., a delivery address for a gift) is used solely to fulfil that specific order.
- ◆We do not use children's data for behavioural advertising or profiling.
- ◆Parents or guardians who believe we have inadvertently collected personal information from a child under 13 may contact us by email to request deletion.
Data Retention
- ◆Order & transaction records: up to 7 years (as required by Bangladeshi tax and commercial law)
- ◆Customer account information: for the duration of the account plus 2 years after last activity
- ◆Marketing preferences: until you opt out, then promptly removed from active lists
- ◆Analytics data: in anonymised aggregate form, indefinitely
Upon expiry of the applicable retention period, or upon a valid deletion request, we will securely delete or anonymise your data.
Your Rights
10.1 Rights Under GDPR (EEA / UK Users)
- ◆Access: obtain a copy of the personal data we hold about you
- ◆Rectification: correct inaccurate or incomplete data
- ◆Erasure ("Right to be Forgotten"): request deletion of your data, subject to legal retention obligations
- ◆Restriction: request that we limit processing in certain circumstances
- ◆Data Portability: receive your data in a structured, machine-readable format
- ◆Object: object to processing based on legitimate interests, including direct marketing
- ◆Withdraw Consent: withdraw consent at any time where processing is consent-based
- ◆Lodge a Complaint: with your local data protection authority
10.2 Rights Under CCPA / CPRA (California Residents)
- ◆Right to Know: request disclosure of categories and specific pieces of personal information collected in the past 12 months
- ◆Right to Delete: request deletion of your personal information, subject to certain exceptions
- ◆Right to Correct: request correction of inaccurate personal information
- ◆Right to Opt-Out of Sale or Sharing: we do not sell personal information; however, our advertising cookies may constitute "sharing" under CPRA — you may opt out via cookie settings or by contacting us
- ◆Right to Limit Use of Sensitive Personal Information: request that we limit use of sensitive personal information to necessary purposes
- ◆Right to Non-Discrimination: we will not discriminate against you for exercising any of these rights
To submit a CCPA/CPRA request, contact us by email. We will respond within 45 days. We may need to verify your identity before processing your request.
10.3 Rights Under Bangladeshi Law
We comply with the Digital Security Act, 2018 and applicable consumer protection laws of Bangladesh. You may contact us directly to exercise any rights with respect to your personal data.
International Data Transfers
Abhrikaa is based in Bangladesh. When we share your data with third-party service providers (such as Google, Meta, or TikTok) whose servers are located outside Bangladesh, your data may be transferred internationally. We take appropriate steps to ensure such transfers are protected:
- ◆We rely on the Standard Contractual Clauses (SCCs) approved by the European Commission for transfers of EEA/UK data
- ◆We work only with providers who maintain adequate data protection standards
Remarketing & Behavioural Advertising
We use remarketing services to advertise to you after you have visited our Website. These services display Abhrikaa ads on third-party websites and apps based on your prior browsing behaviour:
- ◆Google Remarketing: through the Google Display Network and Google Ads
- ◆Meta (Facebook & Instagram) Remarketing: via the Meta Pixel and Custom Audiences
- ◆TikTok Remarketing: via the TikTok Pixel
Remarketing data is based on anonymised identifiers (such as cookie IDs or hashed email addresses) and does not include your full name, address, or payment information. You may opt out at any time through the opt-out links in Section 7.
Third-Party Links & Social Media
Our Website and communications may contain links to third-party websites (including our Facebook Page). This Privacy Policy does not apply to those third-party sites. We encourage you to review the privacy policies of any third-party platforms you visit. We are not responsible for the content or privacy practices of external sites.
Data Security
We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. However, no method of transmission over the internet is 100% secure. If you believe your information has been compromised, please contact us immediately.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- ◆Update the "Effective Date" at the top of this document
- ◆Post the revised policy on our Website at https://abhrikaa.com/
- ◆Notify you by email or via a prominent notice on our Website
Your continued use of our Website after any update constitutes acceptance of the revised Policy.
16. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, please contact us:
|
🏢 Business
Abhrikaa
|
📍 Address
Road 5, Sector 10, Uttara, Dhaka-1230, Bangladesh
|
|
🌐 Website
|
📘 Facebook
|
|
📧 Email
info@abhrikaa.com
|
|
We aim to respond to all privacy-related inquiries within 30 days (or 45 days for CCPA/CPRA requests).
