This privacy policy explains how Vanya Herbs & Beauty collects, uses, and protects personal data when you use our online platform or interact with our services. We are committed to protecting your privacy and handling your data in a transparent and lawful manner.
The data controller responsible for your personal data is Vanya Herbs & Beauty, located at 302, Aarambh Commercial Complex, Baner Road, Pune, Maharashtra, 411045, India.
We collect personal data directly from you when you provide it to us, such as when you create an account, place an order, subscribe to our newsletter, participate in a workshop, or contact customer service. The types of personal data we may collect include: - Contact information (such as name, shipping address, billing address, email address) - Payment information (processed securely by third-party payment processors; we do not store full payment card details) - Order history and purchase details - Information you provide when you communicate with us - Information related to custom formulation requests or workshop participation.
We also collect certain information automatically as you use our site, including: - Usage data (such as pages viewed, products browsed, time spent on pages) - Technical data (such as IP address, browser type, operating system, device information) - Information collected through cookies and similar technologies (see section on Cookies).
We process your personal data for the following purposes and based on the following lawful bases: - To process and fulfill your orders, manage payments, and deliver products (Necessary for the performance of a contract). - To provide customer support and respond to your inquiries (Necessary for the performance of a contract or our legitimate interests in providing good customer service). - To manage your account and provide you with access to our services (Necessary for the performance of a contract). - To send you marketing communications (if you have consented or where we have a legitimate interest and are permitted by law), such as newsletters, promotions, and information about new products or services (Consent or Legitimate Interest). You can opt out of marketing communications at any time. - To improve our site, products, and services, and understand how users interact with our online platform (Legitimate interests in improving our business and user experience). - To conduct workshops or provide custom formulation services as requested by you (Necessary for the performance of a contract). - To comply with legal obligations, such as tax and accounting requirements (Necessary for compliance with a legal obligation). - To prevent fraud and ensure the security of our site and services (Legitimate interests in protecting our business and users). - To process wholesale requests and manage business relationships (Necessary for the performance of a contract or legitimate interests).
We may share your personal data with third parties under certain circumstances: - Service Providers: We share information with third-party service providers who perform functions on our behalf, such as payment processing, shipping, data hosting, analytics, and marketing assistance. These service providers are required to process your data only as necessary to provide the services and in accordance with our instructions and applicable law. - Legal Requirements: We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or a government agency). - Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred as part of that transaction.
We do not sell, rent, or trade your personal data to third parties for their own marketing purposes.
Your personal data may be stored and processed in countries other than where you reside. We ensure that when your data is transferred internationally, appropriate safeguards are in place to protect your personal data, such as relying on adequacy decisions, standard contractual clauses, or other lawful mechanisms.
We implement appropriate technical and organizational measures designed to protect your personal data from unauthorized access, disclosure, alteration, and destruction. While we strive to protect your personal data, no security system is impenetrable, and we cannot guarantee absolute security.
We retain your personal data only for as long as necessary to fulfill the purposes for which we collected it, including for the purposes of satisfying any legal, accounting, or reporting requirements. The retention period varies depending on the type of data and the purpose of processing. When we no longer need your data, we will securely delete or anonymize it.
Depending on your location and applicable laws, you may have certain rights regarding your personal data. Under GDPR, for example, you have rights including: - The right to access your personal data. - The right to request rectification of inaccurate or incomplete data. - The right to request erasure of your personal data. - The right to restrict processing of your personal data. - The right to object to processing of your personal data (e.g., for direct marketing). - The right to data portability. - The right to withdraw consent at any time where processing is based on consent. - The right to lodge a complaint with a supervisory authority.
To exercise any of these rights, please contact us using the physical address provided above. We may need to verify your identity before fulfilling your request.
Our site uses cookies and similar tracking technologies to collect information about your browsing behaviour. Cookies are small text files placed on your device. They help us operate and improve our site, understand usage patterns, and deliver relevant content and advertising. You can control cookies through your browser settings. However, disabling certain cookies may affect the functionality of our site.
Our site may contain links to websites operated by third parties. This privacy policy does not apply to those third-party sites. We encourage you to review the privacy policies of any third-party sites you visit.
Our services are not intended for individuals under the age of 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected personal data from a child under 16 without appropriate consent, we will take steps to delete it.
We may update this privacy policy from time to time to reflect changes in our practices or legal requirements. We will post the updated policy on our site. We encourage you to review this policy periodically.
This policy was last updated on October 26, 2023.