Privacy Policy
How we collect, use and protect your information
Last updated: January 2026
1. Introduction
This Privacy Policy describes how MashaAllah Jes Collection ("we", "us", or "our") collects, uses and protects your personal information when you visit our website, create an account, place orders, or otherwise use our services. We are committed to protecting your privacy and handling your data in an open and transparent manner.
Please read this Privacy Policy carefully. By using our website or services, you agree to the collection and use of information in accordance with this policy.
2. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other operational reasons. We will post the revised policy on our website and update the "Last updated" date. We encourage you to review this page periodically. Continued use of our services after changes constitutes acceptance of the updated policy.
3. Information We Collect
We collect information that you provide directly to us and information we obtain automatically when you use our services.
Information you provide:
- Account information: name, email address, password and profile details when you register or update your account.
- Order information: billing and shipping address, phone number, email and payment-related details when you place an order.
- Saved addresses: delivery addresses you save to your account for future orders.
- Contact and support: messages you send via our contact form, email, or WhatsApp and any other information you choose to include.
- Wishlist: products you save to your wishlist when logged in.
Usage and technical information:
- We may automatically collect information about how you access and use our website, including device and browser information, IP address and pages visited. We may use cookies and similar technologies for this purpose.
4. How We Use Your Information
We use your personal information to:
- Process and fulfil your orders, arrange shipping and send order confirmations and updates.
- Create and manage your account, authenticate you and provide access to order history, saved addresses and wishlist.
- Communicate with you about your orders, enquiries and customer support requests via email, phone, or WhatsApp.
- Improve our website, products and services and personalise your experience.
- Comply with legal obligations, enforce our terms and conditions and protect our rights and those of our users.
- Send you marketing communications (where you have opted in). You may unsubscribe at any time.
5. Cookies and Similar Technologies
We use cookies and similar technologies to enable certain features, remember your preferences and understand how you use our website. You can control cookies through your browser settings. Disabling or blocking cookies may affect the functionality of our website and your user experience.
6. How We Share Your Information
We may share your personal information with:
- Payment processors (e.g. Stripe) to process payments securely. We do not store your full card details on our servers.
- Our database and hosting providers (e.g. Supabase) who help us run our website and store data securely.
- Delivery and courier services to fulfil and ship your orders.
- Professional advisers, regulators, or law enforcement where required by law or to protect our rights.
We do not sell your personal information to third parties.
7. Data Retention
We retain your personal information for as long as necessary to provide our services, comply with legal obligations (e.g. tax, accounting), resolve disputes and enforce our agreements. Order and account data are typically retained for a period consistent with legal and business requirements. You may request deletion of your account and associated data, subject to applicable law.
8. Your Rights
Under UK GDPR and applicable data protection laws, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of your personal information in certain circumstances.
- Object to or restrict certain processing of your data.
- Data portability: receive your data in a structured, machine-readable format.
- Withdraw consent where we rely on consent for processing.
- Lodge a complaint with the Information Commissioner's Office (ICO) in the UK.
To exercise any of these rights, please contact us using the details below.
9. Security
We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. However, no method of transmission over the internet or electronic storage is completely secure. We cannot guarantee absolute security but we are committed to protecting your data.
10. Children's Data
Our services are not directed at children. We do not knowingly collect personal information from anyone under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us and we will take steps to delete such information.
11. International Transfers
Your information may be processed and stored in the United Kingdom or other countries where our service providers operate. Where we transfer data outside the UK or EEA, we ensure appropriate safeguards are in place, such as standard contractual clauses or adequacy decisions, in accordance with applicable law.
12. Contact Us
If you have any questions about this Privacy Policy or our privacy practices, or if you wish to exercise your rights, please contact us:
- By email: using the contact email published on our website and in the footer.
- By phone or WhatsApp: using the contact details on our website.
We will respond to your request in accordance with applicable law.