Policies
Last updated: 7/15/2025
Select Policy
- In-store interactions at our physical location in Souq Al Bahar, Dubai Mall, Dubai, UAE.
- Online interactions via our website (www.mehreencarpets.ae) and any future e-commerce platforms.
- Other channels, such as customer support communications, marketing campaigns, or third-party service providers acting on our behalf.
- Personal Data: Any information relating to an identified or identifiable natural person ('Data Subject'), such as name, contact details, or payment information.
- Processing: Any operation performed on Personal Data, including collection, storage, use, disclosure, or deletion.
- Data Subject: An individual whose Personal Data is collected and processed by Mehreen Carpets.
- Contact and Identity Data: Name, email address, phone number, billing/shipping address, and other identifiers provided during account creation, purchases, or inquiries.
- Payment Data: Credit/debit card details, bank account information, or other payment method details processed securely via third-party payment providers.
- Marketing and Newsletter Data: Preferences and subscription details.
- User Content: Reviews, feedback, or inquiries you voluntarily provide.
- Analytics Data: IP address, browser type, device information, pages visited, and time spent.
- Feedback Data: Survey and customer satisfaction responses.
- Non-personal Data: Anonymized analytics that does not directly identify you.
- Direct Interactions: Purchases, account creation, subscriptions, feedback.
- Automated Technologies: Cookies, web beacons, analytics tools.
- Third Parties: Service providers or publicly available sources, where permitted.
- Order Processing: Fulfill orders, process payments, deliver products.
- Customer Service: Respond to inquiries, support, and issue resolution.
- Marketing: Send promotional materials with consent.
- User Experience Improvements: Analyze website performance and optimize content.
- Legal Compliance: Comply with laws, regulations, or legal requests.
- Fraud Prevention: Detect and prevent fraudulent activities.
- Contractual Necessity: To fulfill orders or provide services as per our Terms of Service.
- Consent: For marketing communications or non-essential cookies, where you have provided explicit consent.
- Legal Obligation: To comply with applicable regulations.
- Legitimate Interests: For analytics and service improvements.
- Payment Processors: Stripe or other PCI-compliant providers.
- Logistics Partners: Couriers and shipping companies.
- Analytics Providers: Third-party tools with anonymized data.
- Service Providers: IT, marketing, or customer support providers acting under strict data protection agreements.
- Legal Authorities: When required by law or court orders.
- Business Transfers: In case of mergers, acquisitions, or asset sales, subject to confidentiality obligations.
- Essential Cookies: Necessary for core website functionality, such as maintaining your cart, processing checkouts, and ensuring security.
- Analytics Cookies: Track website usage (e.g., pages visited, time spent) to improve performance and user experience. Data is anonymized where possible.
- Advertising Cookies: Enable personalized advertisements based on your browsing behavior and interests.
- Encryption: TLS for data in transit and AES-256 for data at rest.
- Access Controls: Restricted on a need-to-know basis.
- Audits: Regular security audits and vulnerability assessments.
- Employee Training: Ongoing data protection training.
- Incident Notification: Notify you and relevant authorities of data breaches.
- Transactional Data: Retained for 5 years for legal compliance.
- Marketing Data: Retained until consent withdrawal or unsubscribe.
- Analytics Data: Anonymized and retained indefinitely for statistics.
- Other Data: Retained as required by law or business needs.
- Access: Request a copy of your Personal Data.
- Correction: Request correction of inaccurate data.
- Deletion: Request deletion, subject to legal obligations.
- Restriction: Request limitation of processing.
- Portability: Request transfer of your data to another provider.
- Objection: Object to processing for marketing purposes.
- Consent Withdrawal: Withdraw consent at any time.
We may transfer your Personal Data outside your country of residence in compliance with applicable laws via safeguards like Standard Contractual Clauses.
You access third-party websites at your own risk; review their terms and privacy policies before interacting.
We may update this Privacy Policy periodically. Changes will be posted on our website with the effective date.