Privacy Policy

Description

IndianStaples is committed to providing a secure and trustworthy online shopping experience for authentic Indian groceries. As a Canada-based online grocery store, we comply with the Personal Information Protection and Electronic Documents Act (PIPEDA) and other applicable provincial and federal privacy laws.

This Privacy Policy outlines how we collect, use, disclose, and safeguard your personal information when you visit our website, create an account, place an order, or otherwise interact with us.

1. What Personal Information We Collect

We collect only the personal information necessary for identified purposes. This may include:
– Identity Information: Your name, email address, phone number, and billing/shipping address.
– Order Details: Product selections, order history, preferences, and delivery instructions.
– Payment Information: We do not collect or store credit/debit card details. Payments are processed securely via Stripe, a PCI-DSS compliant third-party payment processor.
– Technical Information: IP address, browser type, operating system, device identifiers, and site usage activity, collected via cookies and analytics tools.
– Communications: Your messages to us (e.g., via email, web forms, or customer service calls).

2. Why We Collect Your Information

We collect and use your personal information only for the following lawful purposes:
– To process, fulfill, and deliver your orders.
– To create and manage your account.
– To communicate with you about your order, support inquiries, or service updates.
– To improve our services and enhance your user experience through analytics and feedback.
– To send marketing communications (with your consent, and you may unsubscribe at any time).
– To comply with legal and tax obligations.

3. Consent

By using our website or services, you consent to the collection, use, and disclosure of your personal information as outlined in this Privacy Policy.

You may withdraw your consent at any time, subject to legal or contractual restrictions. Withdrawing consent may impact your ability to use certain features (e.g., placing orders).

4. Disclosure of Your Information

We do not sell or rent your personal information. We may share it with third parties only under the following limited circumstances:
– Service Providers: We may share your information with trusted providers (e.g., Stripe for payment processing, logistics partners for delivery) strictly for operational purposes.
– Legal Compliance: When required by law or in response to legal processes such as court orders or subpoenas.
– Business Transfers: In the event of a sale, merger, or acquisition, your information may be transferred as part of business assets. You will be notified of any change in ownership or control.

5. How We Protect Your Information

We take reasonable administrative, technical, and physical measures to protect your personal information from unauthorized access, loss, misuse, or disclosure:
– SSL encryption for all data transmitted between your device and our servers.
– Secure hosting with firewall and access controls.
– Staff training and access restrictions to prevent misuse.
– Stripe handles all payment information using PCI-DSS certified infrastructure.

No method of transmission over the internet is 100% secure, and while we strive to protect your data, we cannot guarantee absolute security. You are encouraged to use strong passwords and log out of your account when finished.

6. Cookies and Tracking

We use cookies and similar technologies to personalize your experience and improve site performance:
– Essential Cookies: Required for website functionality (e.g., cart, login).
– Analytics Cookies: Help us understand site traffic and performance.
– Marketing Cookies: Used only with consent for targeted promotions.

You can control cookie settings in your browser or use the cookie consent banner on our website. Disabling cookies may affect site functionality.

7. Your Rights Under PIPEDA

You have the right to:
– Access the personal information we hold about you.
– Request Correction of any inaccuracies.
– Withdraw Consent for uses not required by law.
– File a Complaint with the Office of the Privacy Commissioner of Canada.

To make a request, please contact us using the details below. We will respond within 30 days as required by law.

8. Data Retention

We retain personal data only as long as necessary:
– Order and account information: 7 years, as required for legal and tax compliance.
– Analytics data: Up to 2 years for site optimization.

After the retention period, data is securely deleted or anonymized.

9. International Data Transfers

While IndianStaples is based in Canada, some third-party service providers (e.g., Stripe, analytics tools) may store data on servers outside Canada (e.g., U.S.). In such cases, we ensure these providers comply with Canadian privacy laws or equivalent standards.

10. Updates to This Privacy Policy

We may revise this policy to reflect changes in our practices or legal obligations. Updates will be posted on our website with a new ‘Effective Date.’ Please review it periodically to stay informed.

11. Contact Us

For questions, requests, or complaints regarding this policy or your personal information, contact:
IndianStaples
Phone: +1 (519) 817-3900 (Mon–Sun, 9:00 AM – 6:00 PM)
Email: care@indianstaple.com
Website: https://www.indianstaples.com

If your concern is unresolved, you may also contact:
Office of the Privacy Commissioner of Canada
Phone: 1-800-282-1376
Website: https://www.priv.gc.ca