Privacy Policy
Last updated: September 6, 2025
Welcome to GigainnovationNA ("we", "us", "our"). This Privacy Policy explains how we collect, use, disclose, and protect personal information when you visit or make purchases through our website https://gigainnovationna.com/ and use our multi-vendor cosmetics marketplace (the "Platform"). By accessing or using the Platform, you consent to the practices described in this Policy.
1. Scope and Acceptance
- Scope: This Policy applies to personal information collected through the Platform and related services. It does not apply to information collected offline or by third parties that do not act on our behalf.
- Acceptance: By using the Platform, you acknowledge that you have read and agree to this Privacy Policy. If you do not agree, please do not use the Platform.
2. Information We Collect
We collect information necessary to provide and improve our services. Types of information we collect include:
- Account Information:
name
, email address
, password
(hashed), phone number
, billing and shipping addresses
.
- Order and Transaction Data:
order history
, items purchased
, payment method details
(we do not store full card data — card processing is handled by our payment providers), billing invoices
.
- Seller Information: business name, contact details, bank/payment settlement information, product listings, and compliance documents.
- Customer Support Data: messages, emails, and other communications with our support team.
- Device and Usage Data: IP address, browser type and version, operating system, device identifiers, pages viewed, referring URLs, clickstream data, and timestamps.
- Cookies and Tracking Technologies: cookies, local storage, web beacons, and similar technologies to recognize you and remember preferences.
- Marketing Data: preferences, promotional interactions, and consent choices.
- Sensitive Data: We generally do not collect sensitive personal data (e.g., race, religion, health) except where voluntarily provided by users when necessary (e.g., allergy information in product reviews). If sensitive data is provided, we will treat it with heightened protection and only use it for the purpose disclosed.
3. How We Use Your Information
We use personal information for the following purposes:
- To provide and maintain the Platform: process orders, manage accounts, facilitate payments, and deliver products.
- To communicate: send account notices, order confirmations, shipment updates, and respond to inquiries or support requests.
- To improve our services: analyze usage, diagnose technical issues, and enhance Platform features and performance.
- To personalize experience: recommend products, remember preferences, and show targeted content or offers.
- To prevent fraud and ensure security: detect and prevent fraudulent transactions, abuse, and other prohibited activity.
- For marketing and promotions: send newsletters, promotional offers, and advertising where you have consented; you can opt out at any time.
- Legal and compliance: comply with legal obligations, enforce terms, and protect rights and property.
4. Legal Bases for Processing (where applicable)
If you are located in a jurisdiction that requires a legal basis for processing (e.g., the EU), our legal bases include:
- Contractual necessity: processing necessary to perform the contract (e.g., fulfill your orders).
- Consent: when you give clear consent for specific purposes (e.g., marketing).
- Legitimate interests: for Platform operation, fraud prevention, security, and analytics (balanced with your rights).
- Legal obligation: to comply with laws, regulations, and legal processes.
5. Sharing and Disclosure
We may share personal information in the following circumstances:
- With sellers: order and shipping information necessary for sellers to fulfill purchases.
- Service providers: third-party vendors who perform services on our behalf (payment processors, hosting, analytics, shipping carriers, customer support providers). These vendors are contractually required to protect data and only use it to provide services.
- Business transfers: in the event of a merger, acquisition, or asset sale, personal data may be transferred as part of the transaction (we will notify users where required).
- Legal requirements: to comply with legal processes, law enforcement requests, court orders, or to protect rights, property, safety, or the Platform.
- With your consent: when you authorize sharing for specific purposes.
- Aggregated or de-identified data: may be shared or published for analytics or marketing in a form that does not identify individuals.
6. Cookies and Tracking Technologies
- Cookies: We and our partners use cookies to provide features, remember preferences, analyze traffic, and support advertising. Cookies can be
session
(expire when you close your browser) or persistent
(remain on your device).
- Third-party trackers: We use third-party analytics and advertising partners (e.g., Google Analytics, advertising networks). These parties may set their own cookies and collect information about your online activities across sites.
- Managing cookies: You can manage or disable cookies via your browser settings, but disabling certain cookies may affect Platform functionality.
7. Data Retention
- Retention period: We retain personal information as long as necessary to provide services, comply with legal obligations, resolve disputes, and enforce agreements.
- Specific rules: Order records and transaction data are typically retained for tax, accounting, and legal purposes (varies by jurisdiction). We will delete or anonymize data when no longer needed.
8. International Data Transfers
- Cross-border transfers: Our services involve servers and third-party providers in multiple countries. Personal data may be transferred, stored, and processed outside your country of residence.
- Safeguards: Where required, we implement safeguards (such as standard contractual clauses or equivalent measures) to protect data when transferred internationally.
9. Security
- Measures: We implement reasonable administrative, technical, and physical safeguards to protect personal information from unauthorized access, disclosure, alteration, or destruction (e.g., encryption in transit, access controls).
- Breach response: In the event of a data breach, we will follow incident response procedures and notify affected users and regulators as required by law.
10. Your Rights (where applicable)
Depending on your jurisdiction, you may have rights regarding your personal data, including:
- Access: request a copy of personal data we hold about you.
- Correction: request correction of inaccurate or incomplete data.
- Deletion: request deletion of your personal data (subject to legal retention obligations).
- Restriction: request restriction of processing in certain circumstances.
- Portability: receive your data in a commonly used, machine-readable format.
- Objection: object to processing based on legitimate interests or for direct marketing.
- Withdraw consent: withdraw consent for processing where consent was the basis.
To exercise your rights, contact us at the contact details below. We may need to verify your identity and may limit requests where permitted by law.
11. Children
- Minimum age: The Platform is not intended for children under 13 (or higher minimum age as required by local law). We do not knowingly collect personal data from children under the applicable minimum age. If we learn we have collected information from a child without parental consent, we will take steps to delete it.
12. Third-Party Links and Services
- Third-party sites: The Platform may contain links to third-party websites and services. This Policy does not apply to those sites; please review their privacy policies before providing personal information.
13. Sellers and Third-Party Policies
- Seller policies: Sellers on our marketplace may have their own privacy practices for data they collect directly (e.g., through interactions, promotions). Buyers and users should review seller-provided privacy notices where applicable.
14. Marketing and Promotional Communications
- Marketing: With your consent (where required), we may send marketing emails or messages about products, promotions, or events. You can opt out of marketing communications at any time via unsubscribe links or by contacting us.
- Transactional messages: Order confirmations, shipment updates, and customer service communications are necessary to provide the service and may be sent regardless of marketing preferences.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will post the updated Policy on the Platform and update the "Last updated" date. For material changes, we will provide prominent notice (e.g., email or banner) as required by law.
16. Contact Information
If you have questions, requests, or complaints about this Privacy Policy or our data practices, contact us at: