Privacy policy

Privacy Policy

Last Updated: June 19, 2026

Kafftan ("we," "our," "us") operates the website, mobile experience, products, and services available through our online store (collectively, the "Services").

We are committed to protecting your privacy and handling your personal information responsibly and transparently. This Privacy Policy explains how we collect, use, process, disclose, store, and protect your personal information when you visit our website, place an order, create an account, subscribe to our communications, or otherwise interact with us.

By accessing or using our Services, you acknowledge that you have read and understood this Privacy Policy.


1. Information We Collect

We may collect the following categories of personal information:

Personal Identification Information

  • Full name
  • Email address
  • Mobile phone number
  • Billing address
  • Shipping address
  • Country and region

Order & Transaction Information

  • Products purchased
  • Order history
  • Payment confirmation
  • Refund information
  • Exchange and return information

Account Information

  • Login credentials
  • Password (encrypted)
  • Account preferences
  • Wishlist information

Device & Technical Information

  • IP address
  • Browser type
  • Device information
  • Operating system
  • Language preferences
  • Website usage data

Marketing Information

  • Newsletter subscriptions
  • Marketing preferences
  • Product interests
  • Survey responses

Customer Service Information

  • Messages sent to us
  • Customer support requests
  • Reviews and feedback

2. How We Collect Information

We collect information:

Directly From You

When you:

  • Create an account
  • Place an order
  • Subscribe to our newsletter
  • Contact customer support
  • Submit reviews
  • Participate in promotions

Automatically

Through:

  • Cookies
  • Pixel tags
  • Analytics tools
  • Website logs
  • Similar tracking technologies

From Third Parties

Including:

  • Shopify
  • Payment gateways
  • Shipping partners
  • Marketing providers
  • Analytics providers
  • Social media platforms

3. How We Use Your Information

We use your information to:

Fulfill Orders

  • Process payments
  • Deliver products
  • Manage returns and exchanges
  • Provide order updates

Customer Service

  • Respond to inquiries
  • Resolve complaints
  • Improve customer experience

Marketing

  • Send promotional communications
  • Share new product launches
  • Provide personalized offers

You may unsubscribe from marketing communications at any time.

Website Improvement

  • Analyze website performance
  • Improve navigation and functionality
  • Enhance user experience

Security & Fraud Prevention

  • Detect fraudulent activity
  • Prevent unauthorized access
  • Protect our customers and business

Legal Compliance

  • Comply with legal obligations
  • Respond to lawful government requests
  • Enforce our policies and terms

4. Legal Basis for Processing (GDPR)

For users located in the European Economic Area (EEA), United Kingdom, and similar jurisdictions, we process personal information under the following legal bases:

  • Performance of a contract
  • Compliance with legal obligations
  • Legitimate business interests
  • Consent where required

5. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Remember your preferences
  • Keep you logged in
  • Measure website performance
  • Personalize your shopping experience
  • Deliver relevant advertising

You can control cookie preferences through your browser settings.

Disabling cookies may affect website functionality.


6. Sharing Your Information

We do not sell your personal information.

We may share your information with:

E-Commerce Platform

Our store is hosted on Shopify.

Payment Processors

To securely process payments.

Logistics Partners

For shipping and delivery purposes.

Marketing Partners

For email marketing and advertising services.

Professional Advisors

Lawyers, accountants, auditors, and consultants.

Government Authorities

When legally required.

All third-party service providers are required to protect your personal information.


7. International Data Transfers

As Kafftan serves customers globally, your personal information may be transferred to and processed in countries outside your country of residence.

Where required by law, we implement appropriate safeguards, including:

  • Standard Contractual Clauses (SCCs)
  • Data Processing Agreements
  • Adequacy Decisions
  • Other lawful transfer mechanisms

8. Data Retention

We retain personal information only for as long as necessary to:

  • Fulfill orders
  • Meet legal obligations
  • Resolve disputes
  • Maintain business records

When information is no longer required, it will be securely deleted or anonymized.


9. Your Privacy Rights

Depending on your jurisdiction, you may have the following rights:

Right to Access

Request a copy of your personal information.

Right to Correction

Request correction of inaccurate information.

Right to Deletion

Request deletion of your personal information.

Right to Data Portability

Receive your information in a portable format.

Right to Restrict Processing

Request limitation of certain processing activities.

Right to Object

Object to marketing or certain data processing activities.

Right to Withdraw Consent

Withdraw previously provided consent at any time.

Right to Lodge a Complaint

File a complaint with the applicable privacy regulator.


10. Region-Specific Privacy Rights

India (DPDP Act 2023)

Indian users have the right to:

  • Access personal information
  • Correct inaccurate information
  • Request deletion of information
  • Withdraw consent
  • Seek grievance redressal

European Union & United Kingdom (GDPR / UK GDPR)

EU and UK users have rights including:

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Portability
  • Objection
  • Withdrawal of consent

United States

Residents of certain U.S. states may have rights to:

  • Know what information is collected
  • Access collected information
  • Correct information
  • Delete information
  • Opt out of targeted advertising
  • Limit sharing of personal information

Canada (PIPEDA)

Canadian customers may:

  • Access their personal information
  • Correct inaccuracies
  • Withdraw consent subject to legal limitations

Brazil (LGPD)

Brazilian customers may:

  • Confirm data processing
  • Access personal data
  • Correct data
  • Request anonymization or deletion
  • Request portability

Australia & New Zealand

Customers may:

  • Request access to personal information
  • Request corrections
  • Lodge complaints with privacy regulators

11. Children's Privacy

Our Services are not directed toward individuals under the age of 18.

We do not knowingly collect personal information from children.

If we become aware that information from a child has been collected, we will delete it promptly.


12. Security Measures

We implement commercially reasonable safeguards including:

  • SSL encryption
  • Secure payment processing
  • Restricted data access
  • Firewall protection
  • Regular security monitoring

However, no method of internet transmission or electronic storage is completely secure.


13. Third-Party Links

Our website may contain links to third-party websites.

We are not responsible for the privacy practices of those websites. We encourage users to review their privacy policies.


14. Changes to This Privacy Policy

We may update this Privacy Policy periodically.

Any changes will be posted on this page with an updated revision date.

Continued use of our Services after changes become effective constitutes acceptance of the revised Privacy Policy.


15. Contact Us

If you have any questions regarding this Privacy Policy or wish to exercise your privacy rights, please contact us:

Kafftan

Email: privacy@kafftan.com

Customer Support: support@kafftan.com

Address: Surat, Gujarat, India

Response Time: Within 30 days of receiving your request.


For Victory Team: Before publishing, replace the email addresses, phone number, and legal business address with your actual business details. For maximum compliance, pair this with separate Terms of Service, Cookie Policy, Return & Refund Policy, and Data Deletion Request pages on your Shopify store.