Privacy Policy

Last Updated: 2024-01-06

This Privacy Policy outlines how Giftinit.com collect, use, disclose, and safeguard your information when you visit our website or use our services. By using our website and services you agree to the terms of this Privacy Policy.

1. Information We Collect

a. Personal Identification Information. We ask for your personal identification information, such as your name, email address, phone number, media content. This information is required to create an order for the gift.

b. Non-Personal Identification Information. We ask for non-personal identification information, such as name, email address, phone numbers of another person, for who the user is sending the gift. This information is required for our services to function and be able to deliver the digital gift.

c. Country Information. When making a purchase we process information on the user’s country the purchase takes place from. This information is necessary to display user currency by the country.

d. Browsing information. We may collect your browsing related information, such as browser type, device information, and usage data when you visit our website. This is collected when the user gives permission to do it. This is needed to collect statistic data and improve our services for our customers.

2. How We Use Collected Information

a. Ordering gift. We use collected information to create an order for the gift, which later on needs to be virtually delivered to the recipient, who information was also provided by the user during ordering process.

b. Payment information. We do not access any of the payment information which you provide during ordering process to make a purchase. We use external payment provider integration, which collects your payment information and is certified to to do it.

3. Sharing Your Personal Data

We do not share your personal data with third parties except as described in this Privacy Policy.

a. Third party service providers. We engage the services of third-party providers to assist us in various operations, including but not limited to payment processing, email sending automation, SMS sending automation, website and app diagnostics, analytics, and more. Consequently, certain personal data may be processed by these service providers.

A selection of our primary, enduring service providers:

  • Emailing service providers, e.g., Sendgrid (provided by Twilio Inc.)
  • SMS sending service providers, e.g., Twilio (provided by Twilio Inc.)
  • Application analytics and diagnostics, e.g., Google Analytics
  • Payments processing, e.g., Stripe
4. Your Rights

You have the following rights related to the information we collect:

a. Delete. request us to erase your personal data;

b. Access - you can access your data by contacting us by email: [email protected]. We will send you the report of the data we have after identifying you as the owner of the collected data.

c. Correct. correct or update your personal data;

d. Revoke Consent. Cancel your consent in cases where processing relies on the consent you have given earlier.

Correction. If you would like to edit your profile information (e.g., change your email address), please contact our support team at [email protected].

Kindly be aware that you will be required to undergo the Account verification process to confirm that you are the owner of the Account before any further action can be taken on your request.

5. Data Security

We take the security and protection of your personal information seriously. This Data Security section outlines the measures we have implemented to ensure the confidentiality, integrity, and availability of your data.

1. Secure Database Storage. Your personal information is securely stored in our database, utilizing industry-standard security measures to protect against unauthorized access or breaches. We employ encryption and access controls to safeguard the integrity of the stored data.

2. Limited Access. Access to the database is restricted to authorized personnel who have a legitimate need to access such information. Our access control mechanisms ensure that only individuals with the necessary permissions can retrieve or modify the stored data.

3. Security Protocols. We maintain stringent security protocols and employ the latest technologies to mitigate potential risks. Our ongoing efforts include regular assessments and updates to address emerging threats and vulnerabilities in the realm of database security.

4. Data Retention and Deletion. We adhere to a carefully defined data retention policy. Personal data is retained only for the duration necessary to fulfill the purposes outlined in our Privacy Policy. Once this retention period expires or if data is no longer required, it is securely deleted from our database.

5. Incident Response. In the unlikely event of a data breach or security incident, our incident response plan is activated promptly. This includes a thorough assessment of the situation, immediate mitigation measures, and timely notifications to affected users and relevant authorities in accordance with applicable data protection laws.

6. Third-Party Security. When engaging third-party service providers with access to our database, we ensure that they adhere to robust security standards. Our contracts with these providers include explicit provisions for maintaining the security and confidentiality of the stored data.

6. Children's Privacy

a. Our website and services are not intended for individuals under the age of 16. We do not knowingly collect personal information from children.

7. Changes to Privacy Policy

a. We reserve the right to update or modify this Privacy Policy at any time. The updated policy will be posted on this page.

7. Contacting US

If you have any questions or concerns about our Privacy Policy, please contact us at [email protected]

Our Cookies Policy

By accepting, you agree to the utilization of cookies for ads and analytics, as outlined in our Cookie Policy, enhancing your experience with safer and more personalized interactions on this website.