Privacy Policy
Last updated: September 8, 2025
1. Overview
Reiki Crystal ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and retain personal data when you use our website and services.
2. Information We Collect
We collect the following categories of information:
- Contact & Account Data: name, email, phone, shipping and billing address.
- Transaction & Payment Data: items purchased, transaction amounts, transaction IDs, and payment gateway reference data. Payment card data (full card number or CVV) is NOT stored on our servers — payment processing is handled by the payment gateway (Razorpay).
- Device & Technical Data: IP address, browser type, operating system, device identifiers, cookies and tracking information, pages visited and timestamps.
- Regulatory & Compliance Data: information required for KYC, fraud prevention and tax purposes, such as government IDs or business registration documents when applicable.
3. How We Use Your Data
- To process and fulfill orders and payments.
- To communicate about orders, updates, promotions and support requests.
- To detect and prevent fraud and abuse, and to comply with legal obligations (including KYC).
- To analyze and improve our services and customer experience (analytics).
- To comply with legal obligations or respond to lawful requests from public authorities.
4. Sharing & Third Parties
We share personal information with service providers who perform services on our behalf, including payment processors (such as Razorpay), shipping companies, analytics providers, fraud detection services, and professional advisors. These providers only receive the minimum data necessary to perform their services.
We also may disclose personal data to comply with legal obligations, to respond to lawful requests by public authorities (including to meet national security or law enforcement requirements), or to protect rights and safety.
Razorpay’s publicly stated privacy practices describe its collection and use of transaction, device, and regulatory data when providing payment services. If you make payments through Razorpay, your transaction data and certain technical data will be handled by Razorpay as described in their privacy documentation.
5. Cookies & Tracking
We use cookies and similar tracking technologies for functionality, analytics, and advertising. You can set your browser to refuse cookies, but some features of the site may not function properly if you do so.
6. Payment Security & Card Data
For payment security, we rely on our payment gateway provider (Razorpay) to process card transactions in a PCI-compliant manner. We do not store full card numbers, expiry or CVV codes on our systems. If you see a payment form hosted by Razorpay or another gateway, that form is served by the gateway and card details are sent directly to the gateway per its security practices.
7. Retention
We retain personal data for as long as necessary to provide services, comply with legal obligations, resolve disputes, and enforce our agreements. Specific retention periods may vary depending on the type of data and legal requirements.
8. International Transfers
Your data may be transferred to, or stored at, destinations outside your jurisdiction for processing by service providers. When we transfer personal data internationally, we will ensure appropriate safeguards are in place consistent with applicable law.
9. Your Rights
Depending on your jurisdiction, you may have rights to access, correct, delete, or restrict processing of your personal data, and to receive a copy in a portable format. To exercise these rights contact us at info@reikicrystalassam.com.
10. Law Enforcement Requests
We may disclose personal data to law enforcement or public authorities if required by law or in response to a valid legal request. Razorpay publicly discloses that it may comply with lawful requests by authorities — payment processors may be required to provide transaction data or other records in response to legal process.
11. Security Measures
We implement commercially reasonable administrative, technical and physical safeguards to protect personal data. However, no security system is impenetrable — if you suspect your data has been compromised, contact us immediately.
12. Changes to this Policy
We may update this Privacy Policy from time to time. We will post the new Policy on this page and update the "Last updated" date. Continued use after changes constitutes acceptance of the revised Policy.
13. Contact
Questions about this privacy policy or requests to exercise your data rights should be sent to:
Email: info@reikicrystalassam.com
Address: Reiki Crystal Store, Guwahati, Assam, India