Privacy Policy

Privacy Policy

Last updated: June 2026

LumiOral ('we', 'us', 'our') is committed to protecting your personal information in accordance with the Kingdom of Saudi Arabia's Personal Data Protection Law (PDPL) and applicable data privacy regulations.

1. What Information We Collect

  • Account & order data: Name, email address, phone number, shipping address, and payment information (processed securely via Shopify Payments — we never store full card details)
  • Browsing data: Pages visited, products viewed, time on site, referring URLs, and device/browser information — collected via cookies and analytics tools
  • Communications: Any messages or emails you send us

2. How We Use Your Information

  • To process and fulfil your orders
  • To send order confirmations, shipping notifications, and customer support communications
  • To send marketing emails (only if you have opted in — you can unsubscribe at any time)
  • To improve our website and product offerings
  • To comply with legal obligations

3. Sharing Your Information

We do not sell your personal data. We share information only with trusted service providers who help us operate the store (shipping carriers, payment processors, email platforms) and only to the extent necessary to provide those services.

4. Data Retention

We retain order and account data for up to 7 years as required for tax and commercial record-keeping under Saudi law. Marketing data is retained until you unsubscribe or request deletion.

5. Your Rights

Under the Saudi PDPL, you have the right to: access your personal data, correct inaccurate data, request deletion of your data (subject to legal retention requirements), and object to data processing for marketing purposes. To exercise any of these rights, contact us at mashari.alshalhoub@gmail.com.

6. Cookies

We use essential cookies (required for the store to function) and optional analytics cookies. You may disable non-essential cookies in your browser settings.

7. Security

We use industry-standard SSL encryption and Shopify's PCI-compliant payment infrastructure to protect your data. No method of transmission is 100% secure, but we take every reasonable precaution.

8. Contact

For any privacy-related questions, email us at mashari.alshalhoub@gmail.com.