Privacy and data protection

Privacy Policy

This policy explains how Al-Rawda Egypt collects, uses and protects information when you browse the store, create an account, place an order or contact us.

Last updated: 24 July 2026

1

Data used to serve you

We use the minimum information needed to fulfil orders and support your account.

2

No card details stored

Online card payments are processed on the payment provider’s secure page.

3

Optional analytics

Analytics, marketing and attribution tools operate only after consent.

1. Who is responsible for your data?

Al-Rawda Egypt is responsible for personal information collected through this website. You can reach us through the Contact page or the published contact numbers.

2. Information we collect

The information depends on how you use the store. You may browse without an account and check out as a guest.

  • Order and delivery details: name, email, phone numbers, address, governorate, city, delivery notes and ordered products.
  • Optional account data: email, hashed password, name, phone, saved addresses, notification preferences and order history.
  • Payment data: payment method, status and provider reference. We do not store full card numbers or security codes.
  • Bank transfer or InstaPay evidence: the proof image you upload and information needed to review it.
  • Reviews and messages: name, rating, review text, contact-form messages and reply details.
  • Technical and security information: device and browser type, session identifiers, error logs, security events and limited or hashed IP information where needed to prevent abuse.
  • After consent, marketing attribution: visit source, campaign, landing page and advertising click identifiers.
  • A device notification token, device family and app version when app notifications are enabled.

3. How we use information

We use information to operate the service and manage the store, including to:

  • Maintain carts, price orders, calculate shipping and fulfil purchases.
  • Process payments, review transfers and prevent fraud and disputes.
  • Share delivery details with the carrier and provide tracking and support.
  • Create and secure accounts, merge guest carts, save addresses and show order history.
  • Send account and order messages by email, WhatsApp or push notification according to your preferences.
  • Publish approved reviews while keeping the reviewer’s email private.
  • Answer enquiries, improve the store and measure performance where appropriate consent exists.
  • Meet accounting and legal obligations and protect customers and the company.

4. Cookies and your choices

Necessary cookies run the cart, authentication, language choice and privacy preference. They cannot be disabled through the consent banner because they provide services you request.

We do not create campaign-attribution cookies or activate analytics and advertising tools until you accept them. You can reset your decision by deleting the consent cookie in your browser and revisiting the site.

  • Guest cart cookie: up to 30 days.
  • Account and session cookies: for their configured security and renewal periods.
  • Language preference: remembers Arabic or English.
  • Consent preference: up to 180 days.
  • Attribution cookies after consent: up to 90 days.

5. Service providers

We do not sell personal information. We share only what is necessary with hosting, database, storage and error-monitoring providers; Kashier for hosted payments; Bosta for delivery; and email, WhatsApp and Firebase Cloud Messaging providers.

With consent, Google Analytics, Google Tag Manager and advertising platforms may operate. Some pages may embed Google Maps or privacy-enhanced YouTube content; direct interaction is also governed by those providers’ policies.

6. Retention and deletion

We retain information as needed to fulfil orders, provide support, comply with accounting and legal duties, resolve disputes and secure the service. The period varies by record and purpose.

When an account-deletion request is completed, saved addresses are deleted, sessions are revoked and account identifiers are anonymised. De-identified order records may remain for bookkeeping or legal needs. Limited copies may remain temporarily in backups until their retention cycle ends.

7. Your rights and choices

You may request access or correction, ask to delete your account, object to optional uses or withdraw analytics and marketing consent. We may request appropriate identity verification, and legal or third-party-rights exceptions may apply.

8. Security

We use encrypted connections, strong password hashing, revocable secure sessions, administrative permissions, sensitive-log redaction, backups and error monitoring. No transmission or storage method is risk-free, so controls are reviewed and improved continuously.

9. Processing in other countries

Some technical providers may process information in other countries according to their data-centre locations. We limit the information involved and use available safeguards under applicable requirements.

10. Children

The store is not directed at children creating accounts or ordering independently. A parent or guardian who believes a child supplied information without permission may contact us to review and remove it where appropriate.

11. Policy updates

We may update this policy when website features, providers or legal requirements change. The new version and revision date will appear here, and we will request new consent when a change requires it.

Have a question or data request?

Send your request through the Contact page or speak to us on WhatsApp. Mention that it concerns privacy so it reaches the appropriate person.

This policy is written for the new website’s actual operation and current data-safety requirements, subject to legal review before final launch.