Privacy Policy

Aylah Fine Jewellery (“AFJ”, “Aylah FJ”, "we", "us", or "our") respects your privacy and is committed to protecting the personal information you provide when you visit our website, aylahfinejewellery.com 
This Privacy Policy explains how we collect, use, disclose, and safeguard your information.

At Aylah Fine Jewellery (AFJ), privacy is taken seriously - we would never want to spam our clients or ruin any surprises. We therefore are committed to protecting the private information you supply to us. In cooperation with our Terms & Conditions, this Privacy Policy informs you what happens to your information, why we collect it, how we use it and how we store it.

Collection of personal information

In the course of its business, AFJ needs to gather and use certain information about individuals. This will include clients, suppliers and other business contacts, and employees, as well as other people that we have a relationship with, may need to contact, or with whom we need to deal.

This policy describes how this personal data is collected, processed, transferred, handled and stored in order to meet the requirements of data protection law, in particular the General Data Protection Regulation (GDPR). We recognise that, not only must we comply with the principles of fair processing of personal data, we must also be able to demonstrate that we have done so. The procedures and principles set out below must be followed at all times by AFJ, its employees and all those within its scope as set out below.

Information We Collect

We collect personal information that you provide us when you:

  • Make a purchase
  • Create an account
  • Contact us via email or forms

     

Personal information typically includes: 

  • Full name
  • Email address
  • Phone number
  • Shipping and billing addresses
  • Payment information (processed via secure third-party payment gateways)
  • Purchase history

     

Automatically Collected Information:
We may collect certain data automatically through cookies and similar tracking technologies, including:

  • IP address
  • Browser type
  • Device information
  • Pages visited and time spent on the site
  • Referral URLs

     

How We Use Your Information

We use the information we collect to:

  • Fulfill and manage orders
  • Process payments securely
  • Communicate with you regarding orders or customer service
  • Send promotional offers or newsletters (with your consent)
  • Improve and optimise the website, to ultimately better your shopping experience
  • Detect and prevent fraud

     

Sharing Your Information

We do not sell your personal data. We may share your information with trusted third parties to perform services on our behalf, such as:

  • Payment processors (e.g., Stripe, PayPal)
  • Shipping providers
  • Email marketing platforms (e.g., Mailchimp)
  • Analytics services (e.g., Google Analytics)
  • Customer support/service

     

These third parties are bound by confidentiality obligations and are only given access to necessary information. All such third parties are prohibited from using your personal information except to provide these services to Aylah Fine Jewellery, and they are required to maintain the confidentiality of your information. Aylah Fine Jewellery may disclose your personal information, without notice, if required to do so by law or in the good faith belief that such action is necessary to: (a) conform to the edicts of the law or comply with legal process served on AFJ or the site; (b) protect and defend the rights or property of Aylah Fine Jewellery; and/or (c) act under exigent circumstances to protect the personal safety of users of AFJ, or the public.

 

Cookies and Tracking Technologies

We use cookies to personalise your experience, remember your preferences, and analyse site traffic. You can modify your browser settings to decline cookies, but some features of the Site may not function properly.

Data Retention

We retain your personal data only as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

Your Rights and Choices

  • Request correction or deletion of your data
  • Object to or restrict processing
  • Withdraw consent (where applicable)
  • Lodge a complaint with a data protection authority

     

Security

We implement industry-standard measures to protect your information. However, no electronic transmission or storage method is 100% secure. We encourage you to use strong passwords and to take steps to protect your account.

Third-Party Links

Our Site may contain links to third-party websites. We are not responsible for their content or privacy practices. We recommend reviewing their privacy policies before providing any personal data.

Children’s Privacy

Our website is not intended for children under the age of 13. We do not knowingly collect data from children. If we learn we have collected personal information from a child without verified parental consent, we will delete that information promptly.

Scope of the policy

The Policy applies to all employees and contractors who are provided with access to any of our files and/or computer systems. Collectively these individuals are hereafter referred to as 'users'. All users have responsibility for complying with the terms of this Policy.

Data protection law - GDPR

The GDPR regulates how organisations must collect, handle and store personal data. Personal data is any information relating to an identified or identifiable living individual. It is information which enables that person to be identified, directly or indirectly, and may include their name, address, telephone number(s), email address(es), age, location data, or online and biometric identifiers.

What does the law say?

The GDPR contains a number of key principles which apply to the collection and processing of personal data and which underpin everything that follows. See the key principles below.

Lawfulness, fairness and transparency

Personal data shall be processed lawfully, fairly and in a transparent manner in relation to the data subject

Purpose limitation

Personal data shall be collected for specified, explicit and legitimate purposes and not further processed in a manner that is incompatible with those purposes

Data minimisation

Personal data shall be adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed

Storage limitation

Personal data shall be kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed

Integrity and confidentiality

Personal data shall be processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures

Erasure of personal data

Data subjects have a right to require Aylah FJ to erase personal data held about them when:

  • Aylah FJ no longer needs the data it is holding for the purposes for which it was originally collected
  • the data subject wishes to withdraw their consent to Aylah FJ holding and processing the data
  • the data subject objects to Aylah FJ holding and processing the data, and there is no overriding legitimate interest which allows us to continue to do so
  • the personal data has been processed unlawfully
  • the personal data needs to be erased in order for Aylah FJ to comply with a particular legal obligation.

Where we are obliged to do so, we will erase the information and inform the data subject that we have done so, within one month of the request. Again, in complex cases, we may extend that period by up to two months, and again where the data is held by third parties to whom it has been disclosed, we will ensure that they are informed and that the data that they hold is erased.

Changes to This Policy

We reserve the right to update this Privacy Policy at any time.