Last Updated: May 11, 2025
This Privacy and Cookie Policy explains how Zaibaz (“we,” “us,” or “our”) collects, uses, shares, and protects your personal information when you visit our website www.zaibaz.com, make purchases, or interact with our services. It also describes how we use cookies and similar technologies. “You” refers to any user of our services, whether as a customer, website visitor, or another individual whose information we collect under this policy.
Please read this policy carefully. By using our Services, you agree to the practices described in this policy. If you do not agree, please do not use our Services.
This Privacy Policy explains how we collect, use, share, and protect your personal information, including payment information, when you use our website, mobile applications, or other services in Pakistan. We are committed to safeguarding your privacy in compliance with applicable Pakistani laws, including the Prevention of Electronic Crimes Act 2016 (PECA), Payment Systems and Electronic Fund Transfers Act 2007, and general data protection principles.
Changes to This Policy
We may update this policy periodically to reflect changes in our practices, legal requirements, or operational needs. The updated policy will be posted on our website with a revised “Last Updated” date. Your continued use of our Services after changes are posted constitutes your acceptance of the updated policy. We encourage you to review this page regularly.
How We Collect and Use Your Personal Information
We collect personal information to provide and improve our Services, fulfill orders, process payments, and comply with legal obligations. The types and uses of information depend on how you interact with us. We may also use your information to communicate with you, enhance our Services, prevent fraud, and protect our rights and those of our users.
Types of Personal Information We Collect
Information You Provide Directly
When you use our Services, you may provide:
Contact Information: Name, email address, phone number, and shipping/billing address.
Order Information: Details related to purchases, such as items ordered, payment details (e.g., credit/debit card number, bank account details, or mobile wallet information), and delivery preferences.
Account Information: Username, password, and security-related details if you create an account.
Customer Support Information: Information you share when contacting us, such as inquiries or feedback via email, phone, or our website.
You may choose not to provide certain information, but this may limit your ability to use features like placing orders, processing payments, or accessing account-specific functionalities.
Information Collected Automatically
We automatically collect certain information about your interactions with our Services (“Usage Data”) using cookies, pixels, and similar technologies. This may include:
Device Information: Device type, operating system, browser type, and IP address.
Browsing Information: Pages visited, time spent on our website, links clicked, and referral URLs.
Network Information: Internet service provider and connection details.
Payment Interaction Data: Information about your interaction with payment forms or gateways, such as timestamps or errors, collected to ensure secure transactions.
Information from Third Parties
We may receive information about you from third parties, such as:
Service Providers: Vendors like hosting providers, e-commerce platforms (e.g., WooCommerce), or payment processors (e.g., Easypaisa, JazzCash, Stripe, PayPal) who collect payment or order fulfillment details on our behalf.
Analytics Providers: Tools like Google Analytics that help us understand website usage.
Marketing Partners: Partners who assist with advertising or promotional campaigns.
Third-party information is handled in accordance with this policy and applicable laws.
How We Use Your Personal Information
We use your personal information to:
Provide Services: Process orders, manage accounts, arrange shipping, handle returns/exchanges, process payments, and send order-related notifications (e.g., order confirmations, shipping updates, payment receipts).
Improve Services: Analyze usage patterns to enhance website functionality, user experience, payment processes, and product offerings.
Marketing and Promotions: Send promotional emails, SMS, or targeted ads about our products, unless you opt out. We may personalize content based on your preferences and browsing history, with your consent where required.
Customer Support: Respond to inquiries, resolve issues, and provide assistance via email, phone, or other channels.
Security and Fraud Prevention: Detect and prevent fraudulent activities, secure our website, protect user accounts, and verify payment transactions in compliance with PECA.
Legal Compliance: Comply with Pakistani laws, respond to legal requests (e.g., court orders), and enforce our Terms & Conditions.
Cookies and Similar Technologies
We use cookies and similar technologies (e.g., pixels, web beacons) to operate and improve our Services. Cookies are small data files stored on your device that help us remember your preferences, track usage, and deliver personalized content.
Types of Cookies We Use
Essential Cookies: Necessary for website functionality, such as maintaining your shopping cart, login session, or secure payment processing.
Performance Cookies: Collect analytics data to understand how users interact with our website (e.g., which pages are most visited).
Marketing Cookies: Enable personalized ads and track the effectiveness of marketing campaigns.
Third-Party Cookies: Set by partners like Google Analytics or payment processors to provide analytics or facilitate secure transactions.
Managing Cookies
You can control cookies through your browser settings to accept, reject, or delete them. Disabling cookies may affect website functionality, such as preventing you from adding items to your cart, completing purchases, or processing payments. Most browsers allow you to:
Block cookies by default.
Delete existing cookies.
Set preferences for specific websites.
Our website does not currently respond to “Do Not Track” signals, as there is no universal standard for these signals. To learn more about managing cookies, visit www.allaboutcookies.org.
Online Payment Privacy
Collection of Payment Information
When you make a purchase, we collect payment information necessary to process your transaction, including:
Payment Method Details: Credit/debit card number, expiration date, CVV code, bank account details, or mobile wallet information (e.g., Easypaisa, JazzCash).
Billing Information: Name, billing address, and contact details associated with the payment method.
This information is collected directly by us or by our third-party payment processors through secure payment gateways integrated into our website.
Use of Payment Information
We use payment information to:
Process Transactions: Authorize and complete your purchase, including verifying payment details and preventing fraud.
Issue Refunds: Process returns, exchanges, or refunds as needed.
Recordkeeping: Maintain transaction records for accounting, tax, or legal compliance purposes, as required by the Payment Systems and Electronic Fund Transfers Act 2007.
Security of Payment Information
We prioritize the security of your payment information by:
Encryption: Using industry-standard encryption (e.g., SSL/TLS) to protect payment data during transmission.
Tokenization: Where applicable, payment processors replace sensitive payment details with tokens to minimize data exposure.
Compliance: Ensuring payment processing complies with State Bank of Pakistan regulations and Payment Card Industry Data Security Standards (PCI DSS).
Limited Storage: Storing only the minimum payment data necessary (e.g., last four digits of a card or transaction ID for reference) and relying on payment processors to securely handle sensitive details.
We do not store full credit card numbers, CVV codes, or bank account details on our servers after a transaction is complete, unless required by law or for recurring payments with your explicit consent.
Sharing of Payment Information
We share payment information only as necessary to process transactions or comply with legal obligations, including with:
Payment Processors: Third-party providers like Easypaisa, JazzCash, Stripe, or PayPal, who process payments on our behalf and comply with State Bank of Pakistan regulations and PCI DSS.
Fraud Prevention Services: Tools that analyze transactions to detect and prevent fraudulent activity, in line with PECA.
Legal Authorities: When required by Pakistani law, such as court orders or requests from the Federal Investigation Agency (FIA), to prevent fraud or cybercrime.
Our payment processors operate under their own privacy policies, which we encourage you to review (e.g., Easypaisa Privacy Policy, Stripe Privacy Policy).
How We Share Your Personal Information
We may share your personal information, including payment information, in the following circumstances:
Service Providers: With vendors who perform services on our behalf, such as hosting providers, e-commerce platforms (e.g., WooCommerce), payment processors (e.g., Easypaisa, JazzCash), shipping companies, and analytics providers (e.g., Google Analytics).
Marketing Partners: With partners who assist with advertising or promotions, subject to their privacy policies and your consent. Payment details are not shared for marketing purposes.
Affiliates: Within our corporate group to support business operations.
Legal Obligations: To comply with Pakistani laws, respond to legal requests (e.g., court orders, FIA investigations), or protect our rights, users, or others, as required under PECA.
Business Transactions: In connection with a merger, acquisition, or sale of assets, where your information may be transferred to another entity.
With Your Consent: When you explicitly agree, such as when using social media integrations or requesting we share information with a third party.
In the past 12 months, we may have shared the following categories of personal information for the purposes described above:
Identifiers (e.g., name, email, IP address).
Commercial information (e.g., order details, purchase history, payment details).
Internet activity (e.g., browsing behavior, Usage Data).
Geolocation data (e.g., approximate location based on IP address).
We do not sell your personal information or share sensitive personal information (e.g., CNIC numbers, full payment details) without your consent.
User-Generated Content
If you post reviews, comments, or other content on public areas of our website (e.g., product reviews), this content will be publicly accessible. We are not responsible for how others may use or share this information. Please avoid sharing sensitive personal information, such as payment details or CNIC numbers, in public posts.
Third-Party Websites and Links
Our website may contain links to third-party websites (e.g., social media platforms, payment processors). We are not responsible for the privacy practices, security, or content of these sites. Please review their privacy policies before providing personal information, including payment details. Our inclusion of links does not imply endorsement.
Children’s Privacy
Our Services are not intended for children under 16, and we do not knowingly collect personal information, including payment information, from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us to request deletion.
Security and Retention
We implement reasonable security measures to protect your personal information, including:
Encryption: For payment data and other sensitive information during transmission and storage.
Secure Hosting: Through providers with robust security protocols.
Access Controls: Limiting access to personal information to authorized personnel only.
We comply with PECA and State Bank of Pakistan guidelines to prevent unauthorized access, data breaches, or cybercrimes. However, no system is completely secure, and we cannot guarantee absolute security, especially for information transmitted over the internet.
We retain your personal information, including payment information, only as long as necessary to:
Provide Services (e.g., maintain your account, process orders, process payments).
Comply with legal obligations (e.g., tax laws, State Bank of Pakistan regulations).
Resolve disputes or enforce agreements.
When information is no longer needed, we securely delete or anonymize it. Payment information is typically retained only for the duration of the transaction, except for limited data needed for legal or accounting purposes.
Your Privacy Rights
Under Pakistani law and general data protection principles, you may have the following rights regarding your personal information, including payment information:
Access: Request details about the personal information we hold and how we use or share it.
Deletion: Request that we delete your personal information, subject to legal retention requirements.
Correction: Request that we correct inaccurate information.
Opt-Out: Opt out of promotional communications (e.g., via the unsubscribe link in emails or by contacting us). You may still receive non-promotional messages, such as order confirmations or payment receipts.
Restrict Processing: Request that we limit how we use your information, where permitted by law.
Withdraw Consent: Withdraw consent for processing where we rely on your consent.
To exercise these rights, contact us using the details below. We may verify your identity (e.g., by confirming your email, phone number, or CNIC details, if applicable) before responding. You may also designate an authorized agent to make requests on your behalf, provided we can verify their authority.
We will not discriminate against you for exercising your rights. If we deny your request, you may appeal by contacting us, and we will respond as required by law.
Complaints
If you have concerns about how we handle your personal information, including payment information, please contact us using the details below. If you are unsatisfied with our response, you may contact the Pakistan Telecommunication Authority (PTA) or the Federal Investigation Agency (FIA) Cybercrime Wing for issues related to data protection or electronic transactions. Contact details are available at www.pta.gov.pk or www.fia.gov.pk.
International Data Transfers
Your personal information, including payment information, may be transferred to and processed in countries outside Pakistan (e.g., the United States) where our service providers (e.g., payment processors, hosting providers) operate. We use appropriate safeguards, such as contractual agreements, to ensure compliance with Pakistani laws and protect your data. By using our Services, you consent to such transfers.
Contact Us
For questions about this policy or to exercise your privacy rights, please contact us at:
Team Zaibaz
Email: support@zaibaz.com
Phone: 03263036676
Address: Malir, Karachi 75040, Pakistan
For applicable data protection laws, Zaibaz is the data controller of your personal information.