Privacy Policy
Last updated: May 29, 2026
Privacy Policy
Effective Date: January 1, 2025
At candyme.xyz, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website candyme.xyz or use our services. Please read this policy carefully. By accessing or using our platform, you acknowledge that you have read and understood this Privacy Policy.
1. Information We Collect
We collect information in several ways to provide and improve our services. The types of information we may collect include:
1.1 Personal Information You Provide
When you register an account, make a purchase, subscribe to our newsletter, or contact our support team, we may collect personal details such as:
- Full name
- Email address
- Billing and shipping address
- Phone number
- Payment information (processed securely through third-party payment processors; we do not store full credit card numbers)
- Account username and password
- Any other information you voluntarily provide in forms or communications
1.2 Information Collected Automatically
When you visit candyme.xyz, our servers and analytics tools automatically log certain information, including:
- IP address and browser type
- Device type and operating system
- Pages viewed, time spent on pages, and navigation paths
- Referring URL and exit pages
- Clickstream data and interaction patterns
- Approximate geographic location (city/country level)
1.3 Information from Third Parties
We may receive information about you from third-party services if you choose to connect your account with social media platforms (e.g., Google, Facebook) or payment processors. This includes your public profile information, email address, and authentication tokens, subject to the permissions you grant.
2. How We Use Your Information
We use the collected information for the following legitimate business purposes:
- Service Delivery: To process your orders, manage your account, provide customer support, and deliver the products or services you request.
- Communication: To send transactional emails (order confirmations, shipping updates, password resets) and respond to your inquiries.
- Personalization: To tailor content, product recommendations, and user experience based on your preferences and browsing behavior.
- Marketing: To send promotional materials, newsletters, and special offers (only with your explicit consent where required by law). You may opt out at any time.
- Analytics & Improvement: To analyze usage trends, diagnose technical issues, improve website functionality, and develop new features.
- Legal Compliance: To comply with applicable laws, regulations, legal processes, or enforceable governmental requests.
- Fraud Prevention: To detect, prevent, and address fraudulent transactions, unauthorized access, or other illegal activities.
3. Data Protection & Security
We implement industry-standard security measures to protect your personal information from unauthorized access, alteration, disclosure, or destruction. Our safeguards include:
- Encryption: All data transmitted between your browser and our servers is encrypted using TLS/SSL (HTTPS) protocol.
- Access Controls: Strict role-based access controls ensure that only authorized personnel can access personal data, and only for legitimate business purposes.
- Secure Storage: Personal information is stored on secure servers with firewalls, intrusion detection systems, and regular security audits.
- Payment Security: Payment transactions are processed through PCI DSS-compliant third-party gateways. We do not store full payment card details on our servers.
- Data Minimization: We collect only the data necessary for the purposes described in this policy and retain it only as long as required.
- Employee Training: Our team undergoes regular privacy and security awareness training to ensure responsible data handling.
While we strive to protect your data, no method of transmission or storage is 100% secure. We cannot guarantee absolute security, but we will promptly notify you in the event of a data breach affecting your personal information, as required by applicable law.
4. Cookies & Tracking Technologies
candyme.xyz uses cookies, web beacons, and similar tracking technologies to enhance your browsing experience, analyze site traffic, and deliver targeted advertisements. Here is how we use them:
4.1 Types of Cookies We Use
- Essential Cookies: Required for the website to function properly (e.g., session management, shopping cart functionality). These cannot be disabled.
- Performance Cookies: Collect anonymous data about how visitors use our site (e.g., pages visited, error messages). We use this to improve performance.
- Functional Cookies: Remember your preferences (e.g., language, region, login status) to provide a personalized experience.