Your Cart

  • Privacy Policy

    This Privacy Policy describes how Sultan Attars ("we," "us," or "our"), an e-commerce platform selling luxury attars and perfumes, collects, uses, processes, and protects your Digital Personal Data when you visit or make a purchase from our website, https://sultanattar.com.

    By accessing or using the Site, you agree to the terms of this Privacy Policy and consent to the collection and processing of your personal data as described herein.

  • Digital Personal Data We Collect

    We only collect Digital Personal Data that is necessary for the specified purposes outlined below (Principle of Data Minimisation). The data collected includes:

    # Category of Data Examples of Data Collected Purpose of Collection
    1 Identity and Contact Data Name, Email Address, Phone Number, Billing Address, Shipping Address. To process and fulfill your orders, communicate regarding your order status, and provide customer support.
    2 Transactional Data Details about products purchased, order history, and payment method used (Note: We do not store full credit/debit card details, which are processed by secure, compliant payment gateways). To complete transactions, manage returns, and for internal accounting/legal records.
    3 Technical Data IP Address, browser type, operating system, time zone setting, location data, and other technology on the devices you use to access the Site. To maintain the security of our Site, prevent fraud, and diagnose technical issues.
    4 Usage Data Information about how you use our Site, including browsing patterns, pages viewed, time spent, and referral sources. To analyze and improve our product offerings, website performance, and user experience.
    5 Marketing and Communications Data Your preferences in receiving marketing from us and your communication preferences. To send promotional offers and newsletters (only if explicitly opted-in/consented to) and manage your communication choices.
  • Consent and Notice (DPDP Act Compliant)

    We will process your Digital Personal Data only with your free, specific, informed, unconditional, and unambiguous consent, signified by a clear affirmative action (e.g., ticking a box or clicking an "I agree" button) on or before the point of data collection.

    • Notice: At the time of collecting your consent, we will provide you with an itemised notice explaining the specific personal data being processed and the purpose of its processing (e.g., "We collect your shipping address to deliver your order").
    • Withdrawal of Consent: You have the right to withdraw your consent for the processing of your personal data at any time. Withdrawal of consent will not affect the lawfulness of processing based on consent before its withdrawal. However, it may affect our ability to provide certain services to you (e.g., we cannot process an order without a shipping address).
  • How We Use Your Digital Personal Data

    Your data is used solely for the specified purposes for which it was collected. These include:

    • Processing and fulfilling orders and completing transactions.
    • Communicating with you about your account, orders, and customer service requests.
    • Improving our Site, products, and services.
    • Sending marketing communications and promotional materials via email/SMS if you have explicitly consented.
    • Detecting, preventing, and addressing fraud or other illegal activity.
    • Complying with our legal and regulatory obligations under Indian law (including the DPDP Act).
  • Sharing and Disclosure of Digital Personal Data

    We are committed to maintaining the confidentiality of your data. We do not sell your personal data to third parties. We may only disclose or share your data with trusted third parties for the following limited purposes:

    • Service Providers: With third-party vendors, consultants, and other service providers (e.g., payment gateways, shipping/logistics partners, and IT/hosting providers) who require access to the data to perform services on our behalf and are legally bound to protect it.
    • Legal Compliance: When required by law, court order, or governmental authority to comply with legal processes or governmental requests.
    • Business Transfers: In connection with a merger, sale of company assets, financing, or acquisition of all or a portion of our business by another company.
  • Data Security and Retention

    • Security: We implement reasonable security safeguards, including technical and organisational measures, to protect your Digital Personal Data from unauthorised access, use, disclosure, alteration, or destruction.
    • Retention: We retain your Digital Personal Data only for as long as is necessary to fulfill the purposes for which it was collected or as required by applicable laws (e.g., for tax or legal compliance). Once the purpose is no longer served, or upon the withdrawal of consent (where applicable and subject to legal exceptions), we will securely delete or anonymize your data.
  • Your Rights as a Data Principal (Data Principal Rights)

    In compliance with the DPDP Act, you, the Data Principal, have the following rights concerning your Digital Personal Data processed by us (the Data Fiduciary):

    • Right to Access: You have the right to request information about your personal data being processed and a summary of such processing activities.
    • Right to Correction and Completion: You have the right to request the correction of inaccurate or misleading personal data and the completion of incomplete data.
    • Right to Erasure (Deletion): You have the right to request the erasure of your personal data where the purpose for which it was collected is no longer being served.
    • Right to Grievance Redressal: You have the right to a readily available grievance redressal mechanism.
  • Cookies and Tracking Technologies

    We use cookies and similar tracking technologies to track the activity on our Site and hold certain information. You have the right to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. However, this may prevent you from taking full advantage of the Site.

  • Grievance Redressal and Contact Information

    If you have any questions about this Privacy Policy, wish to exercise any of your rights as a Data Principal, or have a grievance regarding the processing of your Digital Personal Data, please contact our designated Grievance Officer:

    Grievance Officer:

    We will strive to address your concern in a timely and effective manner.

Call