Garcon Maigre
Shop
Shop
About Us
Contact
FAQ

Account

  • Sign In
  • Create Account
  • My Profile
  • Order History

Legal

  • Privacy Policy
  • Terms & Conditions
  • Returns Policy
  • Refund Policy

Shop

  • All Products

Support

  • Contact Us
  • FAQ
  • About Us
  • Shipping Info
  • InstagramInstagram Icon
  • FacebookFacebook Icon
  • TikTokTikTok Icon
  • YouTubeYouTube Icon

© 2025 Garcon Maigre. All rights reserved.

Privacy Policy

1. Introduction

This Privacy Policy describes how we collect, use, and protect your personal information when you use our e-commerce platform, website, and related services (the "Services"). We are committed to protecting your privacy and maintaining the security of your personal information.

2. Information We Collect

2.1 Personal Information You Provide

  • Account Information: Name, email address, phone number, display name

  • Address Information: Shipping and billing addresses including street address, complex/building name, suburb, city/town, province, and postal code

  • Payment Information: Payment method preferences (we do not store actual payment card details)

  • Contact Information: Information you provide when contacting us through forms or customer support

2.2 Information Automatically Collected

  • Usage Data: Pages visited, products viewed, cart interactions, and browsing behavior

  • Device Information: Browser type, device type, IP address, operating system

  • Analytics Data: Session recordings (with sensitive data masked), page views, click events

  • Authentication Data: Login timestamps, authentication method used

  • Performance Data: Error logs, system performance metrics

2.3 Information from Third Parties

  • Payment Processors: Transaction status and payment verification from Paystack and PayFast

  • Social Login: Basic profile information if you sign in through Google or Facebook

  • Content Management: Data from our Storyblok CMS for content delivery

3. How We Use Your Information

3.1 Service Provision

  • Process and fulfill your orders

  • Manage your account and provide customer support

  • Send order confirmations, shipping notifications, and transaction receipts

  • Provide personalized shopping recommendations

3.2 Communication

  • Respond to your inquiries and support requests

  • Send important service updates and security notifications

  • Provide marketing communications (with your consent)

3.3 Analytics and Improvement

  • Analyze usage patterns to improve our services

  • Conduct A/B testing and user experience research

  • Monitor system performance and security

  • Generate business analytics and insights

3.4 Legal and Security

  • Prevent fraud and unauthorized access

  • Comply with legal obligations and enforce our terms

  • Protect our rights and the rights of our users

4. Information Sharing and Disclosure

4.1 Service Providers

We share information with trusted third-party service providers who assist us in operating our platform:

  • Payment Processors: Paystack and PayFast for payment processing

  • Analytics Services: PostHog for user behavior analytics and error tracking

  • Content Delivery: Storyblok for content management

  • Cloud Infrastructure: Firebase for authentication, data storage, and hosting

  • Communication Services: Email and SMS service providers for notifications

4.2 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

4.3 Legal Requirements

We may disclose your information when required by law, court order, or to protect our rights and safety.

4.4 Consent

We may share your information with your explicit consent for specific purposes.

5. Data Security

5.1 Technical Safeguards

  • Encryption of data in transit and at rest

  • Secure authentication systems with Firebase Auth

  • Regular security monitoring and vulnerability assessments

  • Access controls and user permission management

5.2 Payment Security

  • We do not store payment card information

  • All payment processing is handled by PCI-compliant processors

  • Secure tokenization of payment methods

5.3 Data Retention

  • Account information: Retained while your account is active and for 7 years after closure for legal compliance

  • Order history: Retained for 7 years for accounting and legal purposes

  • Analytics data: Aggregated data retained indefinitely; personal identifiers removed after 2 years

  • Marketing data: Retained until you withdraw consent

6. Your Rights and Choices

6.1 Account Management

  • Access and update your account information

  • Change your communication preferences

  • Deactivate your account through account settings

6.2 Data Rights (POPIA Compliance)

  • Access: Request a copy of your personal information

  • Correction: Request correction of inaccurate information

  • Deletion: Request deletion of your personal information (subject to legal requirements)

  • Restriction: Request limitation of processing in certain circumstances

  • Portability: Request your data in a portable format

  • Objection: Object to certain types of processing

6.3 Marketing Communications

  • Unsubscribe from marketing emails using the link in emails

  • Contact us to opt out of SMS marketing

  • Manage notification preferences in your account settings

7. Cookies and Tracking Technologies

7.1 Types of Cookies

  • Essential Cookies: Required for basic site functionality and security

  • Analytics Cookies: PostHog analytics for understanding user behavior

  • Authentication Cookies: Firebase authentication sessions

  • Preference Cookies: Remember your settings and preferences

7.2 Cookie Management

  • Most browsers allow you to control cookies through settings

  • Essential cookies cannot be disabled without affecting site functionality

  • Analytics cookies can be managed through browser settings

8. International Data Transfers

Your information may be processed and stored in servers located outside South Africa. We ensure appropriate safeguards are in place for international transfers, including:

  • Adequacy decisions by regulatory authorities

  • Standard contractual clauses

  • Certification schemes and codes of conduct

9. Children's Privacy

Our services are not intended for children under 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will delete it promptly.

10. Contact Information

10.1 Data Protection Inquiries

For questions about this Privacy Policy or to exercise your data rights, contact us at:

Email: [INSERT EMAIL ADDRESS]
Phone: [INSERT PHONE NUMBER]
Address: [INSERT PHYSICAL ADDRESS]

10.2 Information Officer

Our Information Officer can be reached at: Email: [INSERT INFORMATION OFFICER EMAIL]

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on our website

  • Sending an email notification to registered users

  • Displaying a prominent notice on our platform

Your continued use of our services after changes become effective constitutes acceptance of the updated policy.

12. Legal Basis for Processing (POPIA)

We process your personal information based on:

  • Consent: When you provide explicit consent for specific purposes

  • Contract: When necessary to fulfill our contractual obligations

  • Legal Obligation: When required by applicable law

  • Legitimate Interest: When necessary for our legitimate business interests, balanced against your rights


Questions? If you have any questions about this Privacy Policy, please contact us using the information provided above.