Privacy Policy

Effective Date: January 1, 2026

1. Information We Collect

GaraHerb ("we," "us," or "our") collects information that you provide directly to us when you:

  • Purchase products from our website
  • Create an account
  • Subscribe to our newsletter
  • Contact customer support
  • Participate in surveys or promotions

Information collected includes:

  • Personal identifiers (name, email address, phone number)
  • Billing and shipping addresses
  • Payment information (processed securely through our payment processors)
  • Order history and preferences
  • Communications with us

2. How We Use Your Information

We use the information we collect to:

  • Process and fulfill your orders
  • Communicate with you about products, services, and promotions
  • Provide customer support
  • Improve our website and services
  • Detect and prevent fraud
  • Comply with legal obligations
  • Send you marketing communications (with your consent)

3. Information Sharing and Disclosure

We may share your information with:

  • Service Providers: Third-party companies that help us operate our business (payment processors, shipping companies, email service providers)
  • Business Transfers: In the event of a merger, acquisition, or sale of assets
  • Legal Requirements: When required by law or to protect our rights
  • With Your Consent: When you explicitly agree to share your information

We do not sell your personal information to third parties.

4. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Remember your preferences
  • Analyze website traffic and usage
  • Personalize content and advertisements
  • Improve user experience

You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of our website.

5. Data Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • SSL encryption for data transmission
  • Secure server infrastructure
  • Regular security audits
  • Access controls and authentication

However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.

6. Your Rights and Choices

You have the right to:

  • Access: Request access to your personal information
  • Correction: Request correction of inaccurate information
  • Deletion: Request deletion of your personal information
  • Opt-Out: Unsubscribe from marketing communications
  • Data Portability: Request a copy of your data in a portable format

To exercise these rights, please contact us at privacy@garaherb.com

7. Children's Privacy

Our website is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.

9. Third-Party Links

Our website may contain links to third-party websites. We are not responsible for the privacy practices of these websites. We encourage you to review their privacy policies before providing any personal information.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Effective Date" above. Your continued use of our website after any changes constitutes acceptance of the updated Privacy Policy.

11. Contact Us

If you have questions or concerns about this Privacy Policy or our privacy practices, please contact us:

Note: This Privacy Policy is designed to comply with general data protection principles. Depending on your jurisdiction, additional rights and protections may apply under laws such as GDPR (Europe), CCPA (California), or other applicable regulations.