Privacy Policy | Lotus Mala — Handcrafted Nepali Malas

A simple promise about your privacy

We see privacy as an expression of respect. When you visit lotusmala.com or place an order for a handcrafted mala, we collect only what’s essential to process your order, keep you informed, and give you a thoughtful shopping experience.

We are based in Kathmandu, Nepal, and ship our malas and ritual items to customers around the world. Our commitment is to be transparent about how we handle your information and to keep it safe.

By using our site or ordering from Lotus Mala, you accept the practices described here. If anything is unclear, please reach out — we’re happy to explain.

What information we collect

We collect information in two ways: what you give us directly, and what is collected automatically as you browse. Everything we gather helps us deliver and improve our service.

Information you share with us

  • Contact details — your name, email, phone number, and shipping address when you place an order or contact us.
  • Order details — items purchased, quantities, and any custom requests for bespoke pieces.
  • Payment details — payments are handled by secure third-party processors; we never keep full card numbers on our servers.
  • Messages — correspondence you send via email, WhatsApp or the contact form, so we can respond and keep a helpful record.
  • Account information — if you register an account, we store your login details in a secure way.

Information we collect automatically

  • Device & browser data — IP address, browser type, operating system, and device identifiers.
  • Site activity — pages you view, links clicked, and how long you spend on our pages.
  • Approximate location — inferred from IP address to help with shipping estimates (country/region level only).
  • Cookies & tracking — small files that help the site remember preferences and measure performance. See the Cookies section below.
Important: We do not collect sensitive information such as health data, political opinions, or religious beliefs. We also do not knowingly collect information from children under 16 without parental consent.

How we use the information

We use your information only for clear, specific reasons — to fulfill orders, keep you informed, improve our shop, prevent fraud, and comply with the law. Below is a quick reference.

Purpose What we use Why
Process & deliver your order Name, address, email, payment info Contractual necessity — to complete your purchase
Send order updates & tracking Email, phone Contractual necessity — to keep you informed
Manage returns & refunds Order details, contact info Contractual necessity — to fulfil our obligations
Answer your questions Name, email, message content Legitimate interest — customer support
Prevent fraud & abuse IP address, order history Legitimate interest — protect customers & business
Improve the website Analytics & browsing data Legitimate interest — better experience
Send marketing (if you opt in) Email address Consent — only with your permission
Comply with laws Relevant records Legal obligation

We will never sell your personal information. If we need to use your data for another purpose, we’ll let you know first.

Cookies & tracking technologies

Cookies are small files stored on your device that help the site work and let us understand how people use Lotus Mala. They make shopping smoother and help us improve the experience.

Types of cookies we use

  • Essential cookies — required for core features like shopping cart, secure checkout, and login. These cannot be switched off.
  • Analytics cookies — used to see how visitors use the site (anonymised).
  • Preference cookies — remember settings such as language or currency so your experience feels personal.
  • Marketing cookies — only used if you consent; they help us show relevant offers on other platforms.

How to manage cookies

You can change your browser settings to block or delete cookies, or use our consent banner to tailor your preferences. Keep in mind that blocking some cookies may affect site features.

For instructions on managing cookies in your browser, visit aboutcookies.org.

Who we share information with

We never sell or trade your personal data. We share it only with carefully chosen partners who help us operate — and only to the extent needed for the task.

Who we share with

  • Shipping carriers — such as DHL, FedEx and Aramex, who need your name, address and contact to deliver and provide tracking.
  • Payment providers — Stripe, PayPal and card networks process payments under their own security rules; we do not store full card numbers.
  • Site & analytics services — tools like Google Analytics and WooCommerce/WordPress help us improve the store using anonymised data.
  • Customer support platforms — messages you send via email or WhatsApp are stored in those systems to help us respond.
  • Law & safety — where required by law or to protect rights and safety, we may disclose information to authorities.

All partners we work with are contractually obliged to keep your data secure and to use it only for the stated purpose. They may not use your information for their own marketing unless you consent.

How we protect your information

We care deeply about security. Our site uses SSL/TLS encryption (the padlock in your browser) to protect data in transit, and we follow industry practices to keep data safe at rest.

  • Payments are handled by PCI-DSS compliant gateways.
  • Access to personal data is limited to authorised team members who need it to do their work.
  • We routinely review security practices and update systems when needed.
  • Our servers are protected by firewalls and monitored for suspicious activity.

Please note: No system is perfectly secure. While we take strong measures to protect your information, if you suspect a security issue with your account, contact us immediately at info@lotusmala.com.

How long we keep your data

We keep personal data only as long as it is needed for business or legal purposes. Below is our typical retention schedule.

  • Order records — retained for 7 years for accounting and legal compliance.
  • Customer accounts — kept while the account is active or until you request deletion.
  • Marketing preferences — kept until you unsubscribe or ask us to remove you.
  • Support messages — usually kept for 2 years after the last interaction.
  • Analytics data — anonymised and aggregated; not tied to individuals.

When data is no longer needed, we securely delete or anonymise it so it cannot be linked back to you.

Your privacy rights

Depending on where you live, you may have rights over your personal data. We respect those rights for all customers and will work with you to exercise them.

Access

Request a copy of the personal data we hold about you.

Correction

Ask us to update or correct information that is inaccurate or incomplete.

Deletion

Request that we delete your personal data, unless we are legally required to keep it.

Portability

Receive your data in a structured, machine-readable format.

Object

Object to certain uses of your data, such as direct marketing.

Restrict processing

Ask us to limit how we use your data in specific circumstances.

Withdraw consent

Withdraw any consent you've given us, without affecting earlier processing.

Opt out of marketing

Unsubscribe from marketing communications at any time using the link in our messages.

To exercise these rights, email info@lotusmala.com. We aim to respond within 30 days and may need to verify your identity before fulfilling requests.

Third-party links

We link to external websites for services like courier tracking, payment gateways, or social profiles. When you leave our site, this privacy policy does not apply to those sites.

We encourage you to read the privacy policies of any third-party sites before sharing personal information. We are not responsible for their practices or content.

Children's privacy

Our site is not intended for children under 16. We do not knowingly collect personal information from anyone under 16 without parental consent. If you believe a child has shared their information, contact us and we will remove it promptly.

Changes to this policy

We may update this policy to reflect changes in our practices or legal requirements. When we make important updates, we will change the "Last updated" date above and may notify you by email where appropriate.

Please review this page periodically to stay informed about how we protect your information.

Current version: March 2026. Previous versions are available on request.

Questions about privacy?

If you have questions, want to exercise your data rights, or have a concern about how we handle your information, please get in touch. We take every privacy enquiry seriously and respond promptly.

Lotus Handicrafts
Dhara Tole, Boudha, Kathmandu, Nepal

Email: info@lotusmala.com
WhatsApp: +977-9813762286
Website: www.lotusmala.com

We aim to reply to privacy enquiries within 2 business days.