Privacy Policy

Last updated: April 23, 2026   |   Effective date: April 23, 2026

This Privacy Policy explains how MegaCarto (“we,” “us,” or “our”), operating at megacarto.store, collects, uses, shares, and protects the personal information of customers and visitors who use our website. We sell physical products, digital products, and services to customers worldwide.

By using our website, you agree to the collection and use of information in accordance with this policy.

1. Who We Are

MegaCarto is an ecommerce business registered at online. We operate globally and are committed to protecting your privacy and handling your personal data transparently and responsibly.

If you have any questions about this policy, please contact us at privacy@megacarto.store.

2. Information We Collect

We collect personal information when you browse our website, create an account, place an order, or contact us. This includes:

Identity and contact details

  • Full name, email address, and phone number
  • Billing address and shipping address

Account and login information

  • Username and encrypted password
  • Order history and saved preferences
  • Wishlist items and product reviews

Payment information

  • Credit/debit card details processed securely via our payment provider
  • We do not store your full card number — only encrypted tokens provided by our payment gateway (e.g. Stripe, PayPal)

Technical and usage data

  • IP address, browser type, and device type
  • Pages visited, products viewed, and time spent on site
  • Referring website and search terms used
  • Cookie identifiers and session data

Communications

  • Messages and enquiries sent to our customer support team
  • Feedback, reviews, or survey responses you submit

3. How We Use Your Information

We use your personal information for the following purposes:

  • Processing and fulfilling orders — to confirm purchases, arrange delivery, issue invoices, and handle returns or refunds
  • Account management — to create, maintain, and secure your customer account
  • Customer support — to respond to your enquiries, resolve disputes, and provide after-sales assistance
  • Marketing communications — to send promotional emails, special offers, and product updates (only with your consent; you may opt out at any time)
  • Personalization — to recommend products and tailor the shopping experience based on your preferences and history
  • Improving our services — to analyze site usage, fix bugs, and improve product offerings
  • Fraud prevention and security — to detect and prevent fraudulent transactions and unauthorized account access
  • Legal compliance — to meet our obligations under applicable laws, including tax, accounting, and consumer protection regulations

4. Sharing Your Information

We do not sell, rent, or trade your personal information to third parties. We may share your data with trusted partners only where necessary:

  • Shipping and logistics providers — to deliver your orders (e.g. DHL, FedEx, local couriers)
  • Payment processors — to securely handle transactions (e.g. Stripe, PayPal)
  • Email and marketing platforms — to send order confirmations and promotional communications (e.g. Mailchimp, Klaviyo)
  • Analytics providers — to understand website traffic and user behavior (e.g. Google Analytics)
  • Cloud and hosting services — to store data and run our platform securely
  • Legal and regulatory authorities — when required by law, court order, or to protect our legal rights

All third-party service providers are required by contract to protect your personal data and may only use it for the specific purposes we have authorized.

5. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to operate and improve our website. These include:

  • Essential cookies — necessary for the site to function correctly, such as maintaining your shopping cart and login session
  • Analytics cookies — help us understand how visitors use our site so we can improve performance
  • Marketing and advertising cookies — used to deliver relevant advertisements and track the effectiveness of campaigns
  • Preference cookies — remember your settings such as language and currency

You can manage or disable cookies through your browser settings or our cookie consent banner when you first visit our site. Please note that disabling essential cookies may affect how the website functions.

6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy or as required by law:

  • Order and transaction records — retained for 7 years for accounting, tax, and legal compliance
  • Customer account data — retained for the lifetime of your account, plus 2 years after closure
  • Marketing preferences — retained until you withdraw consent or unsubscribe
  • Website analytics data — retained for up to 26 months
  • Customer support communications — retained for up to 3 years after resolution

When data is no longer required, we securely delete or anonymize it.

7. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Right of access — request a copy of the personal data we hold about you
  • Right to rectification — request correction of inaccurate or incomplete data
  • Right to erasure — request deletion of your personal data (“right to be forgotten”)
  • Right to data portability — receive your data in a structured, machine-readable format
  • Right to object — object to processing based on legitimate interests or for direct marketing
  • Right to restrict processing — ask us to limit how we use your data in certain circumstances
  • Right to withdraw consent — opt out of marketing communications at any time by clicking “Unsubscribe” in any email or contacting us directly

EU/EEA customers: You have rights under the General Data Protection Regulation (GDPR). You may also lodge a complaint with your local Data Protection Authority.

California residents: You have rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected, the right to delete it, and the right to opt out of its sale. We do not sell personal information.

To exercise any of your rights, please contact us at privacy@megacarto.store. We will respond within 30 days.

8. International Data Transfers

As we operate globally, your personal data may be transferred to and processed in countries other than your own — including Pakistan, the United States, the European Union, and others. These countries may have different data protection laws than your country of residence.

Where required by applicable law (such as GDPR), we ensure that appropriate safeguards are in place for international transfers, including the use of Standard Contractual Clauses (SCCs) approved by the European Commission.

9. Security

We implement industry-standard technical and organizational security measures to protect your personal information from unauthorized access, loss, misuse, or disclosure. These include:

  • SSL/TLS encryption for all data transmitted between your browser and our website
  • Encrypted storage for sensitive information such as passwords and payment tokens
  • Restricted internal access to personal data on a need-to-know basis
  • Regular security reviews and vulnerability assessments

While we take all reasonable steps to protect your data, no method of transmission over the internet is 100% secure. If you believe your account has been compromised or notice any unauthorized activity, please contact us immediately at privacy@megacarto.store.

10. Children’s Privacy

Our website and services are not directed at children under the age of 13 (or 16 in the EU/EEA). We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal data without your consent, please contact us at privacy@megacarto.store and we will delete that information promptly.

11. Third-Party Links

Our website may contain links to third-party websites or services. We are not responsible for the privacy practices of those websites. We encourage you to read the privacy policies of any third-party sites you visit.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or business operations. When we make material changes, we will notify you by:

  • Sending a notification to your registered email address, and/or
  • Posting a prominent notice on our website

The “Last updated” date at the top of this page will always reflect the most recent version. We encourage you to review this policy periodically.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

MegaCarto
Email: privacy@megacarto.store
Address: Lahore, Punjab, Pakistan
Response time: We aim to respond to all requests within 30 days.