Privacy policy
KHAISTA Privacy Policy
Last updated: May 2026
We know privacy policies can feel like a chore to read. So we've written ours in plain English — no legal jargon, no waffle. Just a straightforward explanation of how we handle your information, and why.
If you have any questions after reading this, please don't hesitate to get in touch at sales@khaista.com. We're always happy to help.
---
1. Who we are
We're KHAISTA Ltd, a UK-based artisan jewellery brand. Our registered office is at Office 1814, 321-323 High Road, Chadwell Heath, Essex, RM6 6AX, United Kingdom.
When we say "we", "us" or "Khaista" in this policy, we mean KHAISTA Ltd.
---
2. What information we collect
When you shop with us or get in touch, we may collect:
- Your name and contact details (email address, phone number, delivery address)
- Payment information (processed securely — we never store your full card details)
- Your order history and browsing behaviour on our site
- Your IP address and device/browser information
- Any messages you send us through our contact form or by email
We only collect what we actually need. Nothing more.
---
3. Why we collect it
We use your information to:
- Process and fulfil your orders
- Send you order confirmations and shipping updates
- Respond to your questions and customer service requests
- Improve our website and shopping experience
- Send you marketing emails — but only if you've given us permission to do so
We will never sell your personal information to anyone. Ever.
---
4. Marketing emails
If you've signed up to hear from us, we'll occasionally send you emails about new arrivals, exclusive offers, and styling inspiration. Every email includes an easy unsubscribe link — one click and you're off the list, no questions asked.
If you'd like to opt out at any time, just email us at sales@khaista.com or click unsubscribe in any of our emails.
---
5. How we share your information
We only share your information with trusted third parties who help us run our business:
- Shopify — our e-commerce platform, which processes and stores your order data securely
- Royal Mail and delivery partners — to get your order to you
- Payment processors (e.g. Stripe, PayPal) — to handle your payment securely
- Email marketing tools — to send you updates you've opted into
All our partners are required to handle your data responsibly and in line with UK data protection law.
---
6. Shopify & payments
Our store runs on Shopify, one of the world's most trusted e-commerce platforms. Your payment details are encrypted using SSL technology and processed to PCI-DSS standards. We never see or store your full card number.
For more on how Shopify handles data, visit shopify.com/legal/privacy.
---
7. Cookies
Like most websites, we use cookies to make your experience better. Here's what they do:
- Session cookies — remember your basket and keep you logged in
- Analytics cookies — help us understand how people use our site so we can improve it
- Marketing cookies — help us show you relevant ads (only with your consent)
You can manage your cookie preferences at any time through your browser settings.
---
8. How we protect your information
We take the security of your data seriously. We use industry-standard SSL encryption, secure servers, and follow all relevant data protection regulations to keep your information safe.
No system is 100% foolproof, but we do everything we reasonably can to protect your data.
---
9. How long we keep your information
We keep your order information for as long as necessary to fulfil legal and business obligations (typically up to 7 years for financial records). Marketing data is kept until you unsubscribe or ask us to delete it.
---
10. Your rights
Under UK GDPR, you have the right to:
- Access the personal information we hold about you
- Ask us to correct any inaccurate information
- Ask us to delete your information (the "right to be forgotten")
- Object to how we use your information
- Request a copy of your data in a portable format
To exercise any of these rights, simply email us at sales@khaista.com. We'll respond within 30 days.
---
11. Children
Our website is not intended for children under the age of 16. We do not knowingly collect personal information from children.
---
12. Changes to this policy
We may update this policy from time to time. When we do, we'll update the "last updated" date at the top. We'll notify you of any significant changes by email if we have your contact details.
---
13. Contact us
If you have any questions about this privacy policy or how we handle your data, please get in touch:
Email: sales@khaista.com
Post: KHAISTA Ltd, Office 1814, 321-323 High Road, Chadwell Heath, Essex, RM6 6AX
We're a small, friendly team and we take every enquiry seriously. 😊