Last updated: February 27 2026
1. Who we are
cilfo.com ( “we”, “us”, “our” ) is committed to protecting your privacy. If you have any questions about this policy, please email us at [email protected].
2. What personal data we collect
We may collect three types of information:
| Type | Examples | Why we collect it |
|---|---|---|
| Information you give us | Name, email address, billing or shipping address, phone number, comments you leave, files you upload. | To create or manage your account, process orders, answer enquiries, and improve our service. |
| Automatically collected data | IP address, browser type, operating system, device type, pages you view, click‑through links, cookies, and other tracking data. | To keep the site working, understand how you use it, and show you relevant content or ads. |
| Data from other sources | Publicly available information, data shared by trusted partners (e.g., Google Analytics, AdSense) when you have given consent. | To enhance your experience and for analytics or advertising purposes. |
3. How we use your data
We use your personal data only for the following legitimate purposes:
- Providing our services – creating accounts, processing payments, delivering products, answering support requests.
- Improving the website – fixing bugs, adding features, analysing traffic.
- Communicating with you – sending order updates, security notices, newsletters (only if you opted‑in).
- Personalising content and ads – showing you items or ads that match your interests.
- Legal obligations – complying with tax, fraud‑prevention, and other legal requirements.
- Research and analytics – aggregated, anonymised data may be used for statistical purposes.
4. Legal basis for processing
We process your data based on one or more of the following:
- Contract – when you order a product or request a service.
- Legal obligation – when the law requires us to keep records.
- Legitimate interests – improving our site, preventing fraud, and marketing (you can object at any time).
- Consent – when you explicitly agree to receive newsletters or marketing messages.
5. Who can see your data
- Our staff and service providers – only those who need the data to do their job (e.g., payment processors, email providers, hosting companies).
- Partners for analytics and advertising – Google Analytics, Google AdSense, Amazon Associates, etc. They use the data only as described in their own privacy policies.
- Legal authorities – when we are legally required to disclose information.
We never sell your personal data to third parties.
6. International transfers
If a service provider is located outside your country, we ensure that the transfer is protected by standard contractual clauses or that the provider offers an equivalent level of protection.
7. Cookies and similar technologies
We use cookies to:
- Necessary cookies – keep you logged in and remember your preferences.
- Functionality cookies – remember your name/email in comment forms.
- Analytics cookies – measure site usage (Google Analytics).
- Advertising cookies – show relevant ads (Google AdSense, Amazon).
You can manage or delete cookies through your browser settings. Disabling cookies may limit some site features.
8. Your rights
You have the following rights under applicable data‑protection laws (e.g., GDPR, CCPA):
- Right to know what personal data we hold about you.
- Right of access – receive a copy of your data.
- Right to correct – ask us to fix inaccurate data.
- Right to delete – request removal of your data (subject to legal exceptions).
- Right to restrict processing – limit how we use your data.
- Right to data portability – receive your data in a common, machine‑readable format.
- Right to object – stop us from using your data for direct marketing or profiling.
- Right to withdraw consent – you can change your mind about any consent you gave.
- Right to complain – lodge a complaint with a supervisory authority if you feel your rights are not respected.
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
9. Data retention
We keep your personal data only as long as necessary:
- Account data – while your account is active, plus any period required by law.
- Order & payment data – typically 7 years for tax and accounting purposes.
- Analytics data – aggregated and anonymised after 26 months.
10. Security measures
We protect your data with:
- Encryption (HTTPS) for data in transit.
- Secure servers and regular security patches.
- Access controls – only authorised staff can view personal data.
- Anonymisation and pseudonymisation where feasible.
While we strive to keep your data safe, no method is 100 % secure. If a breach occurs, we will notify the relevant authorities and affected individuals promptly.
11. Children’s privacy
Our services are not directed at children under 16, and we do not knowingly collect personal data from them. If we discover such data, we will delete it immediately.
12. Changes to this policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated “Last updated” date. We encourage you to review it regularly.
13. Contact us
If you have any questions, concerns, or requests regarding your privacy, please contact us:
Email: [email protected]