Privacy policy

Privacy Policy

Last updated: May 23, 2026

Welcome to Heavenly Secret ("this website", "we", "us", or "our"). This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use our website, purchase products, or otherwise communicate with us.

Please read this Privacy Policy carefully. By using and accessing our services, you acknowledge that you have read and understand this Privacy Policy.


1. Personal Information We Collect

When you use our services, we may collect the following categories of personal information:



Category Details
Contact Details Name, address, billing address, shipping address, phone number, email address
Account Information Username, password, preferences
Transaction Information Products you view, add to cart, purchase, return, and past transactions
Payment Information Credit/debit card information, payment method, transaction details (processed by third-party payment processors)
Device Information IP address, browser type, device type, operating system
Usage Information How you interact with the website, browsing time, click behavior
Communication Information Information you provide when communicating with us (e.g., customer service inquiries)

Note: We do not collect sensitive personal information (e.g., religious beliefs, health data, genetic data) as defined under GDPR or CCPA.


2. How We Collect Personal Information



Source Description
Directly from you When you register an account, place an order, or contact us
Automatically When you browse the website, through cookies and similar technologies
Third parties Payment confirmation information from payment processors (e.g., Shopify Payments, PayPal, Airwallex)

Use of Cookies

We use cookies to:

  • Remember your shopping cart contents

  • Remember your login status

  • Analyze website traffic and usage

You can disable cookies through your browser settings, but this may affect website functionality.


3. How We Use Your Personal Information



Purpose Description
Provide Services Process orders, arrange shipping, manage your account
Customer Support Respond to your inquiries, handle complaints and returns
Marketing Communications Send promotional offers, new product notifications (you may unsubscribe at any time)
Service Improvement Analyze website usage, optimize user experience
Security & Fraud Prevention Detect and prevent fraudulent activity, protect account security
Legal Compliance Comply with legal obligations, respond to legal requests

Marketing Communications

We may use your email address to send you promotional information. You may opt out at any time by clicking the "unsubscribe" link in our emails. After opting out, we will still send you non-promotional emails (such as order confirmations and shipping notifications).


4. How We Disclose Your Personal Information

We may disclose your personal information in the following circumstances:



Recipient Description
Service Providers Shipping companies (delivery), payment processors (payment handling), technical support (website hosting)
Business Partners Only with your explicit consent
Legal Requirements Comply with laws, respond to subpoenas or court orders, protect our legal rights
Business Transfers In connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company

Cross-Border Data Transfer

Your information may be transferred to servers outside your country of residence (our website is hosted by Shopify, with servers possibly located in the US, Europe, etc.). We ensure such transfers comply with applicable data protection laws.


5. Third-Party Links

This website may contain links to third-party websites or services. These third-party websites have their own privacy policies, and we are not responsible for their privacy practices. We recommend reading the privacy policies of third-party websites when you leave our site.


6. Data Security

We take reasonable technical and organizational measures to protect your personal information from unauthorized access, use, or disclosure.

Please note: Internet transmission cannot be guaranteed 100% secure. When you send information to us over the internet, you do so at your own risk.

Your Responsibilities

  • Protect your account password

  • Do not log into your account on unsecured networks

  • Contact us immediately if you notice any suspicious account activity


7. Data Retention

We will retain your personal information for the following periods:



Data Type Retention Period
Account Information Duration of account + reasonable period after account closure
Transaction Records As required by law (typically 7 years)
Marketing Preferences Until you unsubscribe

8. Your Rights

Depending on your location, you may have the following rights:



Right Description
Right to Access Request access to the personal information we hold about you
Right to Rectification Request correction of inaccurate or incomplete personal information
Right to Erasure Request deletion of your personal information (subject to legal limitations)
Right to Restriction Request restriction of our processing of your information
Right to Data Portability Request transfer of your information to a third party
Right to Object Object to our processing based on legitimate interests
Right to Withdraw Consent Withdraw consent you previously gave

Automated Decision-Making: We do not engage in automated decision-making or profiling that produces legal or similarly significant effects concerning you.

How to Exercise Your Rights

To exercise any of these rights, please contact us using the contact details below. We will respond to your request within 30 days. We may need to verify your identity before processing your request.

Right to Complain

If you have a complaint about our privacy practices, you may contact us or lodge a complaint with your local data protection authority.


9. Special Information for International Users

For EU/UK Users

If you are located in the European Economic Area or the United Kingdom, you have the additional right to withdraw consent at any time where processing is based on consent, and the right to lodge a complaint with your local supervisory authority.

Legal Basis for Transfer: If we transfer your data outside the EEA, we will rely on Standard Contractual Clauses or other lawful transfer mechanisms.

For California Users (CCPA)

If you are a California resident, under the California Consumer Privacy Act (CCPA), you have the right to:

  • Know what personal information we collect

  • Request deletion of your personal information

  • Opt out of the sale of your personal information

We do not sell your personal information.

For Users in Other Regions

Regardless of where you are located, we are committed to handling your personal information in a transparent and responsible manner.


10. Children's Privacy

Our services are not directed to children under 18 years of age. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us to have it deleted.


11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. The updated policy will be posted on this page with an updated "Last updated" date. For material changes, we will notify you by email (sent to the email address associated with your account) or through a prominent notice on our website.

Your continued use of the services after such changes constitutes your acceptance of the revised Privacy Policy.


12. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your privacy rights, please contact us:

Heavenly Secret

Email: yanganshi713@outlook.com

Address: Room D07, 8/F, Block 2, Kai Tak Factory Building, 99 King Fuk Street, San Po Kong, Kowloon, Hong Kong


Quick Reference



Question Answer
What information do we collect? Name, address, email, payment info, device info
How do we use your information? Process orders, customer support, marketing
Who do we share information with? Shipping companies, payment processors, when required by law
What are your rights? Access, correct, delete, withdraw consent
How to contact us? yanganshi713@outlook.com