Votre panier est vide.
Politique de Confidentialité
1. INTRODUCTION AND SCOPE
This Privacy Policy describes in detail how Mech-O LTD (“we”, “us”, “our”) collects, uses, processes, stores, protects, and shares your personal information when:
- You browse our website
- You create an account
- You request a service
- You communicate with us
- You purchase a product or service
- You interact with any digital platform owned by Mech-O
This Policy applies to:
✔ Website visitors
✔ Customers
✔ Potential clients
✔ Account holders
✔ Users interacting with forms, chat, support systems
✔ Anyone contacting Mech-O via any digital channel
It does NOT apply to employees, job applicants, or contractor relationships (these require separate internal policies).
2. DEFINITIONS
To ensure full transparency, here are key definitions used in this document:
- “Personal Data” – Any information that identifies or can identify an individual (name, email, phone, IP address, etc.)
- “Processing” – Any operation performed on personal data (collecting, storing, analyzing, sharing, etc.)
- “Data Subject” – You, the individual providing data
- “Data Controller” – Mech-O LTD, who decides how and why data is processed
- “Data Processor” – Any third-party service provider processing data on our behalf
- “Consent” – Freely given, specific, informed, unambiguous permission
3. WHAT DATA WE COLLECT (FULL LIST)
We collect several categories of data:
3.1. Identity Information
- Full name
- Username
- Date of birth (if required)
- Gender (if required)
3.2. Contact Information
- Adresse
- Mobile phone
- Business contact details (if relevant)
3.3. Account Information
- Login credentials
- Password (encrypted)
- Profile preferences
- Communication preferences
3.4. Technical & Device Information
- IP address
- Device type
- Browser type and version
- Operating system
- Screen resolution
- Language preferences
- Time zone settings
- Interaction logs
3.5. Behavioral & Usage Data
- Pages visited
- Click patterns
- Time spent on pages
- Scroll behavior
- Referring website
- Conversion tracking
- Heatmaps (if tools like Hotjar are used)
3.6. Transactional & Financial Data
- Order history
- Payment confirmation
- Partial billing information (we do NOT store full card numbers)
- Invoices and receipts
- Delivery details
3.7. Communication Data
- Emails
- Messages sent via forms
- Chat conversations
- Customer support records
- Call logs (if applicable)
3.8. Marketing & Advertising Data
- Newsletter subscription status
- Social media engagement
- Advertising interactions (Facebook Pixel, Google Ads)
- Retargeting data
3.9. Cookies and Tracking Technologies
We collect cookies for:
- Session tracking
- Authentication
- Analytics
- Marketing
- Personalization
Full cookie list available in our Cookie Policy (can be generated if you want).
4. HOW WE COLLECT DATA
We collect data through:
4.1. Direct Collection
When you actively enter or submit information.
4.2. Automated Collection
Through cookies, pixels, scripts, and analytics tools.
4.3. Third-Party Sources
- Payment processors
- Delivery partners
- Marketing partners
- Verification services
- Social media platforms (Facebook, Instagram, TikTok)
5. PURPOSES OF DATA PROCESSING (EXPANDED LIST)
We process your data for the following detailed purposes:
5.1. Service Provision
- Create and manage your account
- Provide customer support
- Deliver services you requested
- Manage appointments or bookings
5.2. Order Fulfillment
- Confirm orders
- Verify payments
- Process deliveries
- Send invoices
5.3. Communication
- Respond to inquiries
- Send updates, notifications, or alerts
- Provide customer support
5.4. Marketing
- Promote our services
- Send newsletters
- Personalized offers
- Retargeting ads
- Social media ads
5.5. Analytics & Improvement
- Analyze website usage
- Improve interface, features, and performance
- Detect bugs or errors
- Understand customer preferences
5.6. Security
- Detect suspicious activity
- Prevent fraud
- Protect our website from attacks
- Enforce terms of service
5.7. Legal Obligations
- Keep accounting records
- Comply with tax obligations
- Support investigations
- Respect Mauritius legal requirements
6. LEGAL BASES FOR PROCESSING
Under the Mauritius DPA 2017, we rely on:
- Consent
- Contractual obligation
- Legitimate interests
- Legal obligations
- Vital interest (rare: emergencies)
7. DATA SHARING (FULL DISCLOSURE)
We may share your data with:
7.1. Third-Party Service Providers
- Web hosting companies
- Cloud providers
- Payment gateways
- Delivery companies
- CRM systems
- Email marketing tools (Mailchimp, etc.)
- IT security providers
- Analytics services
7.2. Government Authorities
Only if legally required.
7.3. Business Partners
If:
- You initiate a service with them
- A collaboration exists
- You provide explicit permission
7.4. Business Transfers
If:
- Merger
- Acquisition
- Restructuring
- Bankruptcy
Your data may be transferred as an asset.
8. INTERNATIONAL TRANSFERS
If data leaves Mauritius:
- We ensure adequate safeguards
- Standard contractual clauses (SCC)
- Risk assessments
- GDPR-equivalent protections
9. DATA RETENTION POLICY
We keep data only as long as necessary:
- Account information → until deletion
- Transaction data → 7 years (legal requirement)
- Cookies → per cookie type
- Marketing data → until unsubscribed
After retention ends, data is:
- Irreversibly anonymized
- Or securely deleted
10. DATA SECURITY MEASURES (ADVANCED)
We implement:
- SSL/HTTPS
- Firewalls
- Intrusion detection systems
- Database encryption
- Two-factor authentication (optional)
- Encrypted backups
- DDoS protection
- Strict access control
- Regular vulnerability scans
- Staff confidentiality agreements
11. AUTOMATED DECISION-MAKING & PROFILING
We may use automated systems for:
- Fraud detection
- Personalized marketing
- Service recommendations
You have the right to request manual review of such decisions.
12. YOUR RIGHTS AS A DATA SUBJECT (EXTENDED)
Under the Mauritius DPA 2017, you have:
- Right to be informed
- Right of access
- Right to rectification
- Right to erasure
- Right to object
- Right to restrict processing
- Right to data portability
- Right to withdraw consent
- Right to refuse marketing
- Right to lodge a complaint
Complaint authority:
Data Protection Office, Mauritius
13. HOW TO EXERCISE YOUR RIGHTS
You may contact us at:
📧 Email: [Insert]
📞 Phone: [Insert]
📍 Address: [Insert]
We respond within 30 days.
14. CHILDREN’S DATA
We do not knowingly collect data from children under 16.
If this occurs, we delete it immediately.
15. THIRD-PARTY LINKS
We are not responsible for external sites.
Please review their privacy policies.
16. CHANGES TO THIS POLICY
We may update this policy at any time.
Major updates will be communicated via:
- Website notification
17. CONTACT INFORMATION
For any privacy questions:
Mech-O LTD
Email: info@mech-o.com
Website: https://mech-o.com/