This Privacy Policy explains how BestBargains.lk (“BestBargains”, “we”, “our”, “us”) collects, uses, stores, and shares personal information when you visit or make a purchase from https://bestbargains.lk/ (the “Site”) or use any related mobile application (the “App”).
If you have questions, contact us using the details in the Contact Us section below.
1) Personal Information We Collect
A) Device & Usage Information (Collected Automatically)
When you visit the Site or use the App, we may automatically collect certain information about your device and usage, including:
- Browser type, device type/model, operating system, and app version
- IP address, time zone, and approximate location derived from IP
- Cookies installed on your device
- Pages/products you view, referring/exit pages, and timestamps
- Interactions with the Site/App (clicks, views, sessions)
- Firebase Cloud Messaging (FCM) tokens (a unique device identifier used to deliver push notifications — see below)
We call this “Device & Usage Information”.
Push Notifications (Firebase Cloud Messaging)
When you enable push notifications on the App, we collect a Firebase Cloud Messaging (FCM) token — a unique identifier assigned to your device by Google. This token is sent to our backend servers so we can deliver order updates, promotions, and other notifications to you. The FCM token is transmitted securely via HTTPS and is managed by Google’s Firebase service. You can disable push notifications at any time through your device’s notification settings, which will stop us from sending further notifications.
Technologies We Use
- Cookies (small data files placed on your device)
- Log files (records of actions occurring on the Site/App)
- Pixels/tags/web beacons (to understand browsing and campaign performance)
B) Order & Account Information (Provided by You)
When you make a purchase, attempt to make a purchase, create an account, or contact us, we may collect:
- Name
- Email address
- Phone number
- Billing address and shipping/delivery address
- Items purchased, order notes, and order history
- Payment status and transaction references
Important Note About Payments
- Payments may be processed by third-party payment gateways.
- We do not store full card numbers (credit/debit card details) on our servers.
- If your payment provider requires data to process a payment, it is handled securely by that provider.
When we say “Personal Information” in this Privacy Policy, we mean both (A) Device & Usage Information and (B) Order & Account Information.
2) Google User Data (Google Sign-In / OAuth)
If you choose to sign in using Google, we will request access to Google user data only after you grant permission. The Google data we access depends on the OAuth scopes you approve.
A) Data Accessed (Depending on Your Consent)
We may access:
- Basic profile information (e.g., your name and profile photo)
- Email address
B) How We Use Google User Data
We use Google user data only to:
- Authenticate you and create/maintain your BestBargains.lk account
- Display your profile information inside the App (optional)
- Provide account-related features you use
C) Storage & Protection
- Google user data is transmitted securely (HTTPS).
- We store only the minimum data required for login/account management.
- If OAuth tokens are stored, they are stored securely and used only to keep your Google sign-in connection working.
D) Sharing
- We do not sell Google user data.
- We do not share Google user data except with service providers needed to operate the Service (under confidentiality/security obligations) or when required by law.
E) AI/ML Training
- We do not use Google user data obtained through Google APIs to develop, improve, or train generalized (non-personalized) AI/ML models.
3) How We Use Your Personal Information
We use Personal Information to:
- Fulfill orders (process payment via payment providers, arrange delivery, send invoices/order confirmations)
- Communicate with you about orders, delivery, and support requests
- Screen for potential risk, fraud, or abuse
- Improve and optimize the Site/App (analytics on browsing and performance)
- Provide marketing/advertising where permitted by your preferences and applicable law
4) Sharing Your Personal Information
We share Personal Information only as necessary to operate the Service, for example:
- Service providers (hosting, analytics, SMS/email services, customer support tools)
- Payment gateways (to process payments)
- Delivery and logistics partners (to deliver your orders) — including our courier service providers, to whom we share relevant order and delivery details for fulfillment and tracking within Sri Lanka
We may also share information to:
- Comply with applicable laws and regulations
- Respond to lawful requests (court orders, subpoenas, etc.)
- Protect our rights, users, and the integrity of our Service
We do not sell your personal information.
5) Analytics & Advertising
We may use analytics tools (such as Google Analytics) to understand how customers use the Site and to improve marketing and performance.
We may also use advertising tools to show relevant offers where permitted.
You can manage ad preferences through the relevant platform settings (e.g., Google/Facebook) and your browser settings.
6) Cookies
Cookies help us remember preferences and understand Site performance.
You can disable cookies in your browser settings, but some parts of the Site may not function properly.
7) Do Not Track
Some browsers offer a “Do Not Track” signal. At this time, we do not change our data collection practices solely in response to these signals.
8) Data Retention
We keep Order & Account Information for our records as long as needed to:
- Provide the Service and support
- Maintain business records (including accounting/tax obligations)
You can request deletion of your account and associated personal data by contacting us (see Contact Us). Some data may be retained where required by law.
9) Security
We use reasonable administrative, technical, and organizational measures to protect your information (secure transmission such as HTTPS, access controls, monitoring). However, no method of transmission or storage is 100% secure.
10) Your Rights
You may request to access, correct, update, or delete personal information we hold about you by contacting us.
If you are located in certain regions (e.g., EEA/UK), you may have additional rights under applicable law.
11) Children’s Privacy
Our Service is not intended for children under 13, and we do not knowingly collect personal information from children under 13.
12) Changes to This Policy
We may update this Privacy Policy from time to time. The updated version will be posted on this page with a new “Last Updated” date.
13) Contact Us
For questions, requests, or complaints about privacy, contact:
Email: [email protected]
Phone: +94 762070095
Address: 608/2, Nawala Road, Rajagiriya, Sri Lanka
