Privacy Policy 

Last updated: August 20, 2025 

Introduction 

This Privacy Policy describes how Kiyoko Beauty ("we," "us," or "our") collects, uses, and discloses your personal information when you visit or make a purchase from our website kiyoko.ca (the "Site") or otherwise communicate with us (collectively, the "Services"). 

For Canadian residents: This policy complies with the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial privacy laws. 

For US residents: This policy complies with applicable state privacy laws including the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and the Children's Online Privacy Protection Act (COPPA). 

Please read this Privacy Policy carefully. By using our Services, you agree to the collection, use, and disclosure of your information as described in this Privacy Policy. 

Changes to This Privacy Policy 

We may update this Privacy Policy from time to time to reflect changes to our practices or for other operational, legal, or regulatory reasons. When we make changes, we will post the revised Privacy Policy on this page and update the "Last updated" date. For material changes, we will notify you by email or through a prominent notice on our Services. 

How We Collect and Use Your Personal Information 

We collect personal information from you in several ways and use it to provide our Services, communicate with you, and improve your experience. 

Information We Collect Directly from You 

When you interact with our Services, we may collect: 

  • Contact Information: Name, email address, phone number, billing and shipping addresses 

  • Account Information: Username, password, account preferences, security questions 

  • Order Information: Purchase history, payment information, shipping preferences 

  • Communications: Information you provide when contacting customer service, product reviews, survey responses 

  • Marketing Preferences: Newsletter subscriptions, promotional communications preferences 

Information We Collect Automatically 

We automatically collect certain information when you use our Services: 

  • Device Information: IP address, browser type and version, operating system, device identifiers 

  • Usage Information: Pages visited, time spent on pages, click-through rates, referral sources 

  • Location Information: General geographic location based on IP address 

  • Cookies and Tracking Technologies: As described in our Cookie Policy section below 

Information We Obtain from Third Parties 

We may receive information about you from: 

  • Service Providers: Payment processors (for transaction processing), shipping companies (for delivery updates), analytics providers 

  • Social Media Platforms: If you connect your social media accounts or interact with our social media content 

  • Marketing Partners: Information to help us provide relevant advertising and marketing communications 

  • Public Sources: Publicly available information that helps us verify your identity or prevent fraud 

How We Use Your Personal Information 

We use your personal information for the following purposes: 

Service Provision 

  • Process and fulfill orders, including payment processing and shipping 

  • Create and manage your account 

  • Provide customer support and respond to inquiries 

  • Enable product reviews and user-generated content features 

Communication 

  • Send order confirmations, shipping notifications, and service-related communications 

  • Respond to your questions and provide customer support 

  • Send administrative notifications about account changes or policy updates 

Marketing and Advertising 

  • Send promotional emails, newsletters, and special offers (with your consent) 

  • Personalize your shopping experience and show relevant product recommendations 

  • Conduct market research and analyze customer preferences 

  • Display targeted advertising on our site and third-party platforms 

Business Operations 

  • Prevent fraud and enhance security 

  • Analyze website performance and user behavior 

  • Comply with legal obligations and enforce our terms of service 

  • Evaluate business transactions such as mergers or acquisitions 

Cookies and Tracking Technologies 

We use cookies, pixels, and similar technologies to enhance your experience and collect information about how you use our Services. 

Types of Cookies We Use 

  • Essential Cookies: Necessary for basic site functionality, security, and your shopping cart 

  • Analytics Cookies: Help us understand how visitors interact with our site to improve performance 

  • Marketing Cookies: Enable personalized advertising and measure campaign effectiveness 

  • Preference Cookies: Remember your settings and preferences for future visits 

Your Cookie Choices 

You can manage your cookie preferences through your browser settings. However, disabling certain cookies may affect your ability to use some features of our Services. To learn more about cookies and how to manage them, visit www.allaboutcookies.org. 

Cookie Consent: We will obtain your consent before placing non-essential cookies on your device, in accordance with applicable privacy laws. 

How We Share Your Personal Information 

We may share your personal information in the following circumstances: 

Service Providers 

We work with third-party service providers who perform services on our behalf, including: 

  • Payment processors (Stripe, PayPal, Shopify Payments) 

  • Shipping and fulfillment partners 

  • Email marketing platforms 

  • Analytics and advertising services 

  • Customer service platforms 

Business Partners 

We may share information with trusted business partners to: 

  • Provide joint marketing campaigns or promotions 

  • Offer complementary products or services 

  • Enable social media integrations and sharing features 

Legal and Business Reasons 

We may disclose your information when required by law or to: 

  • Comply with legal obligations, court orders, or regulatory requests 

  • Protect our rights, property, or safety, or that of our users or others 

  • Prevent fraud or other illegal activities 

  • Facilitate a business transaction such as a merger, acquisition, or sale of assets 

With Your Consent 

We may share your information for other purposes with your explicit consent. 

Data Retention 

We retain your personal information only as long as necessary to fulfill the purposes for which it was collected, including: 

  • Account Information: Until you request deletion or we determine it's no longer needed 

  • Order Information: For up to 7 years for accounting and tax purposes 

  • Marketing Data: Until you withdraw consent or we determine it's no longer relevant 

  • Analytics Data: Typically for 2-3 years in aggregated, non-identifiable form 

Data Security 

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include: 

  • Encryption of sensitive data during transmission and storage 

  • Regular security assessments and updates 

  • Access controls and employee training 

  • Secure payment processing through PCI-compliant providers 

However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to protecting your information using industry-standard practices. 

Your Rights and Choices 

Depending on your location, you may have the following rights regarding your personal information: 

For All Users 

  • Access: Request information about what personal information we hold about you 

  • Correction: Request correction of inaccurate or incomplete information 

  • Deletion: Request deletion of your personal information (subject to legal restrictions) 

  • Portability: Request a copy of your personal information in a structured format 

  • Withdrawal of Consent: Withdraw consent for marketing communications or data processing 

For Canadian Residents (PIPEDA Rights) 

  • Right to Know: Be informed about our privacy practices and how your information is used 

  • Right to Challenge: Challenge our compliance with privacy principles 

  • Right to Complain: File a complaint with the Office of the Privacy Commissioner of Canada 

For US Residents (Varying by State) 

  • Right to Know: Detailed information about personal information collected, used, and shared 

  • Right to Delete: Request deletion of personal information 

  • Right to Correct: Request correction of inaccurate personal information 

  • Right to Opt-Out: Opt out of the sale or sharing of personal information 

  • Right to Limit: Limit the use of sensitive personal information 

  • Right to Non-Discrimination: Not face discrimination for exercising privacy rights 

For California Residents (CCPA/CPRA) 

In addition to the rights above, California residents have specific rights under the CCPA/CPRA: 

Categories of Personal Information Collected (Last 12 Months): 

  • Identifiers (name, address, email, phone) 

  • Commercial information (purchase history, preferences) 

  • Internet activity (browsing behavior, interactions) 

  • Geolocation data (general location) 

  • Sensory information (customer service recordings) 

  • Professional information (if provided for business accounts) 

Sale or Sharing of Personal Information: We do not sell personal information in the traditional sense. However, we may share information with advertising partners for personalized advertising, which may be considered "sharing" under CCPA. 

Sensitive Personal Information: We collect minimal sensitive personal information (payment information, precise location if enabled). We use this information only for disclosed business purposes and do not use it for profiling or advertising. 

How to Exercise Your Rights 

To exercise any of these rights, please: 

Email us: hello@kiyoko.com 

We will respond to your request within the timeframes required by applicable law (typically 30-45 days). We may need to verify your identity before processing your request. 

International Data Transfers 

Your personal information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws than your country. When we transfer your information, we ensure appropriate safeguards are in place to protect your personal information. 

Children's Privacy 

Our Services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn that we have collected personal information from a child under 13, we will take steps to delete such information promptly. 

For US Residents: This policy complies with the Children's Online Privacy Protection Act (COPPA). If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. 

SMS/Text Marketing Terms 

By providing your mobile phone number and opting in to receive SMS messages, you consent to receive recurring promotional and transactional text messages from Kiyoko Beauty. Message frequency varies. Message and data rates may apply. 

To opt out: Reply STOP to any text message from us. You'll receive a confirmation message. 

Your consent to receive text messages is not required to make purchases. SMS marketing is available for Canadian and US mobile numbers only. 

Third-Party Websites and Services 

Our Services may contain links to third-party websites or integrate with third-party services. This Privacy Policy does not apply to these third-party sites or services. We encourage you to review the privacy policies of any third-party sites you visit. 

Contact Information 

If you have questions about this Privacy Policy or our privacy practices, please contact us: 

 Email: hello@kiyoko.com 

 Address:  

45A West Wilmot St, Unit 15A 

Richmond Hill, ON, Canada 

L4B 2P3 

For Canadian residents: If you are not satisfied with our response to your privacy concern, you may file a complaint with the Office of the Privacy Commissioner of Canada at www.priv.gc.ca. 

For US residents: You may also file complaints with relevant state privacy authorities or the Federal Trade Commission. 

Accountability and Compliance 

Kiyoko Beauty is committed to protecting your privacy and complying with applicable privacy laws. We have designated a Privacy Officer who is responsible for our privacy compliance program and can be reached at the contact information above. 

This Privacy Policy is part of our comprehensive privacy management program, which includes regular policy reviews, staff training, and ongoing compliance monitoring. 

This policy was last updated on July 18, 2025, and incorporates requirements from Canadian federal privacy law (PIPEDA), US state privacy laws including the California Consumer Privacy Act (CCPA/CPRA), and the Children's Online Privacy Protection Act (COPPA).