Effective date: September 10, 2025
Website: https://maktabahalhidayah.com/
Business name: Maktabah Al-Hidayah (the “Store,” “we,” “us,” or “our”)
Contact: info@maktabahalhidayah.com • +1 (779) 910-7010 • DeKalb, Illinois, United States
1) Scope and who this policy covers
This Privacy Policy explains how we collect, use, disclose, and safeguard information when you visit our website, make a purchase, or interact with our customer support. It applies to all visitors, customers, and users of our website and services. By using our website, you consent to the practices described here.
2) Information we collect
2.1 Information you provide to us
- Account & profile data: name, email address, phone number, shipping/billing addresses, and (optionally) password if you create an account.
- Order & checkout data: products purchased, order notes, shipping method, transaction identifiers (for example, Zelle payment confirmation details you share with us).
- Customer support: messages you send us by email or phone, including attachments (e.g., photos for damaged-item claims).
- Reviews & content: ratings, comments, Q&A you submit on product pages (if enabled).
Sensitive inferences: Because we are an Islamic bookstore, your product choices may reveal religious interests or preferences. We treat such information as sensitive and handle it with heightened care. We never sell this information.
2.2 Information collected automatically
- Device & usage data: IP address, browser type and version, time zone, approximate location, pages viewed, referring/exit pages, and timestamps.
- Cookies & similar technologies: We use functional cookies for the cart/checkout experience and analytics cookies to understand site performance. Typical WooCommerce/WordPress cookies may include (illustrative, not exhaustive):
2.3 Information from third parties
- Payment & money transfer services: If you pay via Zelle, we may receive payment confirmations or reference details you provide to match your order to your transfer. We do not receive your bank login credentials.
- Shipping carriers: Tracking updates, delivery status, and exceptions.
- Analytics or anti-fraud providers: Aggregated statistics and fraud-prevention signals.
3) How we use your information
We use information to:
- Process and fulfill orders: manage cart, payments, shipping, returns, and refunds.
- Provide customer support: identify your order, answer questions, and resolve issues.
- Improve our website and products: troubleshoot, analyze performance, and enhance user experience.
- Communicate with you: order confirmations, shipping updates, and—if you opt in—news and promotions (you can unsubscribe anytime).
- Protect our Store and users: prevent fraud, enforce our Terms, and comply with applicable laws and tax obligations.
4) Legal bases (for users in the EEA/UK)
Where GDPR applies, we process personal data on these bases:
- Contract: to process your orders and provide services.
- Legitimate interests: to secure our website, prevent fraud, improve services, and respond to inquiries (balanced against your rights).
- Consent: where required (e.g., certain cookies or marketing emails).
- Legal obligation: tax, accounting, and regulatory requirements.
5) Sharing and disclosure
We share information only as necessary to run our Store:
- Service providers: web hosting, website platforms (e.g., WordPress/WooCommerce), plugins, email service providers, analytics, security tools, and shipping carriers.
- Payment/transfer services: Zelle and any associated intermediaries as needed to confirm payment and reconcile orders.
- Professional advisers & compliance: auditors, accountants, insurers, law enforcement, or regulators when legally required or to protect our rights.
- Business transfers: if we undergo a reorganization, merger, or sale, your information may transfer as part of that transaction.
We do not sell your personal information. We also do not share your banking login details—ever.
6) Cookies and tracking
You can manage cookies through your browser settings. Disabling certain cookies may affect core site functions like the cart or checkout. Where required by law, we will request your consent for non-essential cookies. We currently do not respond to “Do Not Track” signals due to a lack of uniform standards.
7) Data retention
We keep personal data only as long as necessary for the purposes described in this policy, including:
- Orders & invoices: retained for the period required by tax and accounting laws (often 3–7 years, depending on jurisdiction).
- Accounts: retained while your account remains active; you may request deletion (subject to legal/record-keeping obligations).
- Support records: retained as needed to manage our relationship and improve services.
8) Security
We use administrative, technical, and physical safeguards appropriate to the sensitivity of the information we process (e.g., TLS encryption in transit, least-privilege access, and platform security best practices). No method of transmission or storage is 100% secure; if we become aware of a data incident that affects you, we will notify you as required by law.
9) Children’s privacy
Our website is not directed to children under 13. We do not knowingly collect personal information from children under 13 (or under the applicable age of consent in your region). If you believe a child has provided us personal information, contact us and we will take appropriate steps to delete it.
10) Your choices and rights
- Access, correction, deletion: You may request a copy, correction, or deletion of your personal information, subject to legal exceptions.
- Marketing opt-out: Click “unsubscribe” in our emails or contact us.
- Cookies: Adjust your browser settings; where required, use our cookie banner/preferences tool.
- EEA/UK: You may object to certain processing, request restriction or portability, and lodge a complaint with your local data protection authority.
- California (CCPA/CPRA): California residents may request to know, access, correct, or delete personal information and may opt out of “selling” or “sharing” (for cross-context behavioral advertising). We do not sell personal information. To exercise rights, contact us at info@maktabahalhidayah.com.
To exercise any rights, we may need to verify your identity. We will respond within the timeframe required by applicable law.
11) International transfers
If you access our website from outside the United States, your information may be processed in the U.S. by us and our providers. We take steps to ensure appropriate protections consistent with this Policy and applicable law.
12) Payments via Zelle (important)
- How it works: At checkout or in your order confirmation, we provide instructions to send payment via Zelle. You may need to include your order number in the transfer memo so we can match your payment to your order.
- What we receive: We may collect the transfer confirmation or reference you provide to us to reconcile your order. We do not receive your banking login or full account numbers.
- Your security: Never share your banking password or one-time codes with anyone. We will never ask for them. Because Zelle transfers process quickly, please double-check your order details before sending payment.
13) Third-party links
Our website may link to third-party websites we do not control. Their privacy practices are governed by their own policies.
14) Changes to this policy
We may update this Policy from time to time to reflect changes to our practices or for legal, technical, or regulatory reasons. If we make material changes, we will post the updated Policy with a new effective date at the top. Your continued use of the website after any update constitutes acceptance of the changes.
15) Contact us
Maktabah Al-Hidayah
DeKalb, Illinois, United States
Email: info@maktabahalhidayah.com
Phone: +1 (779) 910-7010