Privacy Policy

Effective Date: December 15, 2025

Introduction

Welcome to Hanging On By Fingertips FZE. We are committed to protecting your personal information and your right to privacy.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://hangingonbyfingertips.com and purchase our products.

Our website is hosted by Hostinger, a leading web hosting provider. While Hostinger provides the infrastructure for our website, we maintain full control over the personal data collected and processed through our site, in accordance with applicable data protection laws.

As a business operating globally, we are dedicated to compliance with:

  • The UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data (PDPL).
  • The European Union General Data Protection Regulation (GDPR).

Who we are

The Data Controller responsible for your personal data is Hanging On By Fingertips FZE.

  • Legal Entity: Hanging On By Fingertips FZE
  • License Number: 4425741.01
  • Website Address: https://hangingonbyfingertips.com
  • Hosted By: Hostinger International FZE.
  • Jurisdiction of Incorporation: United Arab Emirates (UAE) – Sharjah Publishing City Free Zone

As the data controller, we determine the purposes and means of processing your personal data. Our hosting provider, Hostinger, acts as a data processor and only processes your data as instructed by us, in accordance with our privacy policy and applicable data protection laws.

Comments

When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.

Hosting and Technical Infrastructure

Our website is hosted by Hostinger, which provides the servers, databases, and technical infrastructure necessary for our site to function. While Hostinger stores the technical data on their servers, this data remains under our control and is processed according to our instructions.

Server Locations

While our business is incorporated in the UAE, our hosting services through Hostinger may involve servers located in various jurisdictions. Regardless of the physical location of these servers, your personal data will be processed in accordance with this privacy policy and applicable data protection laws.

What Personal Data We Collect and Why

We collect data to provide our e-commerce services, improve user experience, and comply with legal obligations.

A. E-Commerce Data (Orders and Accounts)

When you purchase products from our store, we collect the following information to process your order (Contractual Necessity):

  • Identity Data: Name, username.
  • Contact Data: Billing address, shipping address, email address, and telephone number.
  • Financial Data: Payment details (Note: We do not store full credit card numbers; these are processed by our secure third-party payment processors).
  • Transaction Data: Details about payments to and from you and other details of products you have purchased from us.
B. Comments

When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.

C. Media

If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.

Cookies and Tracking Technologies

Comments: If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.

Login: If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser. When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.

Editing: If you edit or publish an article/product, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.

Shopping Cart: We use cookies to keep track of cart contents while you’re browsing our site.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

Who we share your data with

We do not sell your personal data. We share your data with the following categories of third parties solely to provide our services:

Legal Authorities: If you request a password reset, your IP address will be included in the reset email. We may also disclose information if required by UAE law or EU regulations to protect our rights or comply with a judicial proceeding.

Payment Processors: To facilitate secure payments.

Shipping & Logistics Partners: To deliver your orders to your address.

Hosting Provider (Hostinger): For website hosting, maintenance, and technical support. Hostinger processes data only as instructed by us and is contractually obliged to protect your personal information.

Service Providers: For email communications, and spam detection (e.g., visitor comments may be checked through an automated spam detection service).

International Data Transfers

As we are based in the UAE, data collected from users in the European Union (EU) will be transferred to and processed in the UAE and/or on servers managed by our hosting provider.

  • For EU Citizens: We ensure that such transfers are protected by appropriate safeguards, such as the standard contractual clauses (SCCs) approved by the European Commission, or are necessary for the performance of a contract (processing your order).
Data Security and Protection

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • SSL encryption for data transmission between your browser and our servers
  • Secure access controls to prevent unauthorized access to personal data
  • Regular security updates and monitoring of our hosting environment
  • Compliance with Hostinger’s security protocols and requirements

While Hostinger provides the underlying security infrastructure, we remain responsible for configuring our website and applications securely to protect your personal data.

How long we retain your data
  • Comments: If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically.
  • Registered Users: For users that register on our website, we store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
  • Order Records: We retain order information for administrative, tax, and legal purposes for the duration required by UAE tax laws (typically 5 years) and EU regulations where applicable.
Your Rights (UAE PDPL and EU GDPR)

Under both UAE and EU laws, you have comprehensive rights regarding your data:

  1. Right to Access: You can request an exported file of the personal data we hold about you, including any data you have provided to us.
  2. Right to Rectification: You can request that we correct inaccurate or incomplete data.
  3. Right to Erasure (“Right to be Forgotten”): You can request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes (e.g., tax records of purchases).
  4. Right to Restrict Processing: You can ask us to suspend the processing of your personal data in certain scenarios.
  5. Right to Data Portability: You can request the transfer of your data to you or a third party.
  6. Right to Withdraw Consent: Where we are relying on consent to process your data, you have the right to withdraw this consent at any time.

To exercise these rights, please contact us at the contact details provided below.

Our Relationship with Our Hosting Provider

We have implemented appropriate measures with our hosting provider, Hostinger, to ensure that your personal data is processed in accordance with this privacy policy and applicable data protection laws. Hostinger acts as a data processor and processes your personal data only on documented instructions from us.

Hostinger implements technical and organizational measures to ensure the security of processing that meet the requirements of applicable data protection legislation. These include:

  • Physical security measures at data centers
  • Network security including firewalls and intrusion detection
  • Regular security audits and vulnerability assessments
  • Staff access controls and confidentiality obligations
Contact Information

If you have specific questions or concerns about this privacy policy or our use of your personal information, please contact our Data Protection Officer/Privacy Team at:

Hanging On By Fingertips FZE

  • Email: privacy@hangingonbyfingertips.com
  • Address: Business Centre, Sharjah Publishing City Free Zone, Sharjah, United Arab Emirates

For complaints about our handling of your personal data, you also have the right to lodge a complaint with the relevant supervisory authority in the UAE or EU member state of your habitual residence, place of work, or place of alleged infringement.

Changes to This Privacy Policy

We may update this privacy policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make changes, we will update the “Effective Date” at the top of this policy and provide notice of material changes through our website or other communications.

We encourage you to review this privacy policy regularly to stay informed about how we are protecting your personal information.