At Totot.ae, we take your privacy seriously and are fully committed to protecting your personal information in accordance with UAE Federal Decree-Law No. 45 of 2021 (Personal Data Protection Law – PDPL) and all applicable UAE regulations. This policy explains exactly how we handle your data.
We collect only what’s necessary to serve you within the UAE:
Data Type | How We Collect It | Purpose | Legal Basis (UAE PDPL) |
|---|---|---|---|
Personal Details | Account registration, checkout process | Order processing, delivery within UAE | Article 5(1)(a) – Contract performance |
• Full name (as per Emirates ID) | |||
• UAE mobile number (verified via SMS) | |||
• UAE address (emirate, city, building details) | |||
Payment Information | Secure checkout process | Processing payments via UAE gateways | Article 5(1)(c) – Legal obligation |
• Last 4 digits of card (full details processed by Stripe) | |||
• Payment method type | |||
• Billing address | |||
Usage Data | Cookies, site interactions | Improving UAE customer experience | Article 5(1)(b) – Legitimate interest |
• IP address (UAE only) | |||
• Device type | |||
• Pages visited on totot.ae |
⚠️ We NEVER collect: Emirates ID numbers, passport details, or family information unless required for payment verification.
We keep your information only as long as UAE law requires:
Data Type | Retention Period | Legal Basis |
|---|---|---|
Order & payment records | 5 years | UAE Commercial Companies Law (Federal Law No. 2 of 2015), Article 26 |
Customer accounts | Until deletion request | UAE PDPL Article 14(3) |
Marketing preferences | 2 years after last interaction | UAE Consumer Protection Regulations (2023) |
Support tickets | 3 years | UAE E-Commerce Law (Federal Decree-Law No. 46 of 2021), Article 32 |
✅ Your Right to Be Forgotten:
Contact us at support@totot.ae to request complete account deletion within 5 business days (faster than UAE PDPL’s 15-day requirement).
As a UAE resident, you have the right to:
✉️ To exercise these rights:
Email support@totot.ae with subject “UAE DATA REQUEST” + your account email.
We respond within 5 business days (faster than UAE PDPL’s 15-day requirement).
For privacy concerns or to exercise your UAE data rights:
⏱️ Response Timeline:
All privacy requests receive confirmation within 24 hours and full resolution within 5 business days.
Google Merchant Center Compliance Note:
“Service area: United Arab Emirates only. All personal data stored on UAE-based servers. No international data transfers without UAE regulatory approval. Data retention periods comply with UAE Commercial Companies Law. Customer data rights align with UAE PDPL regulations. Contact for data requests: support@totot.ae. Data Protection Officer: dpo@totot.ae. Registered business address: Al Mantaqah As Sina’iyah 1,278 St, Musaffah, Abu Dhabi 20317. UAE commercial license number: CN-4549043.”
By using Totot, you acknowledge that you have read and understood our Privacy Policy. For any questions or concerns, please contact us at support@totot.ae .
No products in the cart.