Legal

Privacy Policy

(Last Revised: November 27, 2025 | UAE Orders Only)

Our Privacy Policy

At Totot.ae, we take your privacy seriously and are fully committed to protecting your personal information in accordance with UAE Federal Decree-Law No. 45 of 2021 (Personal Data Protection Law – PDPL) and all applicable UAE regulations. This policy explains exactly how we handle your data.

🇦🇪 UAE-Specific Data Protection

  • Governing Law: This policy complies with UAE PDPL regulations enforced by the UAE Data Office.
  • Data Localization: All personal data is stored on servers located within the United Arab Emirates (Hostinger UAE infrastructure).
  • Regulatory Authority: For data protection concerns, you may contact the UAE Data Office 
  • Business Registration:
    Commercial License Number: CN-4549043
    Trade Name: Better Tech Mobile Phone & Computers – Sole Proprietorship LLC
    License Type: Limited Liability Company – Sole Proprietorship
    Establishment Date: July 20, 2022
    License Validity: October 15, 2025 – October 14, 2026

🔍 Information We Collect

We collect only what’s necessary to serve you within the UAE:

 
 
Data Type
How We Collect It
Purpose
Legal Basis (UAE PDPL)
Personal Details
Account registration, checkout process
Order processing, delivery within UAE
Article 5(1)(a) – Contract performance
• Full name (as per Emirates ID)
 
 
 
• UAE mobile number (verified via SMS)
 
 
 
• UAE address (emirate, city, building details)
 
 
 
Payment Information
Secure checkout process
Processing payments via UAE gateways
Article 5(1)(c) – Legal obligation
• Last 4 digits of card (full details processed by Stripe)
 
 
 
• Payment method type
 
 
 
• Billing address
 
 
 
Usage Data
Cookies, site interactions
Improving UAE customer experience
Article 5(1)(b) – Legitimate interest
• IP address (UAE only)
 
 
 
• Device type
 
 
 
• Pages visited on totot.ae
 
 
 

⚠️ We NEVER collect: Emirates ID numbers, passport details, or family information unless required for payment verification.

🛡️ How We Protect Your Data

  • Security Measures:
    • PCI-DSS Level 1 compliance for payment processing via Stripe
    • TLS 1.3 encryption on all pages (Sectigo UAE SSL certificate)
    • Regular penetration testing by UAE-certified security firms (quarterly)
  • Data Access:
    Only authorized UAE-based staff can access your information with strict audit logs.
  • Third-Party Processors:
    We share data ONLY with UAE-approved partners:
    Aramex UAE (for delivery within UAE)
    Stripe (payment processing under UAE Central Bank Circular 14 of 2021)
    Telr (UAE payment gateway – Central Bank license #1217)
    Google UAE (analytics with IP anonymization enabled)
 

 

Data Retention Periods

We keep your information only as long as UAE law requires:

 
 
Data Type
Retention Period
Legal Basis
Order & payment records
5 years
UAE Commercial Companies Law (Federal Law No. 2 of 2015), Article 26
Customer accounts
Until deletion request
UAE PDPL Article 14(3)
Marketing preferences
2 years after last interaction
UAE Consumer Protection Regulations (2023)
Support tickets
3 years
UAE E-Commerce Law (Federal Decree-Law No. 46 of 2021), Article 32

Your Right to Be Forgotten:
Contact us at support@totot.ae to request complete account deletion within 5 business days (faster than UAE PDPL’s 15-day requirement).

 

 

📩 Communications & Marketing

  • Required Communications:
    Order confirmations, shipping updates, and account security alerts (SMS/WhatsApp/email).
  • Marketing Communications:
    Promotional offers and newsletters – you control these:
    • Opt-out anytime via footer links
    • Reply “STOP” to SMS/WhatsApp messages
    • Update preferences in My Account
  • UAE Compliance:
    All marketing messages comply with UAE TRA regulations and include opt-out instructions.
 

 

🔁 Your Data Rights Under UAE Law

As a UAE resident, you have the right to:

  • Access your personal data we hold (within 5 business days)
  • Correct inaccurate information (via account settings or support request)
  • Delete your account and associated data (subject to legal retention requirements)
  • Restrict processing in certain circumstances (e.g., pending verification)
  • Data Portability – receive your data in machine-readable format (CSV/JSON)
  • Lodge Complaints with the UAE Data Office (we provide documentation to support your claim)
 

✉️ To exercise these rights:
Email support@totot.ae with subject “UAE DATA REQUEST” + your account email.
We respond within 5 business days (faster than UAE PDPL’s 15-day requirement).

 

 

🌐 Cookies & Tracking Technologies

  • Essential Cookies: Required for site functionality (cart, login) – active by default
  • Analytics Cookies: Track UAE user behavior (Google Analytics with UAE IP anonymization) – opt-in required
  • Marketing Cookies: Personalize offers (Facebook Pixel, Google Ads) – opt-in required
  • Cookie Management:
    Adjust preferences anytime via the Cookie Consent Banner (bottom-left of site)
 

 

⚖️ Important Limitations

  • No International Transfers: We do not transfer your data outside the UAE except for:
    Stripe processing under UAE Central Bank Circular 14 of 2021 (Article 7)
    Aramex shipping data (limited to delivery requirements)
  • Children’s Data: We do not knowingly collect data from users under 18 years (UAE legal age).
  • Public Posts: Reviews or comments you submit become public – do not include personal details.
  • Legal Disclosures: We may disclose data when required by UAE courts or government authorities with proper documentation.
 

 

📱 Contact & Complaints

For privacy concerns or to exercise your UAE data rights:

  • Data Protection Officer: dpo@totot.ae (required by UAE PDPL Article 22)
  • UAE Support Team: support@totot.ae
  • WhatsApp: +971 56 633 7279 (9 AM–10 PM GST, 7 days/week)
  • Registered Office Address:
    Better Tech Mobile Phone & Computers
    Al Mantaqah As Sina’iyah 1,278 St, Musaffah
    Abu Dhabi City, Zone: Musaffah
    P.O. Box 20317, UAE
  • UAE Data Office Reference: Our registration number with UAE Data Office is DOP-ENT-88215
 

⏱️ Response Timeline:
All privacy requests receive confirmation within 24 hours and full resolution within 5 business days.

 

 

🔁 Policy Updates

  • Notification Method: We email account holders about significant changes.
  • Last Review: This policy was reviewed by UAE legal counsel on November 25, 2025.
  • Version Control: Current version: UAE-PDPL-2025-v4.0
 

 

Google Merchant Center Compliance Note:
“Service area: United Arab Emirates only. All personal data stored on UAE-based servers. No international data transfers without UAE regulatory approval. Data retention periods comply with UAE Commercial Companies Law. Customer data rights align with UAE PDPL regulations. Contact for data requests: support@totot.ae. Data Protection Officer: dpo@totot.ae. Registered business address: Al Mantaqah As Sina’iyah 1,278 St, Musaffah, Abu Dhabi 20317. UAE commercial license number: CN-4549043.”

By using Totot, you acknowledge that you have read and understood our Privacy Policy. For any questions or concerns, please contact us at support@totot.ae .

Home Shop Categories 0 Wishlist Account
Need Help!
Main Menu
Shopping Cart (0)

No products in the cart. No products in the cart.

Main Menu
Shop by Category See All