Privacy Policy for Lac Crado
Effective Date: 19 September 2025
Website: www.laccrado.sg
Lac Crado (“we,” “our,” “us”) respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, store, disclose, and safeguard your data when you interact with us through our website, products, services, and other communication channels.
By visiting our website or purchasing from Lac Crado, you agree to the terms outlined in this Privacy Policy. If you do not agree, please discontinue the use of our services.
1. Introduction
We understand that your privacy is important. As a business dealing with premium handcrafted leather goods, we recognize the need to handle personal data responsibly. This policy is designed to provide transparency and explain clearly how we use your information.
Our privacy commitments are guided by:
Singapore’s Personal Data Protection Act 2012 (PDPA)
General Data Protection Regulation (GDPR), where applicable to international customers
Industry best practices for e-commerce security
This policy applies to all personal information collected via our website, social media channels, payment platforms, and offline communications.
2. What Information We Collect
We collect information that you provide directly, as well as data generated when you use our services.
2.1 Personal Information
Full name
Contact details (email, phone number, billing/shipping address)
Date of birth and gender (optional, for personalization)
Identity verification (where legally required, e.g., for large transactions or fraud prevention)
2.2 Transaction and Payment Data
Purchase history and order details
Payment method (Visa, Mastercard, PayPal, PayNow – in SGD only)
Billing details and shipping preferences
Invoices, receipts, and transaction confirmations
2.3 Technical and Usage Data
Device type, operating system, browser version
IP address and geolocation (approximate)
Pages visited, items viewed, time spent, and referral sources
Cookies, tracking pixels, and analytics tags
2.4 Communication Data
Customer service inquiries
Messages via email, website forms, WhatsApp, Telegram, or social media
Feedback, testimonials, or product reviews
Marketing preferences (opt-in or opt-out records)
2.5 Optional Data
Responses to surveys, contests, or promotions
Preferences shared for personalization (e.g., style, product categories, colors)
3. How We Use Your Information
Your personal data is used strictly for legitimate business purposes:
Order Processing and Fulfillment – verifying payment, arranging shipment, providing order confirmations, and tracking deliveries.
Customer Service – responding to inquiries, resolving complaints, and handling after-sales support.
Account Management – if you create an online account, we use your details to manage login, preferences, and purchase history.
Payment Verification – ensuring secure transactions through trusted third-party gateways.
Marketing and Promotions – sending newsletters, product updates, and exclusive offers (only with your consent).
Website Improvement – analyzing user behavior to enhance our website experience, navigation, and functionality.
Legal Compliance – maintaining proper records, meeting tax and accounting obligations, and complying with applicable laws.
Fraud Prevention and Security – detecting suspicious activities, protecting against unauthorized transactions, and safeguarding our business.
4. Legal Basis for Processing
Depending on your location, we process your data under the following legal bases:
Consent: You agree to receive newsletters, promotions, or cookies.
Contractual Necessity: To fulfill product orders and provide services you requested.
Legal Obligation: To meet regulatory, tax, or reporting requirements.
Legitimate Interests: To improve customer experience, prevent fraud, and strengthen our brand.
5. Payment Security
Lac Crado accepts Visa, Mastercard, PayPal, and PayNow in SGD only.
All transactions are encrypted using Secure Socket Layer (SSL) technology.
Payments are processed via certified third-party payment providers.
We do not store your full credit or debit card numbers on our servers.
PayNow transfers are handled securely through Singapore’s regulated banking system.
6. Sharing of Information
We do not sell, rent, or trade your personal data. However, in the normal course of operations, we may share information with:
Logistics Partners: Delivery companies and couriers for shipping orders.
Payment Providers: To process secure transactions.
IT & Security Providers: Hosting, cloud storage, fraud detection, and analytics tools.
Marketing Platforms: For email campaigns or advertising (with your consent).
Legal Authorities: If required by law, regulation, or court order.
All third parties are contractually bound to use your data only for the intended purposes and to maintain appropriate data protection standards.
7. Cookies and Tracking
We use cookies, tracking pixels, and related technologies to:
Remember your shopping cart and login preferences.
Analyze how you browse and interact with our site.
Improve website performance and personalize content.
Deliver relevant advertising across platforms (only if consent is given).
You may disable cookies in your browser, but some features (like checkout) may not function properly.
8. Data Retention
We keep your information only for as long as necessary:
Customer accounts: Active until you request deletion.
Order and payment records: Up to 7 years for accounting and tax compliance.
Marketing data: Until you withdraw consent.
Website analytics: Typically stored for 12–24 months.
After these periods, your data is securely deleted or anonymized.
9. Your Rights
Under PDPA and, where applicable, GDPR, you may exercise the following rights:
Access: Request a copy of your data.
Correction: Update inaccurate or incomplete information.
Erasure: Request deletion when data is no longer required.
Restriction: Limit how we process your data.
Objection: Opt out of marketing or profiling.
Portability: Request transfer of your data to another provider (GDPR only).
Withdraw Consent: Opt out of marketing at any time.
Requests can be submitted via email (see Section 14). We will respond within reasonable timeframes, as required by law.
10. Data Security
We implement a combination of technical, organizational, and physical safeguards:
Encrypted payment systems and SSL-certified website.
Restricted access to customer information.
Secure hosting providers with firewalls and monitoring.
Regular audits and updates to security protocols.
Staff training and confidentiality agreements.
Despite these measures, no method of transmission is 100% secure. We cannot guarantee absolute protection, but we take every reasonable precaution.
11. Children’s Privacy
Our services are intended for individuals 18 years and above. We do not knowingly collect data from minors. If you believe a child under 18 has provided us with personal information, please contact us to arrange immediate removal.
12. International Data Transfers
As a Singapore-based company, your data may be stored and processed in Singapore or other jurisdictions. When transferring data overseas, we implement safeguards such as contractual obligations and secure systems to ensure adequate protection.
13. Third-Party Links
Our website may include links to external websites (such as Instagram, TikTok, or partner brands). Please note that we are not responsible for the privacy practices of third-party sites. We encourage you to review their privacy policies.
14. How to Contact Us
For questions, concerns, or to exercise your data rights, please contact:
Lac Crado
Email: admin@laccrado.sg
Phone: +65 8541 6167
Address: #4-119A Far East Plaza, 228213.
We will handle your requests in accordance with PDPA and applicable laws.
15. Updates to This Policy
We may revise this Privacy Policy from time to time. Updates will be posted on this page with a revised Effective Date. In cases of material changes, we may notify you by email or website notice.
16. Summary of Key Commitments
Your data will never be sold to third parties.
Payments are always processed securely.
You are in control of your marketing preferences.
We comply with Singapore PDPA and, where applicable, GDPR.
We are committed to transparency, accountability, and customer trust.

