Privacy Policy

Privacy Policy

Your Privacy Matters. Here Is Exactly What We Do With Your Data.

No legal jargon designed to confuse you. No buried clauses. This policy explains in plain language what information we collect, why we collect it, how we use it, and how you can control it.

Last updated: March 2026

Who We Are

This privacy policy applies to himalayangiant.com, operated by Himalayan Giant.

Himalayan Giant is a specialty food company based in Kathmandu, Nepal. We sell authentic Himalayan mad honey directly to customers worldwide through our website.

When this policy says “we,” “us,” or “our,” it refers to Himalayan Giant. When it says “you” or “your,” it refers to you — the person visiting our website or purchasing our products.

If you have any questions about this policy or how we handle your data, you can contact us at info@himalayangiant.com at any time.


What Information We Collect

We collect only the information we need to process your order, deliver your honey, and provide customer support. We do not collect data for the sake of collecting data.

Here is exactly what we collect:

Information You Give Us Directly:

When you place an order — Your full name, email address, phone number (if provided), shipping address, and billing address.

When you create an account — Your name, email address, and password. Creating an account is optional. You can check out as a guest.

When you contact us — Your name, email address, and whatever information you include in your message. This includes emails, contact form submissions, and WhatsApp messages.

When you subscribe to our email list — Your email address and your first name if you provide it.

When you leave a review or testimonial — Your name (or the name you choose to display), your location if you provide it, and the content of your review.

Information Collected Automatically:

When you visit our website, certain information is collected automatically through cookies and similar technologies. This includes your IP address, browser type and version, operating system, the pages you visit on our site, the time and date of your visit, how long you spend on each page, the website that referred you to us, and your general geographic location based on your IP address (country and city level — not your exact address).

We do not collect any of the following — your government ID or passport number, your social security number or national ID, your bank account details (these are handled by our payment processor — not stored by us), your medical history or health information, or biometric data of any kind.


How We Collect Your Information

We collect information in three ways:

Directly from you — When you place an order, create an account, fill out a contact form, subscribe to our email list, or communicate with us via email or WhatsApp.

Automatically through your browser — When you visit our website, cookies and similar tracking technologies collect technical data about your device and browsing behavior. See Section 08 for full details on cookies.

From third-party services — Our payment processor provides us with confirmation that your payment was successful, along with a transaction ID. They do not share your full card details with us. Our shipping carrier provides us with tracking information and delivery confirmation for your order.


Why We Collect Your Information

Every piece of information we collect has a specific purpose. Here is why we collect what we collect:

Your name and email — So we can confirm your order, send you tracking information, and contact you if there is a problem with your order.

Your shipping address — So we can ship your honey to the right place and prepare accurate customs documentation.

Your billing address — So our payment processor can verify your payment and prevent fraud.

Your phone number (if provided) — So our shipping carrier can contact you about delivery if needed. This is optional and only used for delivery purposes.

Your browsing data — So we can understand how people use our website, identify problems, and improve the experience. We do not use browsing data to build personal profiles or sell to advertisers.

Your email address (for our mailing list) — So we can send you harvest updates, new product announcements, and occasional promotions. You can unsubscribe at any time with one click.


How We Use Your Information

We use your information for the following purposes and no others:

Order Fulfillment — Processing your order, preparing your package, creating customs documentation, and shipping your honey to you.

Communication — Sending you order confirmation, shipping updates, tracking information, and delivery confirmation. Responding to your questions, support requests, and messages.

Legal and Regulatory Compliance — Preparing accurate customs declarations and export documentation as required by Nepalese export regulations and your country’s import regulations. Maintaining business records as required by law.

Website Improvement — Understanding how visitors use our website so we can improve navigation, fix problems, and create better content. This is done through aggregated, anonymized data — not individual tracking.

Email Marketing — Sending you harvest updates, product news, and occasional promotions — only if you have opted in. You can unsubscribe at any time. We will never email you marketing content without your permission.

Fraud Prevention — Working with our payment processor to verify payments and prevent fraudulent transactions.

Customer Safety — If you contact us with a safety concern about our product, we may keep records of that communication to improve our safety guidance and respond appropriately.

We do not use your information for any of the following — selling or renting your personal data to anyone for any reason, building advertising profiles about you, sending you unsolicited marketing without your consent, making automated decisions about you, or any purpose not listed above.


Who We Share Your Information With

We share your information only with the parties necessary to fulfill your order and operate our business. We do not sell, rent, or trade your personal information to anyone — ever.

Here is who may receive some of your information and why:

Shipping Carriers — We share your name, shipping address, phone number (if provided), and package details with our shipping carrier to deliver your order. This may include Nepal Post, DHL, FedEx, UPS, or other carriers depending on the shipping method. The carrier uses this information solely to deliver your package.

Payment Processor — When you enter your payment details at checkout, those details are sent directly to our payment processor. We do not see, store, or have access to your full credit card number. Our payment processor is PCI-DSS compliant, which means they meet the highest international standards for payment data security. We receive only a transaction confirmation and a partial card number (last four digits) for your records.

Website Hosting — Our website is hosted on servers that store our website data, including any information you submit through the site. Our hosting provider is contractually obligated to protect this data and not use it for any purpose other than hosting our website.

Email Service Provider — If you subscribe to our email list, your email address and name are stored by our email marketing service. This service is used solely to send you the communications you signed up for. You can unsubscribe at any time.

Analytics Service — We may use website analytics services such as Google Analytics to understand how visitors use our website. These services collect anonymized browsing data. We have configured our analytics to anonymize IP addresses and we do not enable any advertising features.

Customs Authorities — When your package ships internationally from Nepal, customs documentation includes a description of the product and its declared value. Your personal details on the shipping label are visible to customs officials as part of the standard import process. This is required by international shipping law and is not optional.

Legal Authorities — We will share your information with law enforcement or government authorities only if we are legally required to do so by a valid court order, subpoena, or legal process. We will not voluntarily share your information with any government agency.

We do not share your information with any of the following — advertisers, data brokers, social media companies, marketing agencies, or any third party not listed above.


Payment Processing

We take payment security seriously. Here is how it works:

When you enter your credit card, debit card, or other payment details at checkout, that information is sent directly to our payment processor through an encrypted connection. Your payment details never touch our servers. We do not see your full card number. We do not store your card number. We cannot access your card number.

What we receive from the payment processor is a confirmation that your payment was successful or unsuccessful, a transaction ID for our records, the last four digits of your card for your order receipt, and the billing name and address for fraud verification.

Our payment processor is PCI-DSS compliant, meaning they meet the Payment Card Industry Data Security Standard — the highest global standard for handling payment data.

If you pay through a third-party service like PayPal, Apple Pay, or Google Pay, your payment is processed by that service according to their own privacy policy. We receive only the confirmation of payment — not your underlying card or account details.


Cookies and Tracking

Our website uses cookies — small text files stored in your browser — to make the website work properly and to help us understand how visitors use the site.

Here is what cookies we use and why:

Essential Cookies — These are required for the website to function. They enable basic features like page navigation, secure areas, shopping cart functionality, and checkout. Without these cookies, the website cannot work properly. You cannot opt out of essential cookies and still use the website.

Analytics Cookies — These help us understand how visitors interact with our website — which pages are visited most, how long people spend on the site, and where visitors come from. We use this information to improve the website. Analytics data is aggregated and anonymized. We do not track individual users across the internet. You can opt out of analytics cookies.

Preference Cookies — These remember your choices and settings — such as your preferred language or region — so we do not have to ask you every time. You can opt out of preference cookies.

We do not use any of the following — advertising cookies, retargeting cookies, social media tracking cookies, or any cookies that track you across other websites. We do not participate in advertising networks. We do not build profiles about you based on your browsing behavior.

How to Control Cookies — You can control and delete cookies through your browser settings. Most browsers allow you to block all cookies, block only third-party cookies, delete cookies when you close your browser, or receive a notification before a cookie is placed. If you block essential cookies, some parts of our website may not work properly.


Email Communications

We send two types of emails:

Transactional Emails — These are emails directly related to your order or account activity. They include order confirmation, shipping confirmation with tracking number, delivery confirmation, responses to your support messages, and password reset requests if you have an account. You cannot opt out of transactional emails because they contain information necessary for your order. We will never hide marketing content inside a transactional email.

Marketing Emails — These are emails about harvest updates, new products, promotions, and Himalayan Giant news. You will only receive marketing emails if you have actively opted in — by subscribing to our email list, checking a subscription box at checkout, or otherwise explicitly requesting to receive them. We will never add you to our marketing list without your permission. Every marketing email includes a one-click unsubscribe link at the bottom. Unsubscribing is instant — you will not receive another marketing email from us after you click it. We do not sell, rent, or share your email address with anyone for marketing purposes. If you unsubscribe, your email address is removed from our active marketing list. We may retain it in a suppression list solely to ensure we do not accidentally email you again.


Data Storage and Security

We take reasonable measures to protect your personal information from unauthorized access, loss, or misuse.

Where Your Data is Stored — Our website and customer data are stored on servers maintained by our hosting provider. Our email marketing data is stored by our email service provider. Payment data is stored by our payment processor — not by us. We may store some customer data locally in our Kathmandu facility for order fulfillment and business records.

How We Protect It — Our website uses SSL/TLS encryption (HTTPS) on all pages, which means data transmitted between your browser and our website is encrypted. Access to customer data within our team is limited to staff who need it to fulfill orders and provide support. Payment information is handled exclusively by our PCI-DSS compliant payment processor. We use strong passwords, access controls, and security best practices for all systems that handle customer data.

What We Cannot Guarantee — No system connected to the internet is 100 percent secure. While we take reasonable measures to protect your data, we cannot guarantee absolute security. If we ever become aware of a data breach that affects your personal information, we will notify you as soon as reasonably possible and take appropriate steps to address the breach.


International Data Transfers

Himalayan Giant is based in Nepal. When you order from us, your personal information may be transferred to and processed in Nepal and potentially in other countries where our service providers operate.

If you are located in the European Union, United Kingdom, or another region with data protection laws that restrict international data transfers, please be aware that by placing an order with us, your information will be transferred to Nepal for order fulfillment, to the country where our payment processor operates for payment processing, to the country where our email service provider operates for email communications, and through the international postal and carrier network for delivery.

We ensure that any service providers who receive your data are contractually obligated to protect it in accordance with applicable data protection standards. By using our website and placing orders, you consent to these international transfers as necessary for us to provide our services to you.


How Long We Keep Your Data

We do not keep your data forever. Here is how long we retain different types of information:

Order Records — We retain your order details (name, address, email, order contents, transaction ID) for 5 years from the date of purchase. This is necessary for legal and accounting compliance, handling any warranty or quality claims, and providing customer support for past orders.

Account Information — If you create an account, we retain your account data for as long as your account is active. You can request account deletion at any time — see Section 13.

Contact Messages — We retain emails, contact form submissions, and support conversations for 2 years. This helps us provide consistent support if you contact us again about the same issue.

Email Marketing Data — If you are subscribed to our mailing list, we retain your email address and name for as long as you remain subscribed. When you unsubscribe, your email is moved to a suppression list (to prevent us from accidentally re-subscribing you) and is deleted from our active marketing database.

Analytics Data — Website analytics data is aggregated and anonymized. It is not associated with your personal identity. Anonymized analytics data may be retained indefinitely for trend analysis and website improvement.

Cookies — Cookie expiration times vary. Essential cookies expire when you close your browser. Analytics and preference cookies typically expire within 12 to 24 months.

After the retention periods above, your personal data is deleted or permanently anonymized.


Your Rights

Regardless of where you live, you have the following rights regarding your personal information:

Right to Know — You can ask us what personal information we hold about you. We will provide a clear summary within 30 days of your request.

Right to Correction — If any information we hold about you is inaccurate or incomplete, you can ask us to correct it. We will do so promptly.

Right to Deletion — You can ask us to delete your personal information. We will do so unless we are legally required to retain it (for example, order records required for tax compliance). If we cannot delete certain data for legal reasons, we will explain why.

Right to Object — You can object to our processing of your data for specific purposes. If you object to marketing, we will stop immediately. If you object to other processing, we will review your request and respond within 30 days.

Right to Data Portability — You can request a copy of your personal data in a commonly used, machine-readable format. We will provide this within 30 days.

Right to Withdraw Consent — Where we process your data based on your consent (such as marketing emails), you can withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing that occurred before you withdrew.

Right to Complain — If you believe we have handled your data improperly, you have the right to file a complaint with your local data protection authority.

To exercise any of these rights, email info@himalayangiant.com with the subject line “Privacy Request” and a description of what you are requesting. We will respond within 30 days. We may ask you to verify your identity before processing your request — this is to protect your data from unauthorized access.


Your Rights Under GDPR (European Users)

If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, the General Data Protection Regulation (GDPR) and equivalent local laws provide you with additional rights and protections.

Legal Basis for Processing — Under the GDPR, we process your personal data on the following legal bases. Contract performance — processing your order, shipping your honey, and providing customer support are necessary to fulfill our contract with you. Legitimate interest — website analytics, fraud prevention, and improving our services are based on our legitimate business interests, balanced against your privacy rights. Consent — marketing emails and non-essential cookies are based on your explicit consent, which you can withdraw at any time. Legal obligation — certain data retention (order records, tax documentation) is required by law.

Your Additional GDPR Rights — In addition to the rights listed in Section 13, GDPR gives you the right to restrict processing of your data in certain circumstances, the right to object to processing based on legitimate interest, the right to not be subject to automated decision-making (we do not make automated decisions about you), and the right to lodge a complaint with your local EU or UK data protection supervisory authority.

Data Protection Authority — If you are unsatisfied with how we handle your data, you have the right to complain to your local data protection authority. A list of EU data protection authorities is available at the European Data Protection Board website.

To exercise any GDPR rights, email info@himalayangiant.com.


Your Rights Under CCPA (California Users)

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with specific rights regarding your personal information.

Right to Know — You have the right to request that we disclose what personal information we have collected about you, where we collected it from, why we collected it, and who we have shared it with. We will provide this information within 45 days of your verifiable request.

Right to Delete — You have the right to request that we delete your personal information, subject to certain exceptions required by law.

Right to Opt Out of Sale — You have the right to opt out of the sale of your personal information. However, this right is not applicable because we do not sell your personal information. We have never sold personal information. We will never sell personal information.

Right to Non-Discrimination — We will not discriminate against you for exercising any of your CCPA rights. You will not receive different prices, products, or service quality for making a privacy request.

Categories of Information Collected — For the purposes of CCPA disclosure, the categories of personal information we collect include identifiers (name, email, address, phone number), commercial information (order history, products purchased), internet activity (browsing data, cookies), and geolocation data (general location from IP address — not precise location).

To exercise any CCPA rights, email info@himalayangiant.com with the subject line “CCPA Request.”


Children’s Privacy

Our website and products are not intended for anyone under the age of 18. Mad honey is an adult product that should not be consumed by minors.

We do not knowingly collect personal information from anyone under 18. If you are under 18, do not use our website, do not create an account, and do not place an order.

If we become aware that we have collected personal information from someone under 18, we will delete that information immediately.

If you are a parent or guardian and believe your child has provided us with personal information, contact us at info@himalayangiant.com and we will delete it promptly.


Third-Party Links

Our website may contain links to other websites — for example, our social media profiles, external resources, or partner websites.

We are not responsible for the privacy practices of other websites. When you click a link that takes you to another website, you are subject to that website’s privacy policy — not ours.

We recommend reading the privacy policy of any website you visit — especially before providing personal information.


Changes to This Policy

We may update this privacy policy from time to time to reflect changes in our practices, our service providers, or applicable laws.

When we make changes, we will update the “Last updated” date at the top of this page. If we make significant changes that affect how we use your personal information, we will notify you by posting a prominent notice on our website and, where possible, by sending you an email.

We encourage you to review this page periodically to stay informed about how we protect your information.

Your continued use of our website after changes are posted constitutes your acceptance of the updated policy. If you do not agree with a change, you should stop using our website and contact us to request deletion of your data.


How to Contact Us About Privacy

If you have any questions, concerns, or requests regarding this privacy policy or your personal data, contact us:

Email: info@himalayangiant.com

Include “Privacy” in your subject line for fastest routing.

Mailing Address:

Himalayan Giant
Kathmandu, Nepal

We will respond to all privacy inquiries within 30 days. For CCPA requests, we will respond within 45 days as required by law.

If you are not satisfied with our response, you have the right to complain to your local data protection authority.