Security Policy
1. Introduction
This Security Policy outlines the measures implemented to protect personal information, ensure transaction integrity, and provide a reliable environment when using our website.
Our store is committed to maintaining a secure system that aligns with generally accepted security standards and applicable requirements within the United States.
2. Data Protection and Encryption
All communications between users and our website are protected using SSL (Secure Socket Layer) encryption, which helps prevent unauthorized interception or alteration of transmitted information.
Sensitive data, including payment details, is never stored on our systems.
Payment information is processed exclusively by certified payment service providers that comply with recognized international security standards.
3. Access Control and Internal Management
We implement strict measures to ensure that only authorized personnel can access data or manage orders. These measures include:
-
Secure authentication for internal access
-
Role-based permissions aligned with responsibilities
-
Ongoing monitoring of internal operations
These practices support structured and secure handling of information.
4. Transaction Security
All transactions completed on our website are processed through secure payment systems that comply with PCI DSS standards.
Automated verification mechanisms help validate transactions and reduce the risk of fraudulent payment activity.
5. Threat Monitoring and Prevention
To protect users from unauthorized access, cyber threats, or suspicious activities, we maintain:
-
Protection systems against malicious software
-
Continuous monitoring of website performance
-
Active detection of abnormal behavior
-
Regular updates to security measures
These actions allow for timely identification and mitigation of potential risks.
6. Secure Data Storage and Retention
Collected data is stored only for the period necessary to fulfill its intended purpose.
Information is hosted within protected environments that include:
-
Physical access controls
-
Secure servers with high protection standards
-
Protected internal backup systems
Once data is no longer required, it is securely deleted.
7. User Responsibilities
To support overall security, users are encouraged to:
-
Use strong passwords and avoid sharing them
-
Keep devices secure and updated
-
Log out after using shared or public devices
-
Ensure secure network connections when browsing
These best practices help safeguard personal accounts and data.
8. Security Incident Notification
In the event of vulnerabilities, suspicious activity, or data security incidents, we take prompt action to minimize potential risks.
If notification is required under applicable regulations, affected users will be informed in a timely manner.
9. Customer Support Contact Information
For questions related to security practices or data protection, please contact us using the information below:
Email: care@cottamyshop.com
Phone: +65 (899) 27410
Address: APT BLK 308C ANCHORVALE ROAD #06-28, SINGAPORE 543308, SINGAPORE
Business Hours: Monday to Friday, 10:30 AM – 4:30 PM
Delivery Area: United States
Our store is dedicated to maintaining a secure, reliable, and trustworthy digital environment, continuously enhancing protection measures to support safe use of our website.