Security Policy

1. Introduction

This Security Policy outlines the measures implemented to protect personal information, ensure transaction integrity, and provide a reliable environment when using our website.

Our store is committed to maintaining a secure system that aligns with generally accepted security standards and applicable requirements within the United States.

2. Data Protection and Encryption

All communications between users and our website are protected using SSL (Secure Socket Layer) encryption, which helps prevent unauthorized interception or alteration of transmitted information.

Sensitive data, including payment details, is never stored on our systems.
Payment information is processed exclusively by certified payment service providers that comply with recognized international security standards.

3. Access Control and Internal Management

We implement strict measures to ensure that only authorized personnel can access data or manage orders. These measures include:

  • Secure authentication for internal access

  • Role-based permissions aligned with responsibilities

  • Ongoing monitoring of internal operations

These practices support structured and secure handling of information.

4. Transaction Security

All transactions completed on our website are processed through secure payment systems that comply with PCI DSS standards.

Automated verification mechanisms help validate transactions and reduce the risk of fraudulent payment activity.

5. Threat Monitoring and Prevention

To protect users from unauthorized access, cyber threats, or suspicious activities, we maintain:

  • Protection systems against malicious software

  • Continuous monitoring of website performance

  • Active detection of abnormal behavior

  • Regular updates to security measures

These actions allow for timely identification and mitigation of potential risks.

6. Secure Data Storage and Retention

Collected data is stored only for the period necessary to fulfill its intended purpose.

Information is hosted within protected environments that include:

  • Physical access controls

  • Secure servers with high protection standards

  • Protected internal backup systems

Once data is no longer required, it is securely deleted.

7. User Responsibilities

To support overall security, users are encouraged to:

  • Use strong passwords and avoid sharing them

  • Keep devices secure and updated

  • Log out after using shared or public devices

  • Ensure secure network connections when browsing

These best practices help safeguard personal accounts and data.

8. Security Incident Notification

In the event of vulnerabilities, suspicious activity, or data security incidents, we take prompt action to minimize potential risks.

If notification is required under applicable regulations, affected users will be informed in a timely manner.

9. Customer Support Contact Information

For questions related to security practices or data protection, please contact us using the information below:

Email: care@cottamyshop.com
Phone: +65 (899) 27410
Address: APT BLK 308C ANCHORVALE ROAD #06-28, SINGAPORE 543308, SINGAPORE
Business Hours: Monday to Friday, 10:30 AM – 4:30 PM
Delivery Area: United States

Our store is dedicated to maintaining a secure, reliable, and trustworthy digital environment, continuously enhancing protection measures to support safe use of our website.

Cart

loading