Privacy Policy
Your privacy matters. Here's how we handle your data.
At Ranora ("we," "our," "us"), we are committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website ranora.lk, make a purchase, or interact with our services.
By using our website and services, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
Personal Information You Provide
When you create an account, place an order, or contact us, we may collect:
- Full name
- Email address
- Phone number
- Shipping and billing address
- Password (encrypted)
- Order history and preferences
- Communication preferences
Information Collected Automatically
When you browse our website, we automatically collect:
- IP address and browser type
- Device information (operating system, screen resolution)
- Pages visited and time spent
- Referring website or source
- Cookies and similar tracking technologies (see Section 5)
2. How We Use Your Information
We use the collected information for the following purposes:
- Order Processing: To process, fulfill, and deliver your orders, including sending order confirmations and shipping updates
- Account Management: To create and manage your customer account, maintain your order history, wishlist, and preferences
- Customer Support: To respond to your inquiries, handle returns, exchanges, and resolve issues
- Improvement: To analyze website usage, improve our products, services, and user experience
- Marketing: To send promotional emails, newsletters, and personalized offers (only with your consent — you may opt out at any time)
- Legal Compliance: To comply with applicable laws, regulations, and legal processes
- Fraud Prevention: To detect and prevent fraudulent transactions and protect the security of our website
3. Payment Information
All payments on Ranora are processed securely through PayHere, a PCI-DSS compliant payment gateway. We do not store your credit card numbers, bank account details, or other sensitive payment information on our servers. PayHere handles all payment data in accordance with industry security standards.
For Cash on Delivery orders, your order details are shared with our delivery partner solely for the purpose of completing the transaction.
4. Customer Accounts & Order Data
When you create an account with us, we retain your profile information and order history for as long as your account remains active. You may request deletion of your account at any time by contacting us. Guest checkout orders are retained for record-keeping and legal purposes as required by Sri Lankan law.
Order information (name, phone, shipping address) is shared with our courier partners strictly for delivery purposes.
5. Cookies & Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience. Cookies are small text files stored on your device by your web browser.
We use the following types of cookies:
- Essential Cookies: Required for the website to function (e.g., shopping cart, session management). These cannot be disabled
- Functional Cookies: Remember your preferences, saved items, and login state
- Analytics Cookies: Help us understand how visitors use our site so we can improve (e.g., pages visited, time on site)
- Marketing Cookies: Used to deliver relevant advertisements and measure campaign effectiveness (only with your consent)
You can manage cookie preferences through your browser settings. Please note that disabling certain cookies may affect the functionality of our website. We use tools such as Google Analytics and Meta Pixel for analytics and marketing purposes.
6. Marketing Communications
We may send you marketing emails about new arrivals, exclusive offers, and style inspiration if you have subscribed to our newsletter or consented during account creation. You can unsubscribe at any time by clicking the "Unsubscribe" link at the bottom of any marketing email or by updating your account preferences.
We will never share your email address with third parties for their own marketing purposes without your explicit consent. Transactional emails (order confirmation, shipping updates, password resets) will still be sent even if you unsubscribe from marketing.
7. Data Sharing & Disclosure
We may share your information with trusted third parties only as necessary to provide our services:
- Payment Processors: PayHere for secure payment processing
- Courier Partners: For order delivery and tracking
- Analytics Providers: Google Analytics for website usage analysis
- Email Service Providers: For sending transactional and marketing emails
- Legal Authorities: When required by law or to protect our legal rights
We do not sell, rent, or trade your personal information to third parties for their own commercial purposes.
8. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including:
- SSL/TLS encryption (HTTPS) for all data transmitted between your browser and our servers
- Encrypted password storage using bcrypt hashing
- Regular security audits and updates
- Restricted access to personal data on a need-to-know basis
- Secure server infrastructure with firewall protection
While we strive to protect your data, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security but will promptly notify you in the event of a data breach as required by applicable law.
9. Your Rights
As a valued customer, you have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your account and personal data (subject to legal retention requirements)
- Opt-Out: Unsubscribe from marketing communications at any time
- Data Portability: Request your data in a structured, commonly used format
- Restriction: Request limited processing of your data in certain circumstances
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise any of these rights, please contact us at hello@ranora.lk. We will respond to your request within 30 days as per applicable data protection regulations.
10. Data Retention
We retain your personal data only as long as necessary to fulfill the purposes described in this policy, or as required by Sri Lankan law. Specifically:
- Account information: Retained until account deletion or 3 years of inactivity
- Order history: Retained for 6 years for tax and legal purposes
- Marketing preferences: Retained until you unsubscribe
- Analytics data: Aggregated and anonymized after 26 months
11. Third-Party Links
Our website may contain links to third-party websites (e.g., social media platforms, payment gateways). We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any personal information.
12. Children's Privacy
Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us immediately so we can take appropriate action.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated "Last Updated" date. For significant changes, we will notify you by email or through a prominent notice on our website. We encourage you to review this policy periodically.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- hello@ranora.lk
- +94 11 777 8888
- 42 Galle Road, Colombo 03, Sri Lanka
- +94 77 778 8888
Last updated: June 2026