Privacy Policy
Last Updated: 2025-04-17
1. Information We Collect
- We may collect the following types of data depending on your interactions with our platform:
- Personal Identifiable Information such as your full name, email address, phone number, and postal address.
- Account credentials, including your chosen username and encrypted password.
- Vehicle-related information, such as make, model, year, mileage, condition, photos, and pricing.
- Payment and billing information including credit/debit card numbers, bank account details, and billing address.
- Geolocation data from your device with your explicit consent, used to recommend local services or listings.
- Device data such as operating system, browser type, language preferences, referring URLs, and crash logs.
- Log data automatically collected during visits including your IP address, access times, and pages viewed.
- Communications data such as messages, chat logs, and support inquiries you send to our platform or agents.
2. How We Use Your Information
- We use your data to deliver a seamless and personalized experience across the MyCarLanka platform:
- To process, confirm, and fulfill your listings, bookings, and transactions.
- To provide customer service and respond to inquiries or complaints.
- To send you transactional messages, updates, and promotional content.
- To verify your identity and prevent fraudulent activities.
- To improve platform performance, user interface, and service offerings.
- To personalize search results, vehicle suggestions, and marketing ads.
- To analyze behavioral patterns and platform usage for development insights.
- To enforce platform policies and comply with legal requirements.
3. Sharing Your Information
- We do not sell, lease, or rent your personal data. However, we may share your data in the following situations:
- With payment gateways such as Stripe and secure bank channels to facilitate transactions.
- With delivery and logistics providers to coordinate transportation, pickup, or inspections.
- With law enforcement or public authorities when required by local or international law.
- With analytics tools and service providers for the purposes of improving service efficiency.
- With third-party partners and subcontractors that assist with hosting, backend services, or support.
- With advertising platforms (like Facebook Ads and Google Ads) for marketing personalization.
4. Cookies and Tracking Technologies
- We utilize cookies and similar technologies to enhance user experience, analyze trends, and deliver targeted advertising.
- Cookies help maintain session state, remember preferences, and authenticate users.
- We use both first-party and third-party cookies for statistical purposes and remarketing.
- You can control or disable cookies through your browser settings, though some features may be limited.
- We may also use device fingerprinting, local storage, and beacons to analyze traffic and behavior.
5. Data Retention and Deletion
- Your personal data is retained only for as long as necessary to fulfill the purposes outlined in this policy.
- Data may be archived after account deletion for regulatory, legal, or tax obligations.
- You may request the complete deletion of your account and data by contacting our support team.
- Logs and analytic data may be retained in anonymized form for statistical and research purposes.
6. Your Rights and Choices
- You have the right to access, review, and correct personal information held about you.
- You can request a copy of your data in a structured, machine-readable format.
- You can request deletion or restriction of your personal information under certain conditions.
- You may update your preferences for email communications or unsubscribe at any time.
- You may file a complaint with a data protection authority if your rights are violated.
- If applicable under law, you may request to opt-out from certain data processing activities.
7. Security of Your Data
- We use multiple layers of security to protect your personal data against unauthorized access and loss.
- Data in transit is encrypted using TLS (Transport Layer Security) protocols.
- Sensitive data is stored with AES encryption and is not accessible in raw format.
- Access to user data is role-restricted and requires authentication.
- We regularly perform vulnerability assessments and audit logs for suspicious activity.
- Despite our efforts, no digital system is completely secure, and we advise caution when sharing sensitive info online.
8. Children’s Data
- Our services are strictly intended for users who are at least 18 years old.
- We do not knowingly collect or process any personal data from individuals under the age of 18.
- If we become aware of such data being submitted, we will delete it promptly from our servers.
9. International Data Transfers
- Your data may be stored and processed in countries outside your own, including servers in the EU, US, or Asia.
- We ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs), to protect international transfers.
- By using our platform, you consent to such data transfers as required to provide services.
10. Policy Updates
- We may revise this policy periodically to reflect new legal requirements or service enhancements.
- Significant changes will be communicated through email notifications, in-app banners, or website alerts.
- Continued use of the platform after updates constitutes acceptance of the revised policy.
- Please revisit this page regularly to stay informed about how we protect your privacy.
11. Contact Information
- If you have questions, feedback, or complaints about this Privacy Policy or your personal data:
- Email: contact@mycarlanka.com
- Phone: +94 7772340808
- Mailing Address: MyCarLanka, 123 Auto Hub Street, Colombo, Sri Lanka
- We typically respond to inquiries within 3–5 business days.
12. Third-Party Links
- Our platform may contain links to third-party websites or services not operated by us.
- We are not responsible for the privacy practices or content of third-party sites.
- We recommend reviewing the privacy policies of all third-party websites before interacting with them.
13. Legal Compliance
- We comply with the data protection laws of Sri Lanka, including the Data Protection Act No. 9 of 2022.
- We may also adhere to international data privacy regulations depending on your location.
- In certain cases, your data may be processed or disclosed to comply with legal obligations, subpoenas, or law enforcement requests.