Effective Date: December 20, 2025 Last Updated: December 20, 2025
1. Introduction
Welcome to Medikits BD (“we,” “our,” or “us”). We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about this privacy notice or our practices with regard to your personal information, please contact us at info@medikitsbd.com.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website medikitsbd.com (the “Site”) and purchase our health monitoring devices. Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.
2. Data Controller
For the purposes of the General Data Protection Regulation (GDPR) and other applicable data protection laws, the Data Controller is:
Medikits BD Dhaka, Bangladesh Email: info@medikitsbd.com
3. What Data We Collect
We collect personal information that you voluntarily provide to us when you register on the Site, express an interest in obtaining information about us or our products, when you participate in activities on the Site, or otherwise when you contact us.
A. Personal Data provided by you
The personal information that we collect depends on the context of your interactions with us and the Site, the choices you make, and the products and features you use. The personal information we collect may include the following:
- Identity Data: First name, last name, username.
- Contact Data: Billing address, delivery address, email address, and telephone numbers.
- Financial Data: We do not store credit card details on our servers. Payment data is processed by our secure third-party payment processors (e.g., bKash, Nagad, Visa/Mastercard gateways).
- Transaction Data: Details about payments to and from you and other details of products you have purchased from us.
B. Information automatically collected
We automatically collect certain information when you visit, use, or navigate the Site. This information does not reveal your specific identity (like your name or contact information) but may include device and usage information, such as:
- Technical Data: IP address, browser and device characteristics, operating system, language preferences, referring URLs.
- Usage Data: Information about how you use our website, products, and services.
4. How We Use Your Data
We process your information for purposes based on legitimate business interests, the fulfillment of our contract with you, compliance with our legal obligations, and/or your consent.
We use the information we collect or receive:
- To facilitate account creation and logon process.
- To fulfill and manage your orders. We use your information to fulfill and manage your orders, payments, returns, and exchanges through the Site.
- To send administrative information to you. We may use your personal information to send you product, service and new feature information and/or information about changes to our terms, conditions, and policies.
- To protect our Services. We may use your information as part of our efforts to keep our Site safe and secure (for example, for fraud monitoring and prevention).
- For Marketing. With your consent, we may send you marketing emails about new health monitors or special offers. You can opt-out at any time.
5. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA) or UK, we rely on the following legal bases to process your personal data:
- Contract: Processing is necessary for the performance of a contract to which you are a party (e.g., delivering a Blood Pressure Monitor you purchased).
- Consent: We may process your data if you have given us specific consent to use your personal information for a specific purpose (e.g., subscribing to our newsletter).
- Legitimate Interests: We may process your data when it is reasonably necessary to achieve our legitimate business interests (e.g., improving our website interface).
- Legal Obligation: We may disclose your information where we are legally required to do so (e.g., for tax and accounting purposes in Bangladesh).
6. Sharing Your Data
We only share information with the following third parties. We have contracts in place with our data processors, which means that they cannot do anything with your personal information unless we have instructed them to do it.
- Payment Processors: To process payments securely (e.g., SSL Commerz, Stripe, PayPal, bKash).
- Shipping & Delivery Partners: To deliver your orders to your physical address (e.g., Pathao, RedX, DHL).
- Cloud Computing Services: To host our website and data (e.g., Hosting providers).
- Analytics Services: To understand website traffic (e.g., Google Analytics).
7. International Data Transfers
Important Notice for International Users: Medikits BD is located in Bangladesh. If you are accessing our Site from the European Economic Area (EEA), United States, or other regions with laws governing data collection and use, please note that your information is being transferred to, stored, and processed in Bangladesh.
By using our services, you acknowledge that your information will be transferred to our facilities and those third parties with whom we share it as described in this privacy policy. We take all reasonable steps to protect your privacy in accordance with GDPR standards, even though Bangladesh does not currently have an “adequacy decision” from the European Commission.
8. Data Retention
We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy policy, unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements).
- Customer Accounts: Retained until you ask us to delete your account.
- Transaction Records: Retained for at least 5 years for tax audit purposes.
9. Your Privacy Rights (GDPR)
Under the GDPR, you have the following rights regarding your personal data:
- Right to Access: You have the right to request copies of your personal data.
- Right to Rectification: You have the right to request that we correct any information you believe is inaccurate.
- Right to Erasure: You have the right to request that we erase your personal data, under certain conditions.
- Right to Restrict Processing: You have the right to request that we restrict the processing of your personal data.
- Right to Object: You have the right to object to our processing of your personal data.
- Right to Data Portability: You have the right to request that we transfer the data that we have collected to another organization, or directly to you.
To exercise any of these rights, please contact us at info@medikitsbd.com. We will respond to your request within one month.
10. Cookie Policy
We use “cookies” to collect information and improve your experience on our site. A cookie is a small file placed on your hard drive. You may instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Site (such as the Shopping Cart).
11. Security of Your Data
We use administrative, technical, and physical security measures to help protect your personal information. This includes using SSL (Secure Socket Layer) technology to encrypt data during transmission. While we have taken reasonable steps to secure the personal information you provide to us, please be aware that no security measures are perfect or impenetrable, and no method of data transmission can be guaranteed against any interception or other type of misuse.
12. Contact Us
If you have questions or comments about this policy, you may contact our Data Protection Officer (DPO) at:
Medikits BD Dhaka, Bangladesh Email: info@medikitsbd.com