Privacy policy
Privacy Policy
Last updated: March 15, 2026
Loft & Stone is a trading name of ECOM HAUS LIMITED ("Loft & Stone," "we," "us," or "our"). We operate the website located at loftandstone.com and related online experiences, including all information, content, features, tools, products, and services (collectively, the "Services"). Our Store is powered by Shopify, which enables us to provide the Services to you.
This Privacy Policy describes how we collect, use, disclose, and otherwise process your personal information when you visit, use, or make a purchase or other transaction using the Services, or when you otherwise communicate with us. If there is a conflict between our Terms of Service and this Privacy Policy regarding the collection, processing, and disclosure of personal information, this Privacy Policy controls.
1. Payment Security & SSL Encryption (Google Trust Standard)
Your security is our highest priority. Our store is hosted on Shopify Inc., which provides a secure e-commerce platform. Your data is stored through Shopify’s secure data storage and databases behind a secure firewall. All direct payment gateways we use adhere to the rigorous standards set by the Payment Card Industry Data Security Standard (PCI-DSS). We do not store your raw credit card information on our personal servers, ensuring a safe and encrypted checkout experience.
2. Personal Information We Collect or Process
Depending on how you interact with the Services, where you live, and applicable law, we may collect or process the following categories of personal information:
- Contact details: name, billing and shipping address, email address, phone number.
- Financial information: payment card details and tokenized card data handled by our payment processors, transaction details, and payment confirmation.
- Account information: username, password, security questions, preferences, and saved items.
- Transaction information: items viewed, added to cart or wishlist, purchased, returned, exchanged, or canceled.
- Device & Usage information: device type, operating system, browser type, IP address, geolocation (where permitted), and how you interact with our website.
3. Sources of Personal Information
We collect personal information directly from you (when you place an order or contact us), automatically (via cookies and pixels), and from service providers (such as Shopify, payment processors, and analytics partners).
4. Cookies and Similar Technologies
We and our partners use cookies, pixels, tags, and local storage to operate and secure the Services, remember your preferences, analyze performance, and personalize content. You can control certain cookies through your browser settings. Disabling cookies may impact your experience.
5. How We Use Personal Information
We use personal information to:
- Provide, tailor, and improve the Services, fulfill orders, and process payments.
- Provide customer support and send transactional messages (order confirmations).
- Conduct marketing and advertising (where permitted by law).
- Ensure security and fraud prevention to protect the integrity of our Services.
- Comply with legal obligations.
6. How We Disclose Personal Information
We may disclose personal information to service providers (IT hosting, payment processors, shipping partners), Shopify (our platform host), business and marketing partners, and legal authorities if required by law to protect rights, property, or safety.
7. Targeted Advertising & Your Choices
We may work with advertising networks and analytics partners to deliver ads and measure performance. You can opt out of promotional emails at any time by using the unsubscribe link in our messages. You can also adjust your browser settings to control cookies.
8. Security & Retention
We maintain reasonable administrative, technical, and organizational measures designed to protect personal information. We retain personal information for as long as needed to provide the Services, fulfill legal obligations, and resolve disputes.
9. Your Rights and Choices
Depending on your location, you may have the right to access, correct, delete, or port your personal information. You may also have the right to object to processing or withdraw consent. You can exercise your rights by contacting us at support@loftandstone.com. We will not discriminate against you for exercising your rights.
10. Region-Specific Disclosures
Hong Kong: ECOM HAUS LIMITED is the data user responsible for your personal data for the purposes of the Personal Data (Privacy) Ordinance.
EEA/UK: ECOM HAUS LIMITED is the controller of your personal information. We rely on various legal bases to process personal information, including contract performance and legitimate interests.
California: If you are a California resident, you have rights regarding access, deletion, correction, and opting out of certain uses of personal information. We do not knowingly sell or share the personal information of consumers under 16 years of age.
11. Contact Information
If you have questions about this Privacy Policy or our privacy practices, please contact us at:
- Trading Name: Loft & Stone
- Registered Business Name: ECOM HAUS LIMITED
- Business Registration Number: 77659193
- Email: support@loftandstone.com
- Phone: +852 2862 2716
- Business Address: 17/F Glenealy, 2A, Central, Hong Kong Island, Hong Kong SAR
- Business Hours: Mon-Fri, 9:00 am - 6:00 pm HKT