Pumzi Teas - A Sip of Life A Sip of Life
  • Home
  • Shop
    • All Teas
    • Black Tea
    • Green Tea
    • Herbal Infusions
    • Specialty Blends
    • Gift Sets
  • About
  • Contact

Privacy Policy

Home / Privacy Policy

Effective Date: January 1, 2024

Last Updated: May 15, 2026

Version: 2.0

Privacy Policy Summary

This summary provides key points from our Privacy Policy. For complete details, please read the full policy below.

  • We collect personal information you provide and some data automatically
  • We use your data to process orders, provide customer service, and improve our services
  • We never sell your personal information to third parties
  • You have rights to access, correct, and delete your data
  • We use cookies and you can manage your cookie preferences

Introduction

Pumzi Teas Limited ("Pumzi Teas," "we," "us," or "our"), a company registered and operating in the Republic of Uganda, is committed to protecting and respecting your privacy. This Privacy Policy explains in detail how we collect, use, disclose, transfer, and store your personal information when you:

  • Visit our website at pumziteas.com (the "Website")
  • Purchase our products or services
  • Create an account with us
  • Subscribe to our newsletter or marketing communications
  • Contact us through any channel
  • Interact with us on social media platforms
  • Participate in surveys, competitions, or promotions

This Privacy Policy is drafted in compliance with the Data Protection and Privacy Act, 2019 of Uganda, the Computer Misuse Act, 2011, the Electronic Transactions Act, 2011, and other applicable data protection regulations. We also align our practices with international standards including the EU General Data Protection Regulation (GDPR) where applicable.

By using our Website or services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use our Website or services.

1. Data Controller Information

For the purposes of applicable data protection laws, the data controller is:

Pumzi Teas Limited

Kampala, Uganda

Email: [email protected]

Phone: +256 778 605 277 / +256 758 213 107

Data Protection Officer: [email protected]

2. Information We Collect

We collect and process various types of personal information depending on how you interact with us:

2.1 Information You Provide Directly

Account Registration

Data Collected: Full name, email address, phone number, password (encrypted), profile preferences

Purpose: Create and manage your account, authenticate your identity

Order Processing

Data Collected: Billing address, shipping address, payment method details, order history, delivery instructions

Purpose: Process and fulfill your orders, handle payments, arrange delivery

Contact & Support

Data Collected: Name, email, phone number, message content, attachments, communication history

Purpose: Respond to inquiries, provide customer support, resolve issues

SMS Communications

Data Collected: Phone number, SMS consent status, message timestamps, delivery status, message content (for support)

Purpose: Send order updates, promotional offers, account notifications, and customer support via SMS

Newsletter & Marketing

Data Collected: Email address, name, marketing preferences, interaction history

Purpose: Send newsletters, promotional offers, product updates

Reviews & Feedback

Data Collected: Name, review content, ratings, photos

Purpose: Display reviews, improve products and services

Surveys & Competitions

Data Collected: Contact details, survey responses, competition entries

Purpose: Conduct research, administer competitions, award prizes

2.2 Information Collected Automatically

When you visit our Website, we automatically collect certain technical information:

  • Device Information: Device type, operating system, unique device identifiers, browser type and version, screen resolution
  • Network Information: IP address, internet service provider, mobile network information
  • Location Data: Country, region, city (derived from IP address), timezone
  • Usage Data: Pages visited, time spent on pages, click patterns, scroll depth, navigation paths, search queries on our site
  • Referral Data: Referring website URL, search engine and keywords used, marketing campaign source
  • Session Data: Session duration, frequency of visits, return visitor status

2.3 Information from Third Parties

We may receive information about you from:

  • Payment Processors: Transaction confirmation, payment status, fraud prevention data
  • Delivery Partners: Delivery status, delivery confirmation, recipient verification
  • Social Media Platforms: If you interact with us on social media or use social login features
  • Analytics Providers: Aggregated website usage statistics
  • Marketing Partners: Campaign performance data (anonymized)

2.4 Sensitive Personal Data

We do not intentionally collect sensitive personal data (also known as special category data) such as:

  • Racial or ethnic origin
  • Political opinions or religious beliefs
  • Health or medical information
  • Biometric data
  • Sexual orientation

If you voluntarily provide such information (e.g., in a message to us), we will treat it with the highest level of confidentiality and only use it for the specific purpose you intended.

3. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our Website. For comprehensive information about our cookie practices, please see our Cookie Policy.

3.1 Types of Cookies We Use

Essential Cookies Required

Enable core functionality like shopping cart, user authentication, and security features.

Duration: Session / 30 days
Functional Cookies Optional

Remember your preferences, language settings, and personalization choices.

Duration: 1 year
Analytics Cookies Optional

Help us understand how visitors use our Website, which pages are popular, and identify issues.

Duration: 2 years
Marketing Cookies Optional

Track your activity across websites to deliver relevant advertisements.

Duration: 1 year

3.2 Managing Your Cookie Preferences

You can manage your cookie preferences at any time by:

  • Clicking the "Cookie Settings" link in our website footer
  • Adjusting your browser settings to block or delete cookies
  • Using browser extensions that manage cookies

Please note that disabling certain cookies may affect the functionality of our Website.

3.3 Other Tracking Technologies

  • Web Beacons: Small transparent images used to track email opens and website interactions
  • Local Storage: Stores data locally on your device for faster page loading

4. SMS Communications and Data Handling

4.1 SMS Services

We use SMS (Short Message Service) to communicate with you for various purposes. Our SMS services include:

Transactional SMS

Order confirmations, shipping updates, delivery notifications

Marketing SMS

Promotional offers, discount codes, new product announcements

Security SMS

Account security alerts, password reset notifications

Support SMS

Customer support responses, follow-up messages

4.2 SMS Data Collection

When you interact with our SMS services, we may collect:

  • Phone Number: The mobile number where messages are sent
  • Consent Status: Your preferences for receiving SMS messages
  • Message Metadata: Timestamps, delivery status, read receipts (where available)
  • Message Content: Content of SMS messages you send to us (for support purposes)
  • Interaction Data: Your responses to our SMS messages

4.3 SMS Consent and Opt-Out

  • Express Consent: By providing your phone number, you consent to receive SMS messages from us
  • Opt-Out: You can opt out of marketing SMS messages at any time by replying "STOP"
  • Transactional Messages: Essential order and account messages cannot be opted out
  • Confirmation: We will confirm your opt-out request via SMS
  • Re-subscription: You can re-subscribe to marketing messages by contacting us

4.4 SMS Data Security

We protect your SMS data through:

  • Encryption: SMS data is encrypted during transmission and storage
  • Access Controls: Only authorized personnel can access SMS data
  • Data Minimization: We only collect SMS data necessary for our services
  • Secure Providers: We use reputable SMS service providers with strong security practices

5. How We Use Your Information

  • Web Beacons: Small graphic images in emails to track open rates and clicks
  • Pixel Tags: Used to understand browsing activity and measure campaign effectiveness
  • Local Storage: Stores data locally on your device for faster page loading

4. How We Use Your Information

We use your personal information for the following purposes:

4.1 Order Fulfillment and Service Delivery

  • Process and fulfill your orders accurately and efficiently
  • Arrange shipping and delivery of products
  • Process payments and refunds
  • Send order confirmations, shipping notifications, and delivery updates
  • Handle returns, exchanges, and warranty claims
  • Provide post-purchase support

4.2 Account Management

  • Create and maintain your user account
  • Authenticate your identity when you log in
  • Enable account features like order history and saved addresses
  • Process account changes and password resets
  • Manage your communication preferences

4.3 Customer Service and Support

  • Respond to your inquiries, questions, and complaints
  • Provide technical support and troubleshooting
  • Follow up on previous interactions
  • Train our customer service team (using anonymized data)

4.4 Marketing and Communications

  • Send newsletters with tea tips, recipes, and company news
  • Notify you about new products, special offers, and promotions
  • Personalize marketing content based on your preferences and purchase history
  • Conduct surveys to gather feedback
  • Administer competitions and promotions

Note: We only send marketing communications with your explicit consent. You can opt out at any time.

4.5 Website Improvement and Analytics

  • Analyze website traffic and usage patterns
  • Identify and fix technical issues
  • Test new features and functionality
  • Improve website design and user experience
  • Develop new products and services based on customer insights

4.6 Security and Fraud Prevention

  • Protect against unauthorized access to accounts
  • Detect and prevent fraudulent transactions
  • Monitor for suspicious activity
  • Enforce our terms of service
  • Protect the rights and safety of our customers and business

4.7 Legal Compliance

  • Comply with applicable laws and regulations
  • Respond to legal requests and court orders
  • Maintain records for tax and accounting purposes
  • Establish, exercise, or defend legal claims

5. Legal Basis for Processing

Under the Data Protection and Privacy Act, 2019 of Uganda, we process your personal data based on the following legal grounds:

Contract Performance

When we use it: When processing is necessary to fulfill a contract with you.

Examples: Processing orders, delivering products, handling returns
Consent

When we use it: When you have given explicit consent for specific processing.

Examples: Marketing emails, non-essential cookies, newsletter subscription
Legitimate Interests

When we use it: When processing is necessary for our legitimate business interests.

Examples: Fraud prevention, website analytics, business development
Legal Obligation

When we use it: When we are required by law to process your data.

Examples: Tax records, responding to court orders, regulatory compliance
Vital Interests

When we use it: When processing is necessary to protect someone's life.

Examples: Emergency situations (rare)

6. Information Sharing and Disclosure

We do not sell, rent, or trade your personal information to third parties for their marketing purposes. We may share your information in the following circumstances:

6.1 Service Providers

We work with trusted third-party service providers who assist us in operating our business:

  • Payment Processors: MTN Mobile Money, Airtel Money, and other payment gateways to process transactions securely
  • Delivery Partners: Courier and logistics companies to deliver your orders
  • Hosting Providers: Web hosting and cloud services to store and serve our Website
  • Email Service Providers: To send transactional and marketing emails
  • Analytics Providers: To analyze website usage and performance
  • Customer Support Tools: To manage customer inquiries efficiently

All service providers are contractually obligated to protect your data and use it only for the purposes we specify.

6.2 Legal Requirements

We may disclose your information when required by law or in response to:

  • Court orders, subpoenas, or legal process
  • Requests from law enforcement or government agencies
  • Regulatory investigations
  • Protection of our legal rights or defense against legal claims

6.3 Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your personal information may be transferred to the acquiring entity. We will notify you of any such change and your choices regarding your data.

6.4 With Your Consent

We may share your information with third parties when you have given us explicit consent to do so.

7. Data Security

We implement comprehensive security measures to protect your personal information:

7.1 Technical Measures

  • SSL/TLS Encryption: All data transmitted between your browser and our servers is encrypted using industry-standard SSL/TLS protocols
  • Password Security: Passwords are hashed using bcrypt algorithm and never stored in plain text
  • Firewall Protection: Our servers are protected by enterprise-grade firewalls
  • Intrusion Detection: We monitor for unauthorized access attempts
  • Regular Updates: We keep our software and systems updated with security patches
  • Secure Payment Processing: Payment information is processed through PCI-DSS compliant providers

7.2 Organizational Measures

  • Access Controls: Only authorized personnel have access to personal data on a need-to-know basis
  • Staff Training: Our team receives regular training on data protection and security
  • Confidentiality Agreements: All employees and contractors sign confidentiality agreements
  • Incident Response: We have procedures in place to detect, report, and respond to data breaches
  • Regular Audits: We conduct periodic security assessments and audits

7.3 Your Responsibilities

You can help protect your data by:

  • Using strong, unique passwords for your account
  • Not sharing your login credentials with others
  • Logging out of your account when using shared devices
  • Keeping your contact information up to date
  • Reporting any suspicious activity to us immediately

7.4 Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms, we will:

  • Notify the relevant supervisory authority within 72 hours
  • Notify affected individuals without undue delay
  • Provide information about the breach and steps being taken
  • Offer guidance on protective measures you can take

8. Data Retention

We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected:

Account Information Until account deletion + 30 days Account management, recovery period
Order History 7 years from order date Tax and legal requirements, warranty claims
Payment Records 7 years from transaction Financial regulations, audit requirements
Customer Support Records 3 years from last interaction Service continuity, dispute resolution
Marketing Preferences Until consent withdrawn + 30 days Compliance with opt-out requests
Website Analytics 26 months Trend analysis, website improvement
Cookie Data Varies by cookie type Functionality and analytics

After the retention period expires, we securely delete or anonymize your data so it can no longer be associated with you.

9. Your Rights

Under the Data Protection and Privacy Act, 2019 of Uganda, you have the following rights regarding your personal data:

9.1 Right of Access

You have the right to request a copy of the personal data we hold about you. We will provide this information within 30 days of your request, free of charge for the first request in any 12-month period.

9.2 Right to Rectification

You have the right to request correction of inaccurate or incomplete personal data. You can update most information directly in your account settings, or contact us for assistance.

9.3 Right to Erasure ("Right to be Forgotten")

You have the right to request deletion of your personal data in certain circumstances, including:

  • When the data is no longer necessary for its original purpose
  • When you withdraw consent (where consent was the legal basis)
  • When you object to processing and there are no overriding legitimate grounds
  • When the data has been unlawfully processed

Note: We may need to retain certain data for legal or legitimate business purposes.

9.4 Right to Restriction of Processing

You have the right to request that we limit how we use your data in certain circumstances, such as when you contest the accuracy of the data or object to processing.

9.5 Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit it to another controller.

9.6 Right to Object

You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes. If you object to marketing, we will stop processing your data for that purpose immediately.

9.7 Right to Withdraw Consent

Where we rely on your consent to process personal data, you have the right to withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing before the withdrawal.

9.8 Right Not to be Subject to Automated Decision-Making

You have the right not to be subject to decisions based solely on automated processing that significantly affect you. We do not currently make such automated decisions.

9.9 How to Exercise Your Rights

To exercise any of these rights, please contact us at:

  • Email: [email protected]
  • Phone: +256 778 605 277
  • Mail: Pumzi Teas, Kampala, Uganda

We will respond to your request within 30 days. We may need to verify your identity before processing your request.

10. Marketing Communications

10.1 Opt-In Requirement

We only send marketing communications to individuals who have explicitly opted in to receive them. You can opt in by:

  • Checking the marketing consent box during checkout
  • Subscribing to our newsletter
  • Updating your preferences in your account settings

10.2 What We Send

Marketing communications may include:

  • New product announcements
  • Special offers and discounts
  • Tea brewing tips and recipes
  • Company news and events
  • Seasonal promotions

10.3 How to Unsubscribe

You can opt out of marketing communications at any time by:

  • Clicking the "Unsubscribe" link in any marketing email
  • Updating your preferences in your account settings
  • Contacting us at [email protected]

Please note that opting out of marketing does not affect transactional communications (order confirmations, shipping updates, etc.).

11. International Data Transfers

Your personal data is primarily stored and processed in Uganda. However, some of our service providers may be located in other countries. When we transfer data internationally, we ensure appropriate safeguards are in place:

  • Standard contractual clauses approved by relevant authorities
  • Data processing agreements with all service providers
  • Verification that recipients provide adequate data protection

12. Children's Privacy

Our Website and services are not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at [email protected]. We will take steps to delete such information from our systems.

13. Third-Party Links and Services

Our Website may contain links to third-party websites, plugins, or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party sites you visit.

Third-party services we may link to include:

  • Social media platforms (Facebook, Instagram, Twitter)
  • Payment processors
  • Mapping services
  • Review platforms

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes:

  • We will update the "Last Updated" date at the top of this policy
  • For significant changes, we will provide prominent notice (e.g., email notification, website banner)
  • We will obtain fresh consent where required by law

We encourage you to review this Privacy Policy periodically. Your continued use of our Website after changes constitutes acceptance of the updated policy.

15. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Pumzi Teas Limited

General Inquiries: [email protected]

Privacy Concerns: [email protected]

Phone: +256 778 605 277 / +256 758 213 107

Address: Kampala, Uganda

We aim to respond to all inquiries within 5 business days.

16. Complaints

If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with:

  • Personal Data Protection Office of Uganda - The national supervisory authority for data protection
  • Uganda Communications Commission - For matters related to electronic communications
  • Other relevant regulatory authorities - Depending on the nature of your complaint

We encourage you to contact us first so we can try to resolve your concerns directly.

By using our Website and services, you acknowledge that you have read, understood, and agree to this Privacy Policy.

Document Version: 2.0 | Effective: January 1, 2024

Pumzi Teas

Bringing you the finest organic teas from the heart of Uganda. Our commitment to quality and sustainability ensures every cup tells a story of nature's purity.

Quick Links

  • Shop All Teas
  • About Us
  • Contact
  • My Account

Customer Service

  • Shipping Information
  • Refund Policy
  • Terms of Use
  • Privacy Policy

Contact Us

  • [email protected]
  • +256 778 605 277
  • +256 758 213 107
  • Kampala, Uganda

Stay Updated

Subscribe to receive updates, access to exclusive deals, and more.

© 2026 Pumzi Teas. All rights reserved. Founded by Ritah Nagudi.

Developed by CodeLab.co.ug

Sponsored by CodeLab - Free infrastructure & services for 3 years

Supporting startups with SMS, integrations & cloud services

Cookie Settings

We use cookies to enhance your experience. Customize your preferences below.

Learn more in our Privacy Policy