Privacy policy
Privacy Policy
Last updated: 21/08/2026
1. Introduction
This Privacy Policy explains how Rehman Haseebur, micro-entrepreneur ("we", "us", "our"), operating pdfebookguide.com (the "Site"), collects, uses, shares, and protects your personal data when you visit the Site or purchase our digital products, wherever in the world you are located.
We are committed to protecting your privacy in accordance with the EU General Data Protection Regulation (GDPR), the French Data Protection Act, and, where applicable, other data protection laws that may apply to you (such as the UK GDPR, the California Consumer Privacy Act (CCPA/CPRA), or other local laws).
2. Who Is Responsible for Your Data
The data controller responsible for your personal data is:
-
Rehman Haseebur, micro-entrepreneur
-
Registered address: 60 rue françois 1er, 75008 PARIS, FRANCE
-
SIRET: 92170248600017
-
Contact email: contact@pdfebookguide.com
3. What Personal Data We Collect
We collect the following categories of personal data:
-
Identity and contact data: name, email address, billing address, country.
-
Order data: products purchased, order date, order amount, payment status.
-
Payment data: processed directly by our payment providers (e.g. Shopify Payments, PayPal, card processors); we do not store full card numbers ourselves.
-
Technical data: IP address, browser type, device type, pages visited, referral source, collected via cookies and similar technologies.
-
Communications: any information you provide when you contact customer support.
-
Marketing preferences: whether you have opted in to receive marketing emails, and your engagement with those emails, if you subscribe.
4. How We Collect Your Data
-
Directly from you, when you place an order, create an account, subscribe to our newsletter, or contact us.
-
Automatically, through cookies and similar technologies when you browse the Site (see Section 9).
-
From third-party service providers, such as our e-commerce platform (Shopify) and payment processors, who share order and transaction data with us as necessary to fulfill your purchase.
5. Why We Use Your Data (Legal Basis)
We process your personal data only where we have a valid legal basis to do so, in accordance with Article 6 of the GDPR:
-
Performance of a contract: to process your order, deliver your digital product, and provide customer support.
-
Legal obligation: to comply with accounting, tax, and consumer protection obligations (e.g. invoicing, record of withdrawal consent as described in our Terms and Conditions).
-
Legitimate interest: to improve our Site, prevent fraud, and ensure the security of our services, provided this does not override your rights and freedoms.
-
Consent: for marketing emails and non-essential cookies, which you may withdraw at any time.
6. How Long We Keep Your Data
-
Order and invoicing data is kept for the duration required by French commercial and tax law (currently up to 10 years for accounting records).
-
Customer support communications are kept for as long as necessary to resolve your request and for a reasonable period afterward for record-keeping.
-
Marketing data is kept until you unsubscribe or, if you do not engage with our communications, for a maximum of 3 years from your last interaction.
-
Technical/cookie data is kept in accordance with the retention periods set out in our Cookie Policy or cookie consent tool.
7. Who We Share Your Data With
We do not sell your personal data. We share personal data only with:
-
Shopify Inc., our e-commerce platform provider, which hosts the Site and processes orders on our behalf.
-
Payment processors (e.g. Shopify Payments, PayPal, Stripe, or similar), to process your payment securely.
-
Email/marketing service providers, if you have subscribed to receive communications from us.
-
Analytics providers (e.g. Shopify Analytics, Meta/Facebook Pixel, Google Analytics, if enabled on the Site), to help us understand Site usage and measure advertising performance.
-
Professional advisors (accountant, legal counsel) where necessary for legitimate business or legal purposes.
-
Public authorities, where required by law.
All third-party providers we work with are contractually required to protect your data and to process it only for the purposes we specify.
8. International Data Transfers
Because we sell to customers worldwide and use international service providers (including US-based providers such as Shopify, Meta, or Google), your personal data may be transferred to and processed in countries outside the European Economic Area (EEA), including the United States.
Where such transfers occur, we ensure appropriate safeguards are in place, such as the European Commission's Standard Contractual Clauses (SCCs), an adequacy decision, or the relevant provider's certification under an approved data transfer framework (such as the EU-US Data Privacy Framework, where applicable to that provider).
9. Cookies and Similar Technologies
The Site uses cookies and similar technologies to:
-
Enable core functionality (e.g. shopping cart, checkout);
-
Measure Site performance and usage (analytics);
-
Deliver and measure advertising (e.g. Meta/Facebook Pixel, if used), where you have given consent.
Where required by law, we will ask for your consent before placing non-essential cookies, and you can manage your preferences through the cookie banner or your browser settings at any time.
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction, including relying on Shopify's PCI-DSS-compliant infrastructure for payment processing. However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
11. Your Rights
11.1 If you are located in the European Union / EEA / UK
Under the GDPR (and UK GDPR, where applicable), you have the right to:
-
Access the personal data we hold about you;
-
Rectify inaccurate or incomplete data;
-
Erase your data ("right to be forgotten"), subject to our legal retention obligations;
-
Restrict or object to certain processing;
-
Data portability, where technically feasible;
-
Withdraw consent at any time, where processing is based on consent;
-
Lodge a complaint with your national data protection authority (in France, the CNIL — www.cnil.fr).
11.2 If you are located in California or another jurisdiction with similar laws
You may have similar rights under applicable local law (such as the right to know, delete, or opt out of the sale/sharing of personal data under the CCPA/CPRA). We do not sell personal data. To exercise any applicable rights, please contact us using the details in Section 12.
11.3 All customers, wherever located
Regardless of your location, you may contact us at any time to ask what data we hold about you or to request its deletion, and we will respond in accordance with applicable law.
12. How to Exercise Your Rights / Contact Us
To exercise any of the rights described above, or for any question about this Privacy Policy, please contact us at: contact@pdfebookguide.com. We will respond within the timeframe required by applicable law (generally one month under the GDPR).
13. Children's Privacy
Our products and Site are not directed at children, and we do not knowingly collect personal data from individuals under the age of 16. If you believe a child has provided us with personal data, please contact us so we can delete it.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or in applicable law. The updated version will be published on the Site with a new "last updated" date.