Legal
Privacy Policy
Last updated 7 August 2026
This policy explains what personal data Optirama Optics collects when you use this website, why we collect it, who we share it with, and the rights you have over it. It is written to comply with Egypt's Personal Data Protection Law (Law 151 of 2020). Please read it alongside our Terms of Sale and Cookie Policy.
Who is responsible for your data
The data controller is the company below. We decide why and how your personal data is processed, and we are the party you contact about it.
- Legal entity
- Optirama Optics
- Commercial register
- TODO-CR-NUMBER
- Tax ID
- TODO-TAX-ID
- Registered address
- 49 Abbas El-Akkad St., Al Manteqah Al Oula, Nasr City, Cairo, Egypt
- info@optiramaoptics.com
- Phone
- +20 2 2403 3740
- Support hours
- Sunday to Thursday, 10:00–18:00 (EET)
What we collect
- Account details — your name, email address, phone number, and a one-way hash of your password. We never store your password in readable form.
- Order details — delivery address, the frames and lens options you chose, order value, and a snapshot of your configuration at the moment of purchase.
- Prescription data — sphere, cylinder, axis, addition and pupillary distance, where you provide them for a lens order.
- Enquiries — the content of contact forms, store-visit bookings and repair requests.
- Payment confirmation — the result of your payment, the method used, and the last four digits and card scheme returned to us by our payment processor. We never receive or store your full card number, expiry date or CVV.
- Technical data — server logs containing IP address, browser type, timestamps and pages requested, retained to keep the service secure and diagnose faults.
Prescription and health data
Your prescription describes your eyesight, so we treat it as sensitive personal data under Article 1 of Law 151 of 2020. We collect it only with your explicit consent, given when you enter it during a lens order.
- It is stored logically separated from the rest of your account record.
- Access is limited to the lab staff filling your order and the support staff handling a query about it.
- It is never used for marketing, never used to build a profile, and never sold or licensed to anyone.
- You can delete it from your account at any time without closing your account.
Why we use it, and on what basis
We only process your data where we have a lawful basis to do so:
- To perform our contract with you — taking payment, cutting lenses, assembling and delivering your order, and handling returns and warranty claims.
- With your explicit consent — processing your prescription, and sending marketing email. You can withdraw either at any time without affecting anything you have already ordered.
- To meet a legal obligation — retaining invoices and transaction records for the periods Egyptian tax and commercial law requires.
- For our legitimate interests — preventing fraud, securing the site, and improving the service, balanced against your rights.
Payments
Card and wallet payments are processed by Paymob, a payment service provider licensed by the Central Bank of Egypt and certified to PCI DSS. When you pay, your card details are submitted directly to Paymob's environment and are not transmitted to or stored on our servers.
Paymob processes your payment data as an independent controller for fraud prevention and regulatory purposes, under its own privacy policy. We receive back only the outcome of the transaction and a masked reference sufficient to identify the payment and issue a refund.
How long we keep it
- Order and payment records
- Retained for the period Egyptian tax and commercial law requires, at least five years from the transaction
- Account details
- Until you delete your account
- Prescription data
- Until you delete it, or until you close your account
- Marketing consent
- Until you unsubscribe
- Server logs
- Up to 12 months
Your rights
Under Law 151 of 2020 you have the right to:
- Know what personal data we hold about you and obtain a copy of it.
- Have inaccurate or incomplete data corrected.
- Have your data erased where we no longer have a basis to keep it.
- Withdraw consent you previously gave, including for prescription data and marketing.
- Object to processing carried out on the basis of our legitimate interests.
- Be told without undue delay if a breach occurs that is likely to harm you.
Much of this you can do yourself from your account page. For anything else, contact us using the details above and we will respond within 30 days. If you are not satisfied with our response, you may complain to the Personal Data Protection Centre established under Law 151 of 2020.
How we protect it
- All traffic between your browser and our servers is encrypted with TLS.
- Passwords are stored only as salted one-way hashes.
- Access to prescription records is restricted to staff who need it to fill an order.
- Card data never reaches our infrastructure, so it cannot be exposed by a breach of it.
No system is perfectly secure. If a breach occurs that is likely to harm you, we will notify you and the competent authority as the law requires.
Children
We sell children's frames, but accounts and orders are for adults. If you are under 18, a parent or guardian must place the order and provide the prescription. We do not knowingly collect data directly from children.
Changes to this policy
If we change this policy we will update the date at the top of this page. For changes that materially affect your rights we will notify account holders by email before the change takes effect.
Questions about this policy? Get in touch
