LesaJewel · Lesa Jewelry Co., Limited

Privacy Policy

Last updated: August 31, 2026  ·  Applies to https://www.lesajewel.lat

This policy explains, in plain language, what personal information we collect through the LesaJewel website and workshop services, why we collect it, how long we keep it, and the rights you hold over it. Please read it before you send us an inquiry or place an order.

Table of Contents

  1. Introduction
  2. Scope of This Policy
  3. Information We Collect
  4. Information You Provide Voluntarily
  5. Automatic and Technical Data
  6. How We Use Your Information
  7. Legal Bases for Processing
  8. Cookies and Similar Technologies
  9. Analytics and Third-Party Tools
  10. Sharing and Disclosure
  11. International Transfers of Data
  12. Data Retention Schedules
  13. Security of Your Information
  14. Your Rights and Choices
  15. Marketing Communications
  16. Privacy for Children
  17. Third-Party Websites
  18. Changes to This Policy
  19. Contact the Privacy Desk

1. Introduction

This Privacy Policy explains how Lesa Jewelry Co., Limited collects, uses, stores, and protects personal information when you visit our website, send us an inquiry, commission a piece, or use any other service we provide. The website located at https://www.lesajewel.lat and the services offered through it are developed and operated by the developer LesaJewel on behalf of Lesa Jewelry Co., Limited, a jewelry company with its office at Rm A17 29/F Legend Tower, 7 Shing Yip Street, Kwun Tong, Hong Kong (HK). In this policy we refer to Lesa Jewelry Co., Limited as the company, the workshop, or we.

We handle personal information the way we handle gemstones: carefully, with a written record at every step. We collect only what we need to answer your questions, produce your jewelry, deliver your parcels, and comply with the laws that apply to a workshop in Hong Kong. We do not sell personal information to anyone, and we do not share it with advertisers. If any part of this policy is unclear, write to us at support@lesajewel.lat or call +17699005545 and a member of the workshop team will explain it before you submit anything.

2. Scope of This Policy

This policy applies to all personal information processed by or on behalf of the company in connection with the website, the inquiry and quotation process, custom commissions, repairs, wholesale orders, and aftercare services. It covers information collected online through the website and by email, and information collected offline at the workshop, by telephone, or during fittings and deliveries.

The policy does not cover the practices of third parties such as courier companies, payment processors, laboratories, or social media platforms, even when we work with them to complete your order. Those organizations have their own privacy notices, and we encourage you to read them. Where a third party processes personal information on our instructions, for example a laboratory that engraves a certificate number, that processing is governed by a written contract and by this policy. Where a third party acts independently, for example a courier that needs the recipient name and address to deliver a parcel, its own policy governs its handling.

3. Information We Collect

The information we hold depends on how you interact with the workshop. In broad categories, we may collect and hold the following:

  • Identity and contact details, such as your name, email address, telephone number, billing address, and delivery address.
  • Order and commission details, such as drawings you approve, stone selections, metal choices, engraving texts, measurements you provide, and the workshop card created for your job.
  • Payment records, such as invoice numbers, amounts, dates, and the last four digits of a card used through a payment processor. We do not store full card numbers on our systems.
  • Communications, such as emails, chat messages, telephone notes, and photographs you send us of a piece to be repaired.
  • Delivery records, such as courier tracking numbers, customs declarations, and proof of delivery scans.
  • Technical records, such as server logs and the analytics data described in section 5 of this policy.

We do not collect special category data such as health, religious, or biometric information, and we ask that you do not send such information to us. If you send photographs for a repair, please remove any documents or items visible in the background that you would prefer not to share.

4. Information You Provide Voluntarily

Most of the information we hold starts with you. When you complete the inquiry form on the contact page, we receive your name, email address, subject, and message. When you commission a piece, we receive the design brief, sizes, deadlines, and any family history you choose to include about a stone being reset. When you write to the concierge desk, we keep the correspondence so that any colleague who picks up your file can see what was already discussed and you do not have to repeat yourself.

You decide how much to tell us. Only the fields marked required on a form are needed to answer you, and everything beyond that is optional. If you ask us to remove optional notes from your file, we will do so while keeping the records we must keep for accounting, warranty, and legal reasons. Please do not send us passwords, full card numbers, or identity documents by ordinary email; if such material ever becomes necessary, we will arrange a safer channel first.

5. Automatic and Technical Data

Like nearly every website, ours records technical information automatically when you visit. This includes the internet protocol address through which you connect, the type of browser and device you use, the pages you request, the date and time of each request, the website that referred you, and general indicators of your approximate region derived from the address. This material is recorded in server logs and in the analytics tools described later in this policy.

Technical data exists for practical reasons. It keeps the site available, detects and blocks abusive traffic, diagnoses errors when a page fails to load, and tells us which pages genuinely help visitors so we can improve the rest. It is not used to build advertising profiles, and we do not attempt to identify named individuals from logs except when we must investigate a specific attack, fraud attempt, or legal obligation. In such a case we handle the material under this policy and disclose it only as described in section 10.

6. How We Use Your Information

We use personal information for the following purposes:

  • To answer inquiries and prepare drawings, stone plans, and quotations you request.
  • To produce, set, hallmark, engrave, polish, and deliver commissioned pieces and repairs.
  • To process payments, issue invoices and receipts, and keep the accounting records required in Hong Kong.
  • To arrange insured couriers, prepare customs documentation, and send tracking information.
  • To provide warranty service, aftercare, and lifetime polishing for pieces we made.
  • To improve the website, the service list, and the clarity of our quotations.
  • To prevent fraud, protect the workshop, and comply with law enforcement or court orders where required.

We do not use personal information for automated decisions that produce legal effects, and we do not sell it, rent it, or trade it. When a purpose changes in a way that is incompatible with this policy, we will tell you and, where the law requires, ask for consent before proceeding.

7. Legal Bases for Processing

Where data protection laws such as the General Data Protection Regulation apply to a visitor, we rely on the following legal bases. Performance of a contract covers the processing needed to quote, make, repair, and deliver the jewelry you ordered. Legitimate interests covers keeping the site secure, keeping basic workshop records, defending legal claims, and improving our services, always balanced against your rights and expectations. Consent covers optional communications such as design newsletters, and you may withdraw that consent at any time. Legal obligation covers accounting records, tax documents, and responses to lawful requests from authorities.

For visitors from Hong Kong, the handling described in this policy follows the Personal Data (Privacy) Ordinance and the principles of collection purpose limitation, data minimization, accuracy, retention limitation, and security that the ordinance requires. If you have a question about which basis applies to a specific activity, ask the privacy desk and we will answer with the specific provision rather than a general statement.

8. Cookies and Similar Technologies

Cookies are small text files that a website stores on your device. The site uses a very small set of cookies and similar technologies, limited to what the workshop needs to function and measure. Functional storage keeps your language preference and your form entries if a page fails to submit. Analytics cookies, described in section 9, help us count visits and understand which pages are read. We do not run advertising cookies, cross-site trackers, or social media pixels that follow you to other websites.

You control cookies through your browser. Every modern browser allows you to block new cookies, delete existing ones, and browse in a private mode that discards storage when the window closes. Blocking analytics cookies does not break any feature of the site; the pages, forms, and contact details all work without them. If you block functional storage, you may need to re-enter a few details after a page reload, but nothing else changes.

9. Analytics and Third-Party Tools

We use privacy-conscious analytics to count visitors and measure page performance. These tools record events such as page views, scrolls, outbound clicks to the contact page, and general region of the visitor, using aggregated and mostly pseudonymous identifiers rather than names. We review the numbers monthly to decide which pages to rewrite, which photographs to replace, and which services deserve a fuller description.

Analytics providers act under their own privacy terms, and their tools may set the cookies described in section 8. We choose providers that allow us to disable data sharing, and we configure them accordingly. Where a provider offers data retention controls, we set them to the shortest practical period. We do not send analytics providers the contents of your inquiries, your drawings, your stone selections, or any workshop records; those stay inside the company. If we change analytics providers, we will update this section and note the change in section 18.

10. Sharing and Disclosure

We share personal information only with the categories of recipients listed here, and only to the extent needed for the task:

  • Courier and logistics companies that deliver parcels and return repaired pieces, receiving the recipient name, address, telephone number, and parcel contents description.
  • Payment processors that handle card and bank payments, receiving the payment amount and the reference needed to reconcile the invoice.
  • Gemological laboratories that grade or certify stones, receiving the stone and, where required, the client reference on the certificate.
  • Specialist trade partners, such as casters or engravers with equipment we do not keep in house, working under written confidentiality instructions.
  • Professional advisers, such as accountants and lawyers, bound by professional secrecy.
  • Public authorities, where a binding legal order requires disclosure.

We never disclose personal information for the purpose of advertising, and we do not publish client names or commission stories without explicit written permission. When a corporate client orders on behalf of its staff, we share order status only with the contacts the client designates.

11. International Transfers of Data

The workshop sits in Hong Kong, and clients live in more than forty countries, so personal information regularly crosses borders. Deliveries require recipient details to be passed to couriers in the destination country. Payments pass through processors that may operate in several jurisdictions. Certificates may be issued by laboratories abroad. When we engage a service provider that stores or processes data outside Hong Kong, we select providers that offer contractual safeguards recognized in their region and we keep the transfer limited to the fields the task requires.

If you contact us from the European Economic Area or the United Kingdom, note that your information will be processed in Hong Kong, where the Personal Data (Privacy) Ordinance provides the governing framework. Where required, transfers rely on appropriate safeguards such as standard contractual clauses adopted by the European Commission. You may ask the privacy desk for a summary of the safeguards applied to your file, and we will provide it in writing.

12. Data Retention Schedules

We keep personal information only as long as the purpose lasts. Inquiry messages that do not become orders are kept for 24 months, then deleted, so the correspondence can still be found if you return to the idea later. Workshop cards, invoices, and payment records for completed orders are kept for 7 years to satisfy accounting and tax requirements in Hong Kong. Delivery records are kept for 7 years alongside the invoices they support. Repair inspections and photographs are kept for 3 years after the repair is delivered, which covers the warranty window and any insurance question that may follow.

Analytics data is kept for 14 months at most, and server logs for 90 days, unless an incident requires longer preservation. Correspondence relating to a legal dispute is kept until the dispute closes plus the limitation period that applies. When a retention period ends, the information is deleted or irreversibly anonymized, and certificates of deletion can be provided for corporate clients on request.

13. Security of Your Information

The workshop protects personal information with a layered set of measures. Digital files sit in access-controlled systems with unique accounts, strong passwords, and multi-factor authentication for the desks that hold client files. Devices used at the bench are encrypted at full disk level and locked when unattended. Email that contains drawings or stone documents is retained only as long as the retention schedule in section 12 requires. Paper workshop cards are stored in locked cabinets inside the workshop and are scanned into the digital file for redundancy.

Physical security matters as much in a jewelry workshop, so the premises have controlled entry, visitor escort rules, and a policy that no client stone leaves a numbered envelope without a signature. No system is perfect, and we do not promise invulnerability; we promise prompt and honest handling. If a breach ever affects your personal information, we will investigate, contain it, notify you and the relevant authority where the law requires, and tell you what we changed to prevent a repeat.

14. Your Rights and Choices

You hold real rights over your personal information, and exercising them is free. You may ask us for a copy of the personal information we hold about you and an explanation of how it is used. You may ask us to correct details that are wrong, for example an address that changed. You may ask us to delete information that we no longer need for the purposes in this policy, subject to the retention schedules we must honor for accounting and warranty records. You may object to processing that relies on legitimate interests, and you may withdraw consent for optional communications at any time.

To exercise any right, write to support@lesajewel.lat or call +17699005545. We will verify your identity with reasonable questions, respond within 30 days, and explain anything we cannot do rather than ignoring it. If you are unsatisfied with our answer, you may complain to the Office of the Privacy Commissioner for Personal Data in Hong Kong or, where applicable, your local data protection authority. Nothing in this policy charges you for exercising a right, and we will never treat a rights request as a reason to give worse service.

15. Marketing Communications

We send marketing messages only to people who asked for them. If you tick the newsletter box on a form or ask the concierge desk to add you to the design letter, we will send occasional messages about new services, stone arrivals, and open workshop dates. Every message states who sent it and includes a working unsubscribe link that removes you immediately. You can also unsubscribe by replying to any message with the word stop, or by writing to support@lesajewel.lat, and the desk will action it within two business days.

Transactional messages are different: order confirmations, stone approval requests, production updates, delivery notices, and warranty replies are part of the service you asked for and are not marketing. You cannot unsubscribe from messages needed to complete a commission you ordered, but once the job closes, only the design letter, if you joined it, will continue to arrive.

16. Privacy for Children

The website and the services of the workshop are directed at adults who can enter into a purchase contract. We do not knowingly collect personal information from children under the age of 16, we do not create accounts for children, and our marketing is not aimed at children. Jewelry commissions involve contracts, payments, and deliveries, all of which presuppose adult capacity.

If you are a parent or guardian and believe a child has sent us personal information, write to support@lesajewel.lat with the details and we will delete the material from our systems promptly. If a commission was somehow initiated by a minor, we will cancel it in line with our terms of service and refund any payment that was made, in coordination with the card issuer or bank. Engraved gifts for children, ordered by an adult client, are processed under the name and contact details of the adult who places the order.

17. Third-Party Websites

Our pages may link to third-party websites, for example the public catalog of a gemological laboratory or the tracking page of a courier. Those sites operate under their own privacy policies, which we do not control and which may differ from this policy. We choose links carefully and review them periodically, but we cannot accept responsibility for the content or the data practices of a site we do not run.

When you follow a link away from https://www.lesajewel.lat, this policy stops applying at the boundary. We recommend reading the privacy notice of any site before submitting information there, especially payment details or identity documents. If you ever find that a link from our site leads somewhere inappropriate or unsafe, tell the privacy desk and we will remove it while we investigate.

18. Changes to This Policy

Workshops change, and so does this policy. When we update it, we change the last updated date at the top of the page and, for material changes, we add a short notice on the homepage for 30 days. Material changes include a new category of information collected, a new category of recipient, a change in retention periods, or a change in the legal basis we rely on. Routine changes, such as a clarified sentence or a corrected link, are made silently.

Continued use of the website after an updated policy takes effect means you accept the updated version. If a change would materially affect an open commission, for example because a new laboratory partner must see the workshop card, we will contact the affected clients directly and explain the change before it applies to their files. Older versions of this policy are archived and can be requested from the privacy desk.

19. Contact the Privacy Desk

Questions, requests, and complaints about privacy are handled by a named team, not a ticket queue. Write to us at support@lesajewel.lat with the subject line Privacy Request, or call +17699005545 during business hours, Monday to Friday from 09:30 to 18:30 and Saturday from 10:00 to 17:00, Hong Kong time. Post reaches us at Lesa Jewelry Co., Limited, Rm A17 29/F Legend Tower, 7 Shing Yip Street, Kwun Tong, Hong Kong (HK).

When you write, please describe the request precisely and include the email address or telephone number you used with us, so we can locate the file quickly. We answer every privacy request within 30 days, and most are answered within a week. Nothing in this section replaces the rights described in section 14; this section simply tells you where to send the letter.

Return to the LesaJewel homepage, browse the service list, or read the Terms of Service.

© 2026 Lesa Jewelry Co., Limited · Rm A17 29/F Legend Tower, 7 Shing Yip Street, Kwun Tong, Hong Kong (HK)

Home  ·  Services  ·  Contact  ·  Privacy Policy  ·  Terms of Service

support@lesajewel.lat  ·  +17699005545