Privacy Policy
1. Introduction
At theshirecafe.com, we are firmly committed to safeguarding the privacy of our customers, visitors, and users. We understand and respect the importance of your personal data and are dedicated to ensuring that it is processed in a transparent, secure, and lawful manner. This Privacy Policy outlines our practices relating to the collection, use, and protection of your personal data in compliance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws.
2. Scope of Policy and Data Controller Role
This Privacy Policy applies to the collection and processing of personal data through our website, located at theshirecafe.com (“Website”), whether you access it via computer, mobile, or other device. For the purposes of applicable data protection legislation, The Shire Café is the data controller responsible for the collection, use, and disclosure of your personal information as described in this policy.
3. Categories of Data Processed
We may collect and process the following categories of personal data:
Usage Data:
Includes information such as your IP address, browser type and version, operating system, referral source, length of visit, page views, session data, and navigation paths. This data is used to secure the website, analyze trends, and improve user experience.
Account Data:
Includes your full name, billing and shipping address, email address, phone number, and login credentials (where applicable). This information is collected when you register an account or place an order on theshirecafe.com.
Profile Data:
Includes your preferences, past purchases, customer history, and behavioral data related to your interactions with our website and services.
Communication Data:
Includes the content of your communications with us, including support inquiries, feedback, and correspondence via email or contact forms.
Technical Data:
Includes data about the device you use to access our website, including device type, unique device identifiers, hardware model, browser settings, time zone, and operating system.
Transaction Data:
Includes order details, payment methods (note: no full card details are stored), delivery details, and transaction history related to purchases made through theshirecafe.com.
Preference Data:
Includes your stated preferences regarding marketing communications, product interests, and opt-in or opt-out status for promotional materials.
4. Legal Bases for Processing
We rely on the following legal grounds for processing your personal data:
– Consent: Where you have provided express consent for specific purposes, such as email marketing or the use of cookies beyond those strictly necessary.
– Contractual Necessity: When processing is required to fulfill our contractual obligations to you, such as fulfilling an order or providing customer service.
– Legitimate Interests: For purposes such as improving our services, fraud prevention, network and information security, and business operations, provided these interests do not override your fundamental rights and freedoms.
– Legal Obligation: Where we are required to process data to comply with applicable laws or regulatory requirements.
5. Your Rights
Depending on your location and applicable laws, you may have the following rights concerning your personal data:
– Right of Access: You are entitled to request a copy of the personal data we hold about you.
– Right to Rectification: You may request that we correct any inaccuracies in your personal data.
– Right to Erasure: You may request deletion of your personal data, subject to certain legal exceptions.
– Right to Restrict Processing: You may request that we restrict the use of your personal data under specific conditions.
– Right to Data Portability: You are entitled to receive your data in a structured, commonly used, and machine-readable format or request its direct transfer to another controller where feasible.
– Right to Object: You have the right to object to processing based on legitimate interests or direct marketing purposes.
– Right to Opt-Out (for California consumers): Under the CCPA, you have the right to opt out of the sale of your personal data, if applicable.
To exercise any of these rights, please contact us at [email protected]. We may request additional information to verify your identity before processing your request.
6. Security Measures
We implement comprehensive technical and organizational measures to protect your personal data from unauthorized access, disclosure, alteration, and destruction. These measures include but are not limited to:
– Use of HTTPS encryption for secure data transmission
– Restricted access to personal data on a need-to-know basis
– Frequent system backups and disaster recovery protocols
– Employee training on data privacy and security
– Secure payment transaction processing through trusted third-party providers
7. International Transfers
Your personal data may be processed outside your country of residence, including in jurisdictions that may not provide the same level of data protection. Where data is transferred internationally, we rely on approved legal mechanisms such as Standard Contractual Clauses or data protection adequacy decisions to ensure your rights are adequately protected.
8. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected. The general retention periods are as follows:
– Account and Profile Data: Retained while the account remains active or up to 3 years of inactivity
– Communication Data: Retained for up to 2 years from the date of last correspondence
– Transaction Data: Retained for a minimum of 6 years for legal and financial auditing
– Cookie Duration: Dependent on type; see Cookie Policy below
In certain cases, data may be stored longer if required for compliance with legal obligations, dispute resolution, or enforcement of agreements.
9. Cookie Policy
We use cookies and similar technologies on theshirecafe.com to enhance your user experience, analyze website performance, and deliver personalized content. Cookies are categorized as follows:
– Essential Cookies: Required for site functionality, security, and access to important features.
– Functional Cookies: Allow us to remember preferences such as language, location, and past choices.
– Analytics Cookies: Help us understand visitor interactions, pages visited, and user behavior to optimize website performance.
– Performance Cookies: Collect anonymous data on website speed, error messages, and usage trends.
– Marketing Cookies: Used to deliver tailored advertisements and measure the effectiveness of campaigns.
10. Cookie Management and Compliance
Users can manage cookies through individual browser settings or interactive cookie consent tools provided on our site. Consent is requested when required by applicable laws (e.g., the GDPR) before placing non-essential cookies. California residents may opt out of certain tracking in accordance with the CCPA by contacting us or using available browser signals such as the Global Privacy Control (GPC).
11. Special Protections for Children
We do not knowingly collect or solicit personal data from children under the age of 13. If we become aware that we have collected such information, we will take prompt action to delete it. Parents or guardians who believe their child has provided us with personal data without consent are encouraged to contact us at [email protected].
12. Policy Updates and Notifications
We reserve the right to modify or update this Privacy Policy at any time to reflect changes in legal requirements, business practices, or processing activities. Any significant changes will be communicated through appropriate channels, which may include a notification on the website or direct communication. You are encouraged to review this privacy policy periodically.
13. Contact Information
To exercise your rights or raise any questions or concerns regarding this Privacy Policy or data practices at theshirecafe.com, please contact us at:
Email: [email protected]
We are committed to upholding your privacy rights and complying with all applicable data protection laws and regulations. If you believe your rights have been violated, you may also contact your local data protection authority.
Thank you for trusting theshirecafe.com.