GDPR

Privacy Policy for YourLocalEats
Last Updated: 02/05/2025
Website: https://yourlocaleats.co.uk

YourLocalEats ("we," "us," or "our") is committed to protecting your privacy under the UK GDPR and Data Protection Act 2018. This policy explains how we collect, use, and safeguard your personal data when you use our website, app, or services.

1. Data We Collect
We may process:

A. Personal Data You Provide
Contact Details: Name, email, phone number, delivery address.

Order History: Food preferences, transaction records.

Payment Information: Card details (processed securely via PCI-compliant partners like Stripe/PayPal).

Account Data: Password, profile settings (if you register).

B. Data Collected Automatically
Device Information: IP address, browser type, operating system.

Usage Data: Pages visited, clicks, order interactions (via cookies).

C. Data from Restaurants
Order confirmations, preparation status updates.

2. How We Use Your Data
Purpose    Legal Basis
Process orders & payments    Contractual necessity
Send order updates (SMS/email)    Legitimate interest
Improve our services (analytics)    Consent (where required)
Marketing (offers/discounts)    Consent (opt-in)
Prevent fraud    Legal obligation
3. Data Sharing
We only share data with:

Restaurants: To fulfill your orders.

Payment Processors: Stripe, PayPal (we never store full card details).

Delivery Partners: To facilitate deliveries.

Legal Authorities: If required by law.

We never sell your data.

4. International Transfers
Data is stored in the UK/EEA. If transferred outside, we use GDPR-approved safeguards (e.g., Standard Contractual Clauses).

5. Your Rights
Under GDPR, you can:

Access your data (via account settings or by emailing us).

Correct inaccurate information.

Delete your account/data (unless legally required to retain it).

Object to marketing or automated processing.

Port your data (we’ll provide it in a machine-readable format).

To exercise these rights, contact: [dpo@yourlocaleats.co.uk].

6. Data Retention
We keep data only as long as necessary:

Orders: 6 years (for tax/legal compliance).

Accounts: Until deleted by you.

Marketing consents: Until withdrawn.

7. Cookies
We use cookies to:

Remember login sessions.

Analyze website traffic (Google Analytics).

Personalize ads (with consent).

Manage preferences via our Cookie Banner.

8. Security
We implement:

Encryption (SSL) for data transfers.

Regular security audits.

Staff GDPR training.

9. Changes to This Policy
Updates will be posted here. Continued use constitutes acceptance.

10. Contact Us
Data Protection Officer (DPO):
Email: infoyourlocaleats@gmail.com
Postal: yourLocalEats,Nottingham, UK]