Welcome to Café de Paris UK (“we”, “our”, “us”). We are committed to protecting your personal data and respecting your privacy in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This Privacy Policy explains how we collect, use, and protect your information when you use our website and services, including table reservations and online food orders.
1. Who We Are (Data Controller)
Café de Paris UK is the data controller responsible for your personal data.
Contact Details:
Email: [Insert Email]
Address: [Insert Address]
2. Information We Collect
We may collect and process the following data:
a) Personal Information
- Full name
- Email address
- Phone number
- Billing and delivery address
b) Reservation Information
- Booking date and time
- Number of guests
- Special requests
c) Order Information
- Items ordered
- Payment details (processed securely via third-party providers)
- Delivery instructions
d) Technical Data
- IP address
- Browser type
- Device information
- Website usage data
This aligns with standard UK policies where identity, contact, and transaction data are collected for service delivery.
3. How We Collect Your Data
We collect data when you:
- Make a reservation
- Place an online order
- Fill out forms on our website
- Contact us
- Browse our website (via cookies)
4. How We Use Your Data
We use your data to:
- Process reservations
- Fulfil online food orders
- Manage payments and transactions
- Communicate with you about bookings or orders
- Improve our website and services
- Send marketing (only if you opt-in)
5. Legal Basis for Processing
We process your data under the following lawful bases:
- Contractual necessity (e.g. reservations/orders)
- Legitimate interests (e.g. improving services)
- Consent (e.g. marketing emails)
- Legal obligations
This is required under UK GDPR.
6. Sharing Your Data
We may share your data with:
- Payment processors (e.g. Stripe, PayPal)
- Delivery partners
- IT and website service providers
- Legal authorities (if required)
All third parties are required to respect your data and comply with UK GDPR.
7. Data Security
We implement appropriate security measures to protect your data, including:
- Secure servers
- Encryption where applicable
- Restricted access controls
UK policies require organisations to prevent unauthorized access or loss of data.
8. Data Retention
We only keep your data as long as necessary for:
- Providing services
- Legal/accounting requirements
Some data (like transaction records) may be retained for up to 6–10 years for legal compliance.
9. Your Rights (UK GDPR)
You have the right to:
- Access your data
- Correct inaccurate data
- Request deletion (“right to be forgotten”)
- Restrict processing
- Object to processing
- Data portability
You also have the right to complain to the Information Commissioner’s Office (ICO).
10. Cookies
We use cookies to:
- Improve website performance
- Analyse traffic
- Enhance user experience
You can manage cookies through your browser settings.
UK law requires user consent before placing non-essential cookies.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for their privacy policies.
12. Marketing Communications
We will only send marketing emails if:
- You have opted in
- You have not unsubscribed
You can unsubscribe at any time.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page.