Privacy Policy
Cork Cakes & Bakes is committed to protecting your privacy. This policy explains how we collect, use, and safeguard your personal data when you interact with our website or place an order.
1. Who We Are
We are Cork Cakes & Bakes, a family-run bakery based in Cork, Ireland. For the purposes of data protection law, we are the data controller of any personal information you provide.
2. What Data We Collect
When you place an order or contact us, we may collect your name, email address, phone number, order details, and IP address.
3. Why We Collect It
We use this data to process orders, communicate with you, and improve/personalise our services.
4. Legal Basis
We process your data based on your consent and our contractual obligation to fulfill your order.
5. Data Sharing
We do not share your personal data with third parties for marketing or advertising purposes. However, we use trusted service providers to help us operate our website securely. For example, our website is hosted on Heroku, a cloud platform that may store data on servers located outside the European Economic Area (EEA), and may process limited technical data (such as IP addresses) to ensure performance and security. These providers are GDPR-compliant and only process data on our behalf with appropriate safeguards in place. We also use Bootstrap via jsDelivr CDN to style our website. This may trigger browser tracking prevention warnings, but we do not use it to collect personal data.
6. Your Rights
You have the right to access, correct, or delete your data. Contact us at corkcakesandbakes@gmail.com to exercise these rights.
7. Cookies
We use only strictly necessary and functional cookies to ensure the secure and reliable operation of our website. These include cookies for CSRF protection and fraud prevention during checkout. We do not use marketing or analytics cookies, and therefore do not request cookie consent. If we introduce optional cookies in the future, such as analytics or personalization tools, we will update this policy and provide a clear consent mechanism.
8. Retention
We retain customer data for up to 24 months to support repeat orders and provide personalized service. After this period, data is securely deleted unless required for legal or accounting purposes. We review our retention practices regularly to ensure data is not kept longer than necessary.
9. Contact
For privacy concerns, contact us at corkcakesandbakes@gmail.com or call +353 (0)85 814 5474
10. Data Transfers
Heroku, our hosting provider, stores data on servers that may be located outside the European Economic Area (EEA). Heroku states that it complies with GDPR and uses Standard Contractual Clauses (SCCs) approved by the European Commission to safeguard such transfers. You can learn more about Heroku’s data protection practices here.