Privacy & Cookie Policy

Privacy & Cookie Policy

Chocolate Dino Company Ltd

36 Kennington Road, London, SE1 7BL

Last updated: 15.09.2025


1. Introduction

Chocolate Dino Company Ltd (“Chocolate Dino”, “we”, “us”, or “our”) respects your

privacy and is committed to protecting the personal data that you share with us. This

Privacy & Cookie Policy explains how we collect, use, store, and protect your

personal data when you visit our bakery, use our website, purchase our products, or

otherwise interact with us.

We comply with the UK General Data Protection Regulation (UK GDPR), the Data

Protection Act 2018, and the Privacy and Electronic Communications Regulations

(PECR).


2. Data We Collect

We may collect the following categories of personal data:

Identity and Contact Data: name, address, telephone number, email

address.

Transaction Data: purchase history, payment details (processed securely by

third-party providers such as Stripe, PayPal, or Square).

Technical Data: IP address, browser type, device identifiers, usage data.

Marketing and Communication Preferences: opt-ins and opt-outs.

Special Category Data: dietary or allergy information (only where you choose

to provide it).


3. How We Collect Data

We collect data when you:

Place an order in store or online.

Sign up for newsletters, loyalty programmes, or promotions.

Contact us by email, phone, or social media.

Use our website (via cookies and similar technologies).


4. How We Use Data

We process your personal data to:

Process and deliver orders.

Manage payments, refunds, and fraud prevention.

Provide customer service and respond to enquiries.

Send marketing communications where you have opted in.

Improve our products, services, and website.

Comply with legal and regulatory requirements.

We do not sell personal data to third parties.


5. Legal Basis for Processing

We process personal data on the following legal bases:

To perform a contract with you (e.g. fulfilling an order).

To comply with legal obligations (e.g. accounting, tax).

For our legitimate business interests (e.g. preventing fraud, improving

services).

With your consent (e.g. marketing).

You may withdraw consent at any time.


6. Data Sharing

We may share data with:

Payment processors (e.g. Stripe, PayPal, Square).

Delivery providers and couriers.

IT, hosting, and analytics service providers.

Professional advisers (accountants, insurers, legal).

Regulators and authorities where required by law.

All third parties are contractually required to safeguard personal data.


7. Cookies


We use cookies and similar technologies on our website to:

Enable website functionality.

Analyse traffic and improve performance.

Remember user preferences.

Deliver personalised advertising where consented.

You can manage cookies through your browser settings. Disabling some cookies

may affect website performance.


8. Data Security

We apply appropriate technical and organisational measures to protect personal

data against unauthorised access, alteration, disclosure, or destruction. Access to

data is restricted to authorised personnel only.


9. Data Retention

We retain personal data only for as long as necessary:

Transaction records: up to six years for legal and tax compliance.

Marketing data: until you withdraw consent or opt out.

Website analytics: as per provider policies.


10. Your Rights

Under UK GDPR, you have the right to:

Access the personal data we hold about you.

Request correction of inaccurate data.

Request deletion of your personal data.

Restrict or object to processing.

Request data portability.

Withdraw consent for marketing communications.

Requests can be submitted using the contact details below.


11. International Transfers


We do not routinely transfer personal data outside the UK or EEA. If data must be

transferred, we ensure appropriate safeguards are in place, such as adequacy

decisions or standard contractual clauses.


12. Changes to This Policy

We may update this policy from time to time. Updates will be published on our

website and, where appropriate, communicated directly to you.


13. Contact Us

If you have any questions about this policy or wish to exercise your rights, please

contact:

Chocolate Dino Company Ltd

36 Kennington Road, London, SE1 7BL

Email: askdino@chocolatedinocompany.co.uk

If you are not satisfied with our response, you have the right to lodge a complaint

with the Information Commissioner’s Office (ICO) at www.ico.org.uk.