Privacy Policy
This Privacy Policy explains how Pizzana ("we," "us," "our," or "the Company") collects, uses, discloses, retains, and protects information about you when you visit our website at pizzana-pizzas.rest, place orders, interact with our services, or otherwise engage with us. We are committed to protecting your personal information and your right to privacy. Please read this policy carefully. If you have any questions or concerns, contact us using the details provided at the end of this document.
By accessing or using our website and services, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms described herein, please discontinue use of our website and services immediately.
1. About Us
Pizzana is a food service business operating in the United States. We provide pizza and related food products through our online platform and physical location(s). As a data controller, we are responsible for determining how and why your personal data is processed.
| Business Name | Pizzana |
|---|---|
| Website | pizzana-pizzas.rest |
| [email protected] | |
| Country of Operation | United States |
2. Applicable Laws and Regulatory Framework
As a business operating in the United States, Pizzana complies with all applicable federal and state privacy laws, including but not limited to:
- California Consumer Privacy Act (CCPA) and its amendment, the California Privacy Rights Act (CPRA), which provide California residents with specific rights regarding their personal information.
- Federal Trade Commission Act (FTC Act), which governs unfair or deceptive practices in commerce, including data privacy representations.
- CAN-SPAM Act, governing commercial email communications.
- Children's Online Privacy Protection Act (COPPA), which restricts the collection of personal information from children under the age of 13.
- Other applicable federal and state consumer protection laws.
If you are a California resident, please refer to Section 11 for additional rights afforded to you under the CCPA/CPRA.
3. Information We Collect
We collect various types of information in connection with your use of our website and services. The categories of information we collect are described below.
3.1 Personal Information You Provide Directly
When you interact with our website, create an account, place an order, or contact us, you may voluntarily provide us with the following personal information:
- Identity Information: Full name, username or similar identifiers.
- Contact Information: Email address, telephone number, delivery address, billing address.
- Account Credentials: Password or authentication tokens (stored in encrypted form).
- Payment Information: Credit or debit card details, billing information. Note: Full payment card details are processed and stored by our PCI-DSS-compliant third-party payment processors. We do not store complete card numbers on our servers.
- Order Information: Details of food items ordered, special dietary requests, delivery preferences, and order history.
- Communications: Any correspondence you send us, including emails, feedback forms, survey responses, and customer service inquiries.
- Marketing Preferences: Your preferences regarding receiving marketing communications from us.
3.2 Information Collected Automatically
When you visit our website, we automatically collect certain technical and usage data, including:
- Device Information: IP address, browser type and version, operating system, device type (desktop, mobile, tablet), device identifiers.
- Usage Data: Pages viewed, links clicked, time spent on pages, referral URLs, search queries made on our website, and the sequence of pages visited during a session.
- Log Data: Server logs, error logs, access times, and dates of access.
- Location Data: General geographic location inferred from your IP address. With your explicit consent, we may collect more precise geolocation data to provide delivery services or locate nearby pickup points.
- Cookie and Tracking Data: Information collected via cookies, web beacons, pixels, and similar tracking technologies. Please refer to Section 8 for detailed information about our use of cookies.
3.3 Information From Third Parties
We may receive information about you from third-party sources, including:
- Social Media Platforms: If you connect your social media account (e.g., Facebook, Google) to log in or interact with our services, we may receive your public profile information and email address from that platform.
- Payment Processors: Confirmation of payment status and limited billing information.
- Analytics Providers: Aggregated or pseudonymized data about website usage patterns.
- Delivery Partners: Delivery status updates and related logistics information.
- Marketing Partners: Information to help us reach you with relevant advertising, where you have consented to such sharing with those partners.
3.4 Sensitive Personal Information
We generally do not seek to collect sensitive personal information such as Social Security numbers, government-issued ID numbers, financial account credentials beyond payment processing, health data, or racial/ethnic origin. However, if you voluntarily share dietary restrictions or allergy information to personalize your food order (e.g., gluten-free, nut allergy), this may be considered health-related information. We use such information solely to fulfill your order and improve your dining experience, and we treat it with heightened care and confidentiality.
4. How We Use Your Information
We use the information we collect for the following purposes, each grounded in a legitimate business or legal basis:
4.1 Providing and Managing Our Services
- Processing and fulfilling your food orders and delivery requests.
- Creating and managing your account on our platform.
- Processing payments and preventing fraudulent transactions.
- Communicating with you about your orders, including confirmations, updates, and receipts.
- Responding to your customer service inquiries, complaints, and feedback.
- Providing technical support for our website and services.
4.2 Improving Our Services
- Analyzing usage patterns and user behavior to enhance website functionality and user experience.
- Conducting internal research, testing, and development of new features or menu items.
- Monitoring and improving the performance, security, and reliability of our website and services.
- Detecting and preventing technical errors, bugs, and security incidents.
4.3 Marketing and Communications
- Sending you promotional offers, discounts, and news about Pizzana products and services, where you have opted in or where we have a legitimate interest to do so in accordance with applicable law.
- Personalizing your experience by recommending menu items or promotions based on your order history and preferences.
- Conducting surveys, sweepstakes, contests, or loyalty programs.
- Displaying targeted advertising on our website or on third-party platforms, based on your interests and browsing behavior.
You may opt out of marketing communications at any time by clicking the "unsubscribe" link in any marketing email we send, or by contacting us at [email protected].
4.4 Legal and Compliance Purposes
- Complying with applicable federal, state, and local laws and regulations.
- Responding to lawful requests from law enforcement or government authorities.
- Enforcing our Terms of Service and other agreements.
- Protecting the rights, property, and safety of Pizzana, our customers, and the public.
- Establishing, exercising, or defending legal claims.
5. How We Share Your Information
We do not sell your personal information to third parties for monetary compensation. However, we may share your information in the following circumstances:
5.1 Service Providers and Business Partners
We engage trusted third-party companies and individuals to perform services on our behalf. These service providers are given access to your information only as necessary to perform their specific functions and are contractually obligated to protect your data. Categories of service providers include:
- Payment Processors: To securely process your payment transactions (e.g., Stripe, Square, or similar providers).
- Delivery and Logistics Partners: To fulfill and deliver your orders.
- Cloud Hosting and Infrastructure Providers: To host our website and databases securely.
- Analytics Providers: Such as Google Analytics, to help us understand website usage (data may be pseudonymized or aggregated).
- Email and Communication Services: To send transactional and marketing emails on our behalf.
- Customer Support Tools: To manage and respond to customer inquiries.
- Advertising Networks: To deliver relevant advertisements, where permitted by applicable law and your preferences.
5.2 Legal Requirements and Law Enforcement
We may disclose your personal information if we believe in good faith that such disclosure is necessary to:
- Comply with a legal obligation, court order, subpoena, or government request.
- Enforce our legal rights or defend against legal claims.
- Protect the safety of any person or to prevent fraud or illegal activity.
- Protect the rights or property of Pizzana.
5.3 Business Transfers
In the event that Pizzana undergoes a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of its assets, your personal information may be transferred to the acquiring entity as part of that transaction. We will notify you via email and/or a prominent notice on our website if such a change occurs and inform you of your choices regarding your personal information.
5.4 With Your Consent
We may share your information with third parties when you have given us your explicit consent to do so, for example, when you participate in co-branded promotions or integrations with other platforms.
5.5 Aggregated and Anonymized Data
We may share aggregated, anonymized, or de-identified information that cannot reasonably be used to identify you with third parties for research, marketing, analytics, or other business purposes without restriction.
6. Data Security
We take the security of your personal information seriously and implement a range of technical, administrative, and physical safeguards to protect your data from unauthorized access, disclosure, alteration, loss, or destruction. Our security measures include:
- Encryption: We use industry-standard SSL/TLS encryption to protect data transmitted between your browser and our servers. Sensitive data, including passwords and payment information, is encrypted at rest using strong cryptographic algorithms.
- Access Controls: Access to personal data is restricted on a need-to-know basis. Employees and contractors with access to personal data are subject to confidentiality obligations and receive regular privacy and security training.
- Secure Payment Processing: Payment card data is handled by PCI-DSS-compliant third-party payment processors. We do not store, process, or transmit raw card data on our own servers.
- Regular Security Audits: We conduct periodic reviews and vulnerability assessments of our systems, infrastructure, and practices.
- Incident Response: We maintain an incident response plan to promptly detect, contain, and remediate data security incidents. In the event of a data breach affecting your personal information, we will notify you as required by applicable law.
- Two-Factor Authentication: Available for user accounts to provide an additional layer of protection.
Despite our best efforts, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security of your data. If you believe your account has been compromised, please contact us immediately at [email protected].
7. Data Retention
We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, comply with legal obligations, resolve disputes, and enforce our agreements. Our general retention guidelines are as follows:
| Category of Data | Retention Period |
|---|---|
| Account and profile information | For the duration of your account, plus up to 3 years after account closure |
| Order history and transaction records | Up to 7 years, as required for accounting and tax purposes |
| Payment records | Up to 7 years in line with financial record-keeping obligations |
| Customer service communications | Up to 3 years from the date of the interaction |
| Marketing preferences and opt-out records | Indefinitely (to honor your preferences) |
| Website usage and analytics data | Up to 26 months (anonymized data may be retained longer) |
| Cookie and tracking data | Varies by cookie type; see Cookie Policy for details |
| Legal and compliance records | As required by applicable law, typically up to 7 years |
When personal information is no longer needed, we will securely delete or anonymize it. If deletion is not immediately possible (for example, because data is stored in backup archives), we will isolate the data from further processing until deletion is feasible.
8. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies (such as web beacons, pixels, and local storage) to enhance your browsing experience, analyze website traffic, and deliver personalized content and advertising.
8.1 Types of Cookies We Use
- Strictly Necessary Cookies: Essential for the operation of our website. These cookies enable core functions such as account login, shopping cart management, and secure checkout. They cannot be disabled.
- Performance and Analytics Cookies: These cookies collect information about how visitors use our website, such as which pages are visited most often and whether users receive error messages. This data helps us improve our website.
- Functional Cookies: These cookies allow our website to remember your preferences (such as language or region) and provide enhanced, more personalized features.
- Targeting and Advertising Cookies: These cookies are used to deliver advertisements relevant to you and your interests. They may also be used to limit the number of times you see an advertisement and to measure the effectiveness of advertising campaigns.
8.2 Managing Your Cookie Preferences
You can control and manage cookies through your browser settings. Most web browsers allow you to refuse or accept cookies, delete existing cookies, and set preferences for certain websites. Please note that disabling certain cookies may affect the functionality of our website.
For more detailed information about the cookies we use, their purposes, and how to manage your preferences, please refer to our full Cookie Policy, available on our website.
9. Your Privacy Rights
Depending on your state of residence, you may have certain rights with respect to your personal information. We respect and honor these rights as described below.
9.1 General Rights Available to All Users
- Right to Access: You have the right to request a copy of the personal information we hold about you.
- Right to Correction: You have the right to request that we correct inaccurate or incomplete personal information about you.
- Right to Deletion: You have the right to request that we delete your personal information, subject to certain legal exceptions (e.g., where we are required to retain data by law).
- Right to Data Portability: Where technically feasible, you have the right to receive your personal information in a structured, machine-readable format and to transmit that data to another organization.
- Right to Opt Out of Marketing: You may opt out of receiving promotional communications from us at any time by following the unsubscribe instructions in our emails or contacting us directly.
- Right to Withdraw Consent: Where we process your data based on your consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
9.2 How to Exercise Your Rights
To exercise any of the rights described in this section, please submit a request to us by:
- Email: [email protected]
- Website: pizzana-pizzas.rest
We will respond to your request within 45 days of receipt. In some cases, we may need to verify your identity before processing your request to protect the security of your personal information. We will not discriminate against you for exercising your privacy rights.
10. Additional Rights for California Residents (CCPA/CPRA)
If you are a resident of California, you are afforded specific rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA). These rights include:
10.1 Right to Know
You have the right to request that we disclose the following information about our data practices over the past 12 months:
- The categories of personal information we have collected about you.
- The categories of sources from which we collected your personal information.
- The business or commercial purpose for collecting, selling, or sharing your personal information.
- The categories of third parties with whom we share your personal information.
- The specific pieces of personal information we have collected about you.
10.2 Right to Delete
You have the right to request the deletion of personal information we have collected about you, subject to certain exceptions under applicable law.
10.3 Right to Correct
You have the right to request that we correct inaccurate personal information we maintain about you.
10.4 Right to Opt Out of Sale or Sharing
We do not sell personal information for monetary consideration. However, under the CPRA, "sharing" personal information for cross-context behavioral advertising may also be subject to opt-out rights. If you wish to opt out of the sharing of your personal information for advertising purposes, please contact us at [email protected].
10.5 Right to Limit Use of Sensitive Personal Information
To the extent we collect sensitive personal information as defined by the CPRA (e.g., health-related dietary data), you have the right to direct us to limit our use of such information to what is necessary to perform the services you have requested.
10.6 Non-Discrimination
We will not discriminate against you for exercising any of your CCPA/CPRA rights. We will not deny you goods or services, charge you different prices, provide a different level of service quality, or suggest that you will receive a different level of service because you exercised your rights under the CCPA/CPRA.
10.7 Authorized Agents
California residents may designate an authorized agent to submit CCPA/CPRA requests on their behalf. To use an authorized agent, please provide written authorization signed by you, or a power of attorney, along with the agent's request to our contact email. We may still require you to verify your identity directly with us.
11. Children's Privacy
Our website and services are intended for use by individuals who are 18 years of age or older. We do not knowingly collect, solicit, or use personal information from children under the age of 13 without prior verifiable parental consent, in compliance with the Children's Online Privacy Protection Act (COPPA).
If you are between the ages of 13 and 17, you must have your parent's or legal guardian's permission before using our services. By using our services, you represent that you are at least 18 years old, or that you have obtained appropriate parental or guardian consent.
If we discover or are notified that we have collected personal information from a child under 13 without parental consent, we will promptly delete that information from our systems. If you believe we may have inadvertently collected information from a child, please contact us immediately at [email protected].
12. International Data Transfers
Pizzana is based in the United States, and your personal information is primarily collected, stored, and processed in the United States. Our servers are located in the United States, and we operate in accordance with applicable U.S. privacy laws.
If you access our website or services from outside the United States, please be aware that your information may be transferred to, stored in, and processed in the United States. The data protection and privacy laws of the United States may differ from those in your country of residence.
By using our services, you acknowledge and consent to the transfer of your personal information to the United States as described in this Privacy Policy. We take reasonable steps to ensure that any international transfers of data are conducted in a manner that protects your privacy rights to the fullest extent possible under applicable law.
If you are located in a jurisdiction with specific data transfer requirements (such as the European Economic Area or the United Kingdom), please contact us at [email protected] to learn more about the safeguards we have in place.
13. Third-Party Websites and Links
Our website may contain links to third-party websites, services, or applications that are not operated or controlled by Pizzana. This Privacy Policy does not apply to those third-party websites, and we are not responsible for the privacy practices of any third party. We encourage you to review the privacy policies of every website you visit before providing any personal information.
Our inclusion of links to third-party websites does not imply endorsement of those websites, their content, or their privacy practices.
14. Do Not Track Signals
Some web browsers include a "Do Not Track" (DNT) feature that sends a signal to websites requesting that your browsing activity not be tracked. Currently, there is no universally accepted standard for how websites should respond to DNT signals. Our website does not currently respond to DNT browser signals. However, you can manage your tracking preferences through our cookie settings and by adjusting your browser settings as described in Section 8.
15. Filing a Complaint
If you believe that we have not handled your personal information in accordance with this Privacy Policy or applicable law, we encourage you to contact us first so that we can address your concerns directly.
To file a privacy complaint with us, please contact:
We will acknowledge your complaint within 5 business days and aim to resolve it within 30 to 45 days.
15.1 Filing a Complaint with a Regulatory Authority
If you are not satisfied with our response, or if you believe we are processing your personal information in violation of applicable law, you may file a complaint with the relevant data protection or consumer protection authority.
-
Federal Trade Commission (FTC) — United States:
The FTC handles complaints about deceptive or unfair business practices, including privacy violations. You may submit a complaint at: reportfraud.ftc.gov or call 1-877-FTC-HELP (1-877-382-4357). -
California Attorney General — California Residents:
California residents may file a complaint with the California Attorney General regarding CCPA/CPRA violations at: oag.ca.gov/privacy/ccpa -
California Privacy Protection Agency (CPPA):
The CPPA is responsible for enforcing the CPRA. You may contact them at: cppa.ca.gov -
State Attorney General (Other States):
Residents of other states may also have the right to contact their respective State Attorney General's office regarding privacy concerns.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:
- Post the updated Privacy Policy on our website with a revised "Last Updated" date.
- Notify you by email (if you have provided us with your email address) or by a prominent notice on our website prior to the changes taking effect.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information. Your continued use of our website and services after the effective date of a revised Privacy Policy constitutes your acceptance of the updated terms.
17. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please do not hesitate to contact us through any of the following channels:
Pizzana — Privacy Contact
Email: [email protected]
Website: pizzana-pizzas.rest
Country: United States
We are committed to working with you to resolve any concerns about your privacy promptly and transparently. Our team will endeavor to respond to all privacy-related inquiries within 5 business days.