Privacy Policy
Last Updated: December 8, 2025
Your privacy matters to us. This policy explains how we collect, use, and protect your personal information. We're committed to transparency and keeping your data secure.
1Introduction
At Happy Sourdough, we respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, share, and safeguard your data when you use our website and services.
By using our website or placing an order, you consent to the data practices described in this policy. If you do not agree with our practices, please do not use our services.
2Information We Collect
2.1 Information You Provide
We collect information that you voluntarily provide when you:
- Create an account or place an order
- Subscribe to our newsletter or marketing communications
- Contact our customer service
- Participate in surveys, promotions, or contests
- Leave reviews or feedback
This information may include:
- Contact Information: Name, email address, phone number
- Delivery Information: Delivery address, delivery instructions
- Account Information: Username, password (encrypted)
- Order Information: Order history, product preferences, special requests
- Payment Information: Billing address (credit card information is processed by Stripe and not stored on our servers)
2.2 Information Collected Automatically
When you visit our website, we automatically collect certain information about your device and browsing behavior:
- Device Information: IP address, browser type, operating system, device type
- Usage Data: Pages visited, time spent on pages, links clicked, referring website
- Location Data: Approximate geographic location based on IP address
- Cookies and Similar Technologies: Information stored in cookies and similar tracking technologies (see Section 5)
2.3 Information from Third Parties
We may receive information about you from third-party services such as payment processors (Stripe) and authentication providers if you choose to use social login features.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Order Processing: To process, fulfill, and deliver your orders
- Customer Service: To respond to your inquiries, provide support, and communicate about your orders
- Account Management: To create and manage your account, including order history and saved preferences
- Payment Processing: To process payments and prevent fraud
- Marketing Communications: To send you promotional emails, newsletters, and special offers (with your consent)
- Personalization: To recommend products and customize your experience
- Analytics and Improvement: To analyze website usage, improve our services, and develop new features
- Legal Compliance: To comply with legal obligations and protect our rights
- Security: To detect, prevent, and address security issues, fraud, or technical problems
4. How We Share Your Information
We do not sell your personal information to third parties. We may share your information in the following limited circumstances:
4.1 Service Providers
We work with trusted third-party service providers who assist us in operating our business:
- Stripe: Payment processing (PCI-DSS compliant)
- Supabase: Database hosting and authentication services
- Resend: Email delivery for order confirmations and notifications
- Vercel: Website hosting and performance optimization
These service providers have access to your information only to perform specific tasks on our behalf and are obligated to protect your data.
4.2 Legal Requirements
We may disclose your information if required by law or in response to:
- Court orders, subpoenas, or other legal processes
- Requests from government authorities or law enforcement
- Protection of our rights, property, or safety, or that of our users or the public
4.3 Business Transfers
In the event of a merger, acquisition, sale of assets, or bankruptcy, your information may be transferred to the acquiring entity. You will be notified of any such change.
4.4 With Your Consent
We may share your information for other purposes with your explicit consent.
5. Cookies and Tracking Technologies
5.1 What Are Cookies
Cookies are small text files stored on your device that help us provide and improve our services. We use both session cookies (which expire when you close your browser) and persistent cookies (which remain on your device until deleted).
5.2 Types of Cookies We Use
- Essential Cookies: Required for the website to function properly, including maintaining your shopping cart and authentication session
- Performance Cookies: Help us understand how visitors use our website by collecting anonymous usage statistics
- Functionality Cookies: Remember your preferences and settings to provide a personalized experience
- Marketing Cookies: Track your browsing activity to show you relevant advertisements (only with your consent)
5.3 Managing Cookies
Most web browsers automatically accept cookies, but you can modify your browser settings to decline cookies if you prefer. Please note that disabling cookies may limit your ability to use certain features of our website, such as maintaining items in your shopping cart.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using SSL/TLS technology
- Encryption of sensitive data at rest
- Secure authentication and access controls
- Regular security assessments and updates
- Employee training on data protection practices
While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security of your data.
7. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required by law. Generally:
- Account Information: Retained until you request account deletion
- Order History: Retained for 7 years for accounting and legal compliance purposes
- Marketing Data: Retained until you unsubscribe or request deletion
- Website Analytics: Anonymized after 26 months
8. Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal obligations to retain certain data)
- Portability: Request a copy of your data in a structured, machine-readable format
- Objection: Object to processing of your information for certain purposes
- Restriction: Request restriction of processing under certain circumstances
- Withdraw Consent: Withdraw consent for processing based on consent (does not affect lawfulness of prior processing)
To exercise any of these rights, please contact us using the information provided in Section 12. We will respond to your request within 30 days.
9. Marketing Communications and Preferences
9.1 Email Marketing
With your consent, we may send you marketing emails about our products, special offers, and news. You can opt out at any time by:
- Clicking the "unsubscribe" link in any marketing email
- Updating your preferences in your account settings
- Contacting us directly to opt out
Please note that even if you opt out of marketing emails, we will still send you transactional emails related to your orders, such as order confirmations and delivery notifications.
9.2 SMS/Text Messages
If you opt in to receive SMS notifications about your orders, you can opt out at any time by replying "STOP" to any text message or updating your preferences in your account.
10. Children's Privacy
Our services are not intended for children under the age of 13, and we do not knowingly collect personal information from children under 13. If we become aware that we have collected information from a child under 13, we will take steps to delete that information as soon as possible. If you believe we have collected information from a child under 13, please contact us immediately.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The "Last Updated" date at the top of this page indicates when the policy was last revised. We encourage you to review this policy periodically. Continued use of our services after changes are posted constitutes acceptance of the updated policy.
12Contact Information
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Happy Sourdough - Privacy Team
13. Third-Party Links and Services
Our website may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party sites you visit. This Privacy Policy applies only to information collected by Happy Sourdough.
14. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your jurisdiction. By using our services, you consent to the transfer of your information to the United States and other countries where our service providers operate.