GDPR-Compliant Privacy Policy for CookedWithLove.net
Last Updated: 05/04/2025
1. Data Controller
Sophia, owner of CookedWithLove.net, is the data controller responsible for your personal data under the EU General Data Protection Regulation (GDPR).
Contact Email: [Your Email]
2. Lawful Basis for Processing
We process personal data under the following GDPR lawful bases:
- Consent (e.g., newsletter subscriptions)
- Contractual necessity (e.g., account registration)
- Legitimate interests (e.g., website analytics, security)
3. Your Rights Under GDPR
As an EU resident, you have the right to:
✅ Access – Request a copy of your personal data
✅ Rectification – Correct inaccurate or incomplete data
✅ Erasure (“Right to Be Forgotten”) – Request deletion of your data
✅ Restrict processing – Limit how we use your data
✅ Data portability – Receive your data in a structured format
✅ Object – Opt out of processing (e.g., direct marketing)
✅ Withdraw consent – At any time (without affecting prior processing)
To exercise these rights, email [Your Contact Email]. We will respond within 30 days.
4. Data We Collect & Why
| Category | Purpose | Retention Period |
|---|---|---|
| Name, Email | Newsletter, account management, user comments | Until unsubscribed/deleted |
| IP Address, Cookies | Analytics, security, site functionality | Up to [X] months |
| Payment Data (if any) | Processing purchases (handled securely by third-party processors) | As required by law |
5. International Data Transfers
If data is transferred outside the EU (e.g., via US-based services like Google Analytics), we ensure safeguards like:
- Standard Contractual Clauses (SCCs)
- Privacy Shield-certified providers (where applicable)
6. Cookies & Tracking
We use:
- Necessary cookies (for site functionality)
- Analytics cookies (Google Analytics – anonymized where possible)
- Marketing cookies (only with consent)
You can manage preferences via our Cookie Banner or browser settings.
7. Data Security
We implement:
🔒 SSL encryption
🔒 Regular security audits
🔒 Limited access to personal data
8. Children’s Data
We do not knowingly collect data from children under 16. Parents may contact us to remove such data.
9. Changes to This Policy
Updates will be posted here with a new “Last Updated” date.
10. Contact & Complaints
For GDPR-related inquiries or to lodge a complaint, contact:
Or your local Data Protection Authority (e.g., https://edpb.europa.eu).