At Truffle Tribe, we are committed to safeguarding your privacy. This Privacy Policy explains how we collect, use, store, and share your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Information We Collect
When you visit our website or interact with us, we may collect and process the following personal data:
- Information you provide directly
Such as when you:- Place an order
- Subscribe to our newsletter
- Contact us via email or contact form
- Full name
- Email address
- Postal address
- Telephone number
- Payment details (processed securely via trusted third-party services)
- Information collected automatically
Through the use of cookies and similar technologies, including:- IP address
- Browser type and version
- Device information
- Pages visited and time spent on our website
- Referring website addresses
- Information from third-party platforms
We work with advertising and social media platforms (such as Facebook, Instagram, and Google Ads) that may collect data about your browsing habits for advertising and analytics purposes.
2. How We Use Your Information
We use your personal data for the following purposes:
- To process and fulfil orders
- To manage customer service queries and aftercare
- To send email marketing communications (where you have consented)
- To personalise and improve your online experience
- To deliver targeted advertising on social media and other digital platforms
- To meet our legal and regulatory obligations
3. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your browsing experience, analyse site traffic, and provide tailored advertising.
You can manage your cookie preferences at any time via your browser settings. Please note that disabling certain cookies may affect the functionality of our website.
4. Legal Basis for Processing
Under UK data protection law, we rely on the following lawful bases to process your personal data:
- Contractual necessity — for processing and delivering your orders
- Consent — for sending marketing communications
- Legitimate interests — for improving our services, website performance, and advertising efforts
- Legal obligation — where required by applicable laws and regulations
5. Data Sharing and Third Parties
We do not sell your personal data. However, we may share it with trusted third parties for the purposes outlined above, including:
- Payment providers
- Delivery couriers
- Email marketing platforms
- Advertising networks and social media platforms
All third parties are required to handle your data securely and in compliance with UK data protection law.
6. Data Storage and Security
We store your personal data securely and take appropriate measures to protect it against unauthorised access, alteration, disclosure, or destruction. Payment information is processed securely via PCI DSS-compliant third-party payment services.
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including for legal, accounting, or reporting requirements.
7. Your Data Protection Rights
Under the UK GDPR, you have the following rights regarding your personal data:
- The right to access the personal data we hold about you
- The right to request correction of inaccurate or incomplete data
- The right to request deletion of your personal data (where applicable)
- The right to object to or restrict certain processing activities
- The right to withdraw consent where processing is based on consent
- The right to lodge a complaint with the Information Commissioner’s Office (ICO) at www.ico.org.uk
To exercise any of your rights, please contact us using the details below.
8. Changes to This Privacy Policy
We may update this Privacy Policy occasionally to reflect changes in our practices, legal obligations, or services. Any significant changes will be communicated via our website and, where appropriate, notified to you by email.