Your Cart (0 items)

Your Order

Your cart is empty

Privacy Policy

How we protect and use your personal information at Kitchen & Bean Café

At Kitchen & Bean Café, we are committed to protecting your privacy and ensuring the security of your personal information. This policy explains how we collect, use, and protect your data in compliance with UK data protection laws, including the Data Protection Act 2018 and the UK GDPR.

Information We Collect

We collect information that helps us provide our services and improve your experience with us:

Personal Information

  • Contact details (name, email, phone number, address)
  • Payment information for orders and bookings
  • Dietary preferences and requirements
  • Event booking details and special requests
  • Marketing preferences

Automatically Collected Information

  • Website usage data through cookies
  • IP address and browser information
  • Device type and operating system

How We Use Your Information

We use your personal information for the following purposes:

Purpose Information Used Legal Basis
Processing food orders and payments Contact details, payment information, order details Contract
Managing table reservations and event bookings Contact details, booking requirements, dietary needs Contract
Providing catering services Contact details, event details, dietary requirements Contract
Sending marketing communications Contact details, preferences Consent
Improving our services and website Usage data, feedback Legitimate Interest
Legal compliance and accounting Transaction records, contact details Legal Obligation

Sharing Your Information

We only share your personal information when necessary and with appropriate safeguards:

Service Providers

  • Payment processors (Stripe, PayPal) for secure transactions
  • Delivery partners for food delivery services
  • Email marketing platforms for communications
  • Website analytics providers (Google Analytics)

Legal Requirements

We may disclose your information if required by law, regulation, or legal process, or to protect our rights, property, or safety.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new entity.

Data Security and Retention

Security Measures

We implement appropriate technical and organizational measures to protect your personal information:

  • Encryption of sensitive data
  • Secure payment processing
  • Regular security assessments
  • Staff training on data protection
  • Limited access to personal information

Data Retention

We retain your personal information only for as long as necessary:

  • Customer records: 7 years for accounting purposes
  • Marketing preferences: Until consent is withdrawn
  • Website analytics: 26 months
  • Event bookings: 3 years after the event

International Transfers

We primarily store and process your data within the UK and European Economic Area. When we use service providers outside these areas, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by UK authorities.

Your Data Protection Rights

Under UK data protection law, you have important rights regarding your personal information:

Right to Access

You can request copies of your personal information that we hold.

Right to Rectification

You can request correction of inaccurate or incomplete information.

Right to Erasure

You can request deletion of your personal information in certain circumstances.

Right to Restrict Processing

You can request limitation of how we use your information.

Right to Data Portability

You can request transfer of your data to another organization.

Right to Object

You can object to processing of your personal information.

To exercise any of these rights, please contact us using the details below. We will respond within one month.

Cookies and Tracking

Our website uses cookies to enhance your browsing experience. For detailed information about the cookies we use and how to manage your preferences, please see our Cookies Policy.

Changes to This Policy

We may update this privacy policy from time to time. The latest version will always be available on our website. Significant changes will be communicated to you where appropriate.

This policy was last updated on 3rd March 2026.

Contact Us

If you have any questions about this privacy policy or how we handle your personal information, please contact us:

Phone

+44 (0)131 123 4567

Address

70 Niddrie Mains Road
Edinburgh, EH16 4DT

You also have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK regulator for data protection issues (www.ico.org.uk).

Live Chat Support

Hello! Welcome to Kitchen & Bean Café. How can we help you today?
Kitchen & Bean Café is typing...