Privacy Policy
This Privacy Policy describes how Papa Ginos ("we," "us," "our," or the "Company") collects, uses, discloses, and safeguards your personal information when you visit our website at papa-ginos.click (the "Website"), place orders, or otherwise interact with our food service business. Please read this policy carefully. By accessing or using our Website or services, you acknowledge that you have read, understood, and agree to be bound by the terms of this Privacy Policy.
We are committed to protecting your privacy and handling your personal information responsibly, transparently, and in full compliance with applicable United States federal and state privacy laws, including the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), the Federal Trade Commission Act (FTC Act), and other applicable consumer protection regulations. This policy explains your rights and our obligations in plain, accessible language.
1. Who We Are
Papa Ginos is a food service business operating through the website papa-ginos.click. We provide food ordering, delivery, and related services to customers across the United States. Our contact details are as follows:
| Business Name | Papa Ginos |
|---|---|
| Website | papa-ginos.click |
| Email Address | [email protected] |
| Address | United States |
If you have any questions, concerns, or requests related to this Privacy Policy or the manner in which we handle your personal information, please contact us using the details above.
2. Information We Collect
We collect various categories of information depending on how you interact with our Website and services. The types of data we may collect include the following:
2.1 Personal Identification Information
When you create an account, place an order, subscribe to our newsletter, participate in a promotion, or contact us, we may collect personal identification information, including but not limited to:
- Full name
- Email address
- Phone number
- Billing and shipping address (including street address, city, state, ZIP code)
- Username and password (stored in encrypted form)
- Date of birth (where required for age verification)
- Payment information (credit card number, expiration date, billing ZIP) — note that full payment card details are processed by our secure third-party payment processors and are not stored directly on our servers
2.2 Order and Transaction Data
When you place an order through our Website, we collect information about the transaction, including:
- Items ordered, quantities, and customizations
- Order history and purchase frequency
- Delivery preferences and special instructions
- Transaction amounts and payment method type
- Order confirmation and fulfillment details
2.3 Usage and Behavioral Data
We automatically collect certain information about how you interact with our Website. This usage data may include:
- Pages visited and time spent on each page
- Clickstream data and navigation paths
- Search queries entered on our Website
- Referring URLs and exit pages
- Features used and interactions with menu items or promotional content
- Timestamps of visits and actions
2.4 Device and Technical Information
When you access our Website, we may automatically collect technical information about your device and connection, including:
- IP address
- Browser type and version
- Operating system and platform
- Device type (desktop, mobile, tablet)
- Screen resolution
- Mobile device identifiers (if applicable)
- Internet service provider (ISP)
- Geographic location derived from IP address (city/region level)
2.5 Cookie and Tracking Data
We use cookies, web beacons, pixel tags, and similar tracking technologies to collect information about your browsing behavior on our Website. For more detailed information about our use of cookies and how to manage your preferences, please refer to Section 8 of this Privacy Policy.
2.6 Communications and Feedback
If you contact us via email, telephone, live chat, or any other communication channel, we may retain records of that correspondence, including:
- The content of messages or inquiries you send us
- Customer service interactions and complaint records
- Survey responses and feedback you provide
- Review or rating submissions
2.7 Information Collected from Third Parties
We may receive information about you from third-party sources, such as:
- Social media platforms if you connect your account or interact with our social media pages
- Marketing partners and advertising networks
- Analytics providers
- Fraud prevention and identity verification services
- Delivery and logistics partners
3. How We Use Your Information
We use the personal information we collect for a variety of legitimate business purposes. The primary purposes for which we process your data include the following:
3.1 Service Provision and Order Fulfillment
- Processing and fulfilling food orders placed through our Website
- Managing your account and maintaining account security
- Coordinating delivery logistics and communicating estimated delivery times
- Processing payments and issuing receipts or invoices
- Responding to customer service inquiries, complaints, or requests
- Providing technical support and troubleshooting issues
3.2 Communications
- Sending order confirmations, status updates, and delivery notifications
- Notifying you of changes to your account, our services, or this Privacy Policy
- Responding to your inquiries and messages in a timely manner
- Sending promotional emails, newsletters, and special offers — where you have consented or where permitted by applicable law
3.3 Analytics and Business Improvement
- Analyzing usage trends to improve the functionality and user experience of our Website
- Conducting internal research and statistical analysis
- Evaluating the effectiveness of our menu offerings, pricing, and promotions
- Understanding customer preferences and behavior patterns
- Identifying and correcting technical errors or performance issues
3.4 Marketing and Personalization
- Delivering personalized content, recommendations, and offers based on your order history and preferences
- Running targeted advertising campaigns on third-party platforms (with appropriate controls in place)
- Conducting loyalty programs, contests, sweepstakes, or promotional activities
- Measuring the performance of our marketing campaigns
3.5 Legal Compliance and Safety
- Complying with applicable federal, state, and local laws and regulations
- Detecting, preventing, and investigating fraudulent or unauthorized activity
- Protecting the rights, property, and safety of Papa Ginos, our customers, and the public
- Enforcing our Terms of Service and other contractual agreements
- Responding to lawful requests from law enforcement authorities and regulatory bodies
4. How We Share Your Information
We do not sell your personal information to third parties for their own direct marketing purposes, except as may be defined under applicable state law (see Section 9 for California-specific rights). We may, however, share your information in the following circumstances:
4.1 Service Providers and Business Partners
We work with trusted third-party service providers who assist us in operating our business and providing services to you. These providers are contractually obligated to use your information only as directed by us and in accordance with this Privacy Policy. Categories of service providers include:
- Payment processors: To securely process financial transactions
- Delivery and logistics partners: To fulfill and coordinate food delivery orders
- Cloud hosting and infrastructure providers: To host our Website and store data
- Email and communication platforms: To deliver transactional and marketing communications
- Analytics providers: Such as Google Analytics, to help us understand Website usage
- Customer support tools: To manage customer service interactions
- Fraud prevention services: To identify and prevent fraudulent activity
- Marketing and advertising platforms: To run targeted campaigns
4.2 Legal Requirements and Law Enforcement
We may disclose your personal information if we believe in good faith that such disclosure is necessary to:
- Comply with a legal obligation, court order, subpoena, or other governmental or regulatory request
- Enforce our Terms of Service or other applicable agreements
- Protect and defend the rights, interests, or safety of Papa Ginos, our employees, customers, or the general public
- Investigate, prevent, or take action regarding suspected illegal activities or fraud
4.3 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your personal information may be transferred to the acquiring entity. We will notify you of any such change in ownership or control of your personal information through a notice posted on our Website or sent to the email address associated with your account.
4.4 With Your Consent
We may share your information with other third parties when you have given us your explicit consent to do so, or when you have directed us to share your data with a specific party.
4.5 Aggregated and Anonymized Data
We may share aggregated, anonymized, or de-identified information — which cannot reasonably be used to identify you — with third parties for research, marketing, analytics, or other business purposes without restriction.
5. Data Security
We take the security of your personal information seriously and implement a range of technical, administrative, and physical safeguards designed to protect your data against unauthorized access, disclosure, alteration, or destruction. Our security measures include, but are not limited to:
5.1 Technical Safeguards
- Secure Socket Layer (SSL) and Transport Layer Security (TLS) encryption for data transmitted between your browser and our servers
- Encryption of sensitive data at rest, including passwords stored using industry-standard hashing algorithms
- Firewalls and intrusion detection systems to monitor for unauthorized access attempts
- Regular security vulnerability assessments and penetration testing
- Secure, tokenized payment processing through PCI-DSS compliant payment providers
- Two-factor authentication options for account access
5.2 Administrative and Organizational Safeguards
- Limiting access to personal information to employees and contractors who need it to perform their job functions
- Regular privacy and security training for our staff
- Written data handling procedures and internal policies
- Vendor due diligence and contractual data processing agreements with all third-party service providers
5.3 Incident Response
In the event of a data breach that poses a risk to your rights and freedoms, we will notify affected individuals and relevant authorities as required by applicable law, including applicable state data breach notification laws. We maintain an incident response plan to address such situations promptly and effectively.
6. Your Privacy Rights
Depending on your state of residence, you may have certain rights with respect to your personal information. We are committed to honoring these rights in accordance with applicable law.
6.1 Right to Know and Access
You have the right to request that we disclose information about the personal data we have collected about you, including the categories of data collected, the purposes for collection, the categories of sources, the categories of third parties with whom we share data, and the specific pieces of personal information we hold about you.
6.2 Right to Correction
You have the right to request that we correct inaccurate personal information that we maintain about you. We will use commercially reasonable efforts to honor such requests, subject to verification of your identity.
6.3 Right to Deletion
You have the right to request that we delete personal information we have collected from you, subject to certain exceptions permitted by law (such as where retention is necessary for legal compliance, completing a transaction, or detecting security incidents).
6.4 Right to Data Portability
Where technically feasible and required by applicable law, you have the right to request a copy of your personal information in a structured, commonly used, machine-readable format.
6.5 Right to Opt Out of Sale or Sharing
To the extent that we engage in the "sale" or "sharing" of personal information as defined under applicable state law (including the CCPA/CPRA), you have the right to opt out. You may exercise this right by contacting us at [email protected] or by using any opt-out mechanism we make available on our Website.
6.6 Right to Limit Use of Sensitive Personal Information
Where we collect sensitive personal information (as defined under the CPRA or other applicable laws), you may have the right to request that we limit the use and disclosure of such data to what is reasonably necessary to provide the requested services.
6.7 Right to Non-Discrimination
We will not discriminate against you for exercising any of your privacy rights. This means we will not deny you services, charge you different prices, or provide you with a lesser quality of service because you exercised a right afforded to you under applicable privacy law.
6.8 Right to Withdraw Consent
Where we process your personal information on the basis of your consent, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of processing conducted before the withdrawal.
6.9 How to Submit a Privacy Rights Request
To exercise any of the rights described above, please contact us by:
- Email: [email protected]
- Website: papa-ginos.click
We will respond to verifiable requests within the timeframes required by applicable law (generally 45 days, with an extension of an additional 45 days where reasonably necessary). We may need to verify your identity before processing your request to protect your information from unauthorized access. We will not charge a fee for processing your request unless it is excessive, repetitive, or manifestly unfounded.
6.10 Authorized Agent
You may designate an authorized agent to submit privacy rights requests on your behalf. The authorized agent must provide written proof of authorization, and we may require verification of your identity directly with you to ensure the request is legitimate.
7. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, or as required by applicable law. The specific retention periods depend on the nature of the data and the purpose for which it was collected:
| Category of Data | Retention Period |
|---|---|
| Account and registration information | Duration of account, plus 3 years after closure |
| Order and transaction records | 7 years (for tax and legal compliance purposes) |
| Payment processing records | As required by PCI-DSS and applicable law (typically 5–7 years) |
| Customer service correspondence | 3 years from date of last interaction |
| Marketing preferences and consent records | Until opt-out or withdrawal of consent, plus 3 years |
| Website usage and analytics data | Up to 26 months (or as set by applicable analytics tools) |
| Cookie and tracking data | As specified in individual cookie settings (session to 2 years) |
| Legal and compliance records | As required by applicable law, typically 7–10 years |
When data is no longer necessary for the purposes for which it was collected and there is no legal basis for continued retention, we will securely delete or anonymize it in accordance with our data disposal procedures.
8. Cookies and Tracking Technologies
Our Website uses cookies and similar tracking technologies to enhance your browsing experience, analyze Website traffic, and support our marketing efforts. A cookie is a small text file placed on your device when you visit a website.
8.1 Types of Cookies We Use
- Essential/Strictly Necessary Cookies: Required for the basic operation of our Website (e.g., maintaining your session, shopping cart functionality). These cannot be disabled without impairing Website functionality.
- Performance and Analytics Cookies: Help us understand how visitors interact with our Website by collecting aggregate, anonymized data (e.g., Google Analytics cookies).
- Functional Cookies: Enable enhanced features and personalization, such as remembering your preferences or login details.
- Marketing and Advertising Cookies: Used to deliver relevant advertisements to you on our Website and third-party platforms, and to measure the effectiveness of our campaigns.
8.2 Managing Cookie Preferences
You can control and manage cookies through your browser settings at any time. Most browsers allow you to refuse new cookies, delete existing cookies, or be notified when a new cookie is set. Please note that disabling certain cookies may affect the functionality of our Website.
For more detailed information about the specific cookies we use and how to manage your preferences, please refer to our Cookie Policy, available on our Website at papa-ginos.click.
8.3 Do Not Track Signals
Some browsers transmit "Do Not Track" (DNT) signals to websites. Currently, there is no universally accepted standard for responding to DNT signals. Our Website does not currently alter its data collection practices in response to DNT signals, though we will continue to monitor developments in this area.
9. California Privacy Rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), provides you with specific privacy rights in addition to the general rights described in Section 6. This section supplements our general Privacy Policy with California-specific information.
9.1 Categories of Personal Information Collected
In the preceding 12 months, we have collected the following categories of personal information from California consumers, as defined by the CCPA:
- Identifiers (name, email address, IP address, account username)
- Commercial information (order history, purchasing records)
- Internet or other electronic network activity information (browsing history on our Website, cookie data)
- Geolocation data (approximate location derived from IP address or delivery address)
- Inferences drawn from the above to create a profile about consumer preferences
9.2 Shine the Light Law
Under California Civil Code Section 1798.83 (the "Shine the Light" law), California residents may request information about the categories of personal information we have shared with third parties for their direct marketing purposes, and the identities of those third parties. To make such a request, please contact us at [email protected].
9.3 Submitting California Privacy Requests
California residents may submit requests to know, delete, correct, or opt out of the sale/sharing of personal information by contacting us at [email protected]. We will respond to verified requests within 45 calendar days as required by the CCPA/CPRA.
10. Children's Privacy
Our Website and services are intended for use by individuals who are 18 years of age or older. We do not knowingly collect, use, or disclose personal information from children under the age of 13, or in some contexts under the age of 16, in compliance with the Children's Online Privacy Protection Act (COPPA) and other applicable laws.
If you are under 18 years of age, please do not use our Website or provide any personal information to us. If you are a parent or legal guardian and believe that your child under the age of 13 has provided personal information to us without your consent, please contact us immediately at [email protected]. We will take prompt steps to investigate and delete such information from our systems.
11. International Data Transfers
Papa Ginos is based in the United States, and your personal information will be processed and stored primarily within the United States. If you are accessing our Website from outside the United States, please be aware that your information will be transferred to, processed, and stored in the United States, where data protection laws may differ from those in your country of residence.
By using our Website and services, you consent to the transfer of your information to the United States. We take steps to ensure that any international transfers of personal data comply with applicable legal requirements and that appropriate safeguards are in place to protect the privacy and security of your information.
If you are located in a jurisdiction with specific data transfer restrictions (such as the European Economic Area), please contact us at [email protected] for more information about how we handle such transfers and the safeguards we apply.
12. Third-Party Websites and Links
Our Website may contain links to third-party websites, applications, or services that are not owned or controlled by Papa Ginos. This Privacy Policy applies only to information collected by our Website and services. We are not responsible for the privacy practices of third-party websites, and we encourage you to review the privacy policies of any third-party sites you visit.
Third-party services we may link to or integrate with include payment processors, social media platforms, delivery tracking services, and review platforms. Each of these services has its own privacy policy governing how they collect, use, and protect your information.
13. Marketing Communications and Opt-Out
We may send you marketing and promotional communications by email or other channels if you have opted in to receive them or where we have a legitimate interest or legal basis to do so. You have the right to opt out of receiving marketing communications at any time.
13.1 Email Marketing
To opt out of receiving promotional emails from us, you may:
- Click the "Unsubscribe" link located at the bottom of any marketing email we send you
- Send an email to [email protected] with the subject line "Unsubscribe"
Please note that even if you opt out of marketing communications, we may still send you transactional messages related to your orders, account security, or important changes to our services.
13.2 Text and SMS Communications
If you have opted in to receive SMS marketing messages, you may opt out at any time by replying "STOP" to any text message we send you or by contacting us at [email protected].
14. How to File a Complaint
If you believe that we have not complied with this Privacy Policy or applicable data protection laws, we encourage you to contact us first so that we can attempt to resolve your concern directly.
14.1 Contacting Us Directly
Please submit your privacy complaint or concern in writing to:
- Email: [email protected]
- Website: papa-ginos.click
We will investigate your complaint and respond within a reasonable timeframe, typically within 30 days.
14.2 Complaints to Regulatory Authorities
If you are not satisfied with our response, you may have the right to lodge a complaint with a relevant government authority, including:
- Federal Trade Commission (FTC): The FTC enforces federal consumer protection laws, including the FTC Act, which prohibits unfair or deceptive business practices. You can file a complaint at www.ftc.gov or by calling 1-877-382-4357.
- California Privacy Protection Agency (CPPA): California residents may contact the CPPA regarding CCPA/CPRA violations at cppa.ca.gov.
- Your State Attorney General's Office: Most US states have consumer protection divisions within the Attorney General's office that handle privacy-related complaints. You can find your state's Attorney General at www.naag.org.
15. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time to reflect changes in our business practices, applicable laws, or technology. When we make material changes to this policy, we will:
- Update the "Last Updated" date at the top of this page
- Post a prominent notice on our Website homepage
- Send an email notification to registered account holders (where feasible and where material changes affect your rights)
Your continued use of our Website and services following the posting of any updated Privacy Policy constitutes your acceptance of the changes. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.
16. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal information, please do not hesitate to contact us. Our privacy team is here to help:
| Business Name | Papa Ginos |
|---|---|
| [email protected] | |
| Website | papa-ginos.click |
| Country | United States |
We aim to respond to all privacy-related inquiries within 30 business days. For requests submitted under applicable state privacy laws (such as the CCPA/CPRA), we will respond within the legally required timeframes.