Privacy Policy

Last updated: May 2026

1. Introduction

DinnerConnect Ltd ("we", "us", "our") is committed to protecting your personal data. This privacy policy explains how we collect, use, store, and share your information when you use our website (dinnerconnect.site) and services.

We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Data Controller

DinnerConnect Ltd
123 High Street, Oxford, OX1 4BH, United Kingdom
Email: [email protected]

3. Data We Collect

We collect and process the following personal data:

  • Account Data: Name, email address, password (encrypted)
  • Registration Data: Phone number, dietary preferences, kitchen availability, address (for event matching)
  • Payment Data: Processed securely via Stripe — we do not store your card details
  • Usage Data: IP address, browser type, pages visited, time spent (via Google Analytics)
  • Communication Data: Messages you send us via email

4. How We Use Your Data

We use your data for the following purposes:

  • To create and manage your account
  • To organise dinner events and match you with cooking partners
  • To process payments for event registration
  • To send event-related communications (confirmations, reminders, matching details)
  • To improve our services and website experience
  • To comply with legal obligations

5. Legal Basis for Processing

We process your personal data on the following legal bases:

  • Contract performance (Art. 6(1)(b) UK GDPR): Processing necessary to fulfil our contract with you (event registration and participation)
  • Legitimate interests (Art. 6(1)(f) UK GDPR): Improving our services, fraud prevention, website security
  • Consent (Art. 6(1)(a) UK GDPR): Marketing communications, analytics cookies
  • Legal obligation (Art. 6(1)(c) UK GDPR): Tax and accounting requirements

6. Data Sharing

We share your data with:

  • Stripe: Payment processing (PCI-DSS compliant) — Stripe Privacy Policy
  • Google: Authentication (Google SSO) and analytics (GA4) — Google Privacy Policy
  • Cooking partners and event participants: Your first name, dietary preferences, and kitchen address (if hosting) are shared with your matched group for event coordination

We do not sell your personal data to third parties.

7. Data Retention

  • Account data: Retained for the duration of your account and up to 12 months after account deletion
  • Registration data: Retained for up to 3 years after your last event for quality assurance
  • Payment records: Retained for 7 years in accordance with UK tax and accounting regulations
  • Analytics data: Anonymised after 26 months

8. Your Rights

Under UK GDPR, you have the following rights:

  • Right of access: Request a copy of your personal data
  • Right to rectification: Correct inaccurate or incomplete data
  • Right to erasure: Request deletion of your data ("right to be forgotten")
  • Right to restrict processing: Limit how we use your data
  • Right to data portability: Receive your data in a machine-readable format
  • Right to object: Object to processing based on legitimate interests
  • Right to withdraw consent: Withdraw consent at any time for consent-based processing

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

9. Cookies

Our website uses cookies for essential functionality, authentication, and analytics. You can manage your cookie preferences via the cookie banner on our website. For details, see our cookie settings.

10. International Transfers

Your data may be processed by service providers located outside the UK. Where this occurs, we ensure appropriate safeguards are in place (e.g., Standard Contractual Clauses, adequacy decisions).

11. Data Security

We implement appropriate technical and organisational measures to protect your personal data, including encryption (TLS/SSL), secure password hashing, and regular security reviews.

12. Children

Our services are intended for individuals aged 18 and over. We do not knowingly collect data from persons under 18.

13. Changes to This Policy

We may update this privacy policy from time to time. Any changes will be posted on this page with an updated "last updated" date.

14. Complaints

If you are unhappy with how we have handled your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):

Information Commissioner's Office
Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
Website: ico.org.uk
Phone: 0303 123 1113

15. Contact

For any privacy-related enquiries:
Email: [email protected]
DinnerConnect Ltd, 123 High Street, Oxford, OX1 4BH, UK