Last Updated: [01/12/2025]
1. Data Controller
GraceDishes.com (“we,” “us,” or “our”) is the data controller for the purposes of the General Data Protection Regulation (GDPR). Our contact information is:
GraceDishes.com
Email: Gracedishes1@gmail.com
2. What Personal Data We Collect and Why
| Data Type | Purpose | Legal Basis |
|---|---|---|
| Email Address | Newsletter subscription | Consent |
| Name (optional) | Personalize communications | Consent |
| IP Address | Site analytics, security | Legitimate interest |
| Cookies & Usage Data | Improve user experience, analytics | Consent |
| Comments Content | User engagement | Consent |
| Social Media Interactions | Community building | Legitimate interest |
3. How We Collect Your Data
- When you voluntarily subscribe to our newsletter
- When you leave comments on recipes
- Through cookies and similar technologies
- When you contact us via email or contact forms
- Through third-party analytics tools (Google Analytics)
4. Your GDPR Rights
As an EU resident, you have the following rights:
Right to Access
You can request a copy of the personal data we hold about you.
Right to Rectification
You can request correction of inaccurate or incomplete data.
Right to Erasure (Right to be Forgotten)
You can request deletion of your personal data, subject to certain exceptions.
Right to Restrict Processing
You can request restriction of processing of your personal data.
Right to Data Portability
You can request your data in a structured, commonly used format.
Right to Object
You can object to processing based on legitimate interests or direct marketing.
Right to Withdraw Consent
You can withdraw consent at any time where processing is based on consent.
5. How to Exercise Your Rights
To exercise any of these rights, please contact us at:
Email: Gracedishes1@gmail.com
Subject: GDPR Rights Request
We will respond within 30 days of receiving your request. We may ask for additional information to verify your identity.
6. Data Retention
We retain personal data only as long as necessary for the purposes collected:
| Data Type | Retention Period |
|---|---|
| Newsletter subscribers | Until unsubscribe request |
| Comments | Indefinitely (or until deletion request) |
| Analytics data | 26 months |
| Contact form submissions | 2 years |
7. Data Sharing and Third Parties
We may share data with:
Service Providers:
- Email Marketing: ConvertKit/Mailchimp (newsletter management)
- Analytics: Google Analytics (traffic analysis)
- Advertising: Ezoic (ad serving) – [Link to Ezoic Privacy Policy]
- Hosting: SiteGround/Bluehost (website hosting)
Legal Requirements:
We may disclose data if required by law or to protect our legal rights.
International Transfers:
Some third-party services may process data outside the EU. We ensure they provide adequate protection through:
- EU-US Privacy Shield certification
- Standard Contractual Clauses
- Your explicit consent
8. Cookies Policy
We use the following cookie categories:
Essential Cookies
Required for basic site functionality. Cannot be disabled.
Performance Cookies
Collect anonymous data about site usage to improve user experience.
Functionality Cookies
Remember your preferences and settings.
Targeting/Advertising Cookies
Used by advertising partners like Ezoic to deliver relevant ads.
Managing Cookies:
You can control cookies through:
- Our cookie consent banner
- Your browser settings
- Third-party opt-out tools
9. Children’s Privacy
Our Site is not directed to children under 16. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.
10. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- SSL encryption
- Regular security updates
- Limited access to personal data
- Secure password policies
11. Automated Decision-Making
We do not use automated decision-making or profiling that produces legal effects concerning you.
12. Data Breach Procedures
In the event of a data breach, we will:
- Notify affected users within 72 hours of discovery
- Report to relevant supervisory authorities if required
- Take immediate steps to mitigate the breach
13. Changes to This Policy
We may update this policy periodically. Changes will be posted on this page with an updated “Last Updated” date. We will notify subscribers of material changes via email.
14. Supervisory Authority
If you have concerns about our data processing, you have the right to lodge a complaint with your local supervisory authority. For EU residents, this is typically the data protection authority in your country of residence.
15. Contact Us
For GDPR-related inquiries:
GraceDishes.com
Email: Gracedishes1@gmail.com
Response Time: Within 30 days
Cookie Consent Implementation
Our Site uses a GDPR-compliant consent management platform through Ezoic. The consent banner allows you to:
- Accept all cookies
- Customize cookie preferences
- Reject non-essential cookies
- Withdraw consent at any time
You can access your consent settings by clicking the “Cookie Settings” link in our footer.