Privacy Policy
Last updated: 15 February 2026
1. Introduction
Ruby's Pizza is committed to protecting your privacy and personal data. This policy explains what information we collect, how we use it, and your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Data We Collect
When you create an account or place an order, we may collect the following information:
- Name - to identify you and personalise your experience
- Email address - to send order confirmations and important updates
- Phone number (optional) - to contact you about your order if needed
- Order history - to allow you to view past orders and reorder
- Password - stored in an encrypted (hashed) format for account security
3. How We Use Your Data
We use your personal data to:
- Process and fulfil your pizza orders
- Send order confirmations and status updates via email
- Manage your account and enable features like order history
- Contact you regarding your order when necessary
- Improve our website and services
We will never sell, rent, or share your personal information with third parties for marketing purposes.
4. Lawful Basis for Processing
We process your data on the following legal bases:
- Contract - processing necessary to fulfil your orders
- Legitimate interest - to improve our services and website experience
- Consent - where you have opted in to receive marketing communications
5. Cookies
Our website uses essential cookies to:
- Keep you logged in during your session
- Remember items in your order
- Protect against cross-site request forgery (CSRF)
These cookies are strictly necessary for the website to function and cannot be switched off. We do not use tracking or advertising cookies.
6. Data Retention
We retain your account data for as long as your account is active. Order history is kept for a period of 2 years for our records. If you wish to delete your account and associated data, please contact us.
7. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you
- Rectify any inaccurate or incomplete data
- Erase your personal data (the "right to be forgotten")
- Restrict processing of your data
- Data portability - receive your data in a structured, machine-readable format
- Object to processing based on legitimate interests
To exercise any of these rights, please contact us via WhatsApp.
8. Data Security
We take appropriate technical and organisational measures to protect your personal data, including encrypted password storage, secure sessions, and CSRF protection.
9. Changes to This Policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated revision date.
10. Contact
If you have questions about this privacy policy or wish to make a data request, please contact us via WhatsApp.