Privacy Policy
How we collect, use, and protect your data
Last updated: 25.03.2026
Privacy Policy | Likescafe
Learn how Likescafe collects, uses, and protects your personal data. We are committed to transparency and your privacy.
Information We Collect
We collect information you provide directly to us when using our services. This includes information you provide when creating an order, contacting customer support, subscribing to our newsletter, or using our free tools.
Information You Provide
When you place an order, we collect your email address, the social media URLs or usernames you provide for service delivery, and payment information processed securely through our payment provider (Stripe). We do not store your full payment card details on our servers.
When you subscribe to our newsletter, we collect your email address and language preference. When you contact support, we collect the information you include in your message.
Information Collected Automatically
When you visit our website, we automatically collect certain technical information including your IP address (anonymized), browser type and version, device type, operating system, referring URL, pages visited, and time spent on pages.
We use cookies and similar tracking technologies to enhance your experience, analyze site traffic, and understand usage patterns. You can control cookie preferences through your browser settings or our cookie consent banner.
UTM and Referral Data
We collect UTM parameters (utm_source, utm_medium, utm_campaign) and referrer information from your visit URL. This data is stored in cookies for up to 30 days and is associated with your order if you make a purchase. This helps us understand which marketing channels are effective.
How We Use Your Information
We use the information we collect for the following purposes:
- To process and fulfill your orders, including communicating with third-party service providers necessary for order delivery
- To send you order confirmations, delivery updates, and customer support responses
- To send marketing communications if you have opted in (you can unsubscribe at any time)
- To improve our website, services, and customer experience
- To detect and prevent fraud, abuse, or other harmful activities
- To comply with legal obligations and enforce our Terms of Service
Data Sharing and Third Parties
We do not sell your personal data to third parties. We share your information only in the following circumstances:
Service Providers
We share necessary information with third-party service providers who help us deliver our services. This includes payment processors (Stripe), hosting providers (Vercel), database services (Supabase), and social media engagement delivery partners. These providers are contractually obligated to protect your data and use it only for the purposes we specify.
Analytics
We use analytics tools to understand how visitors interact with our website. These tools may collect anonymized data about your browsing behavior. We do not link analytics data to your personal identity.
Legal Requirements
We may disclose your information if required to do so by law, in response to a valid legal request, or to protect our rights, privacy, safety, or property.
Cookies and Tracking Technologies
Our website uses cookies and similar technologies to provide and improve our services. Here are the types of cookies we use:
- Essential cookies: Required for site functionality, including cart state, language preference, and currency selection. These cannot be disabled.
- Analytics cookies: Help us understand how visitors interact with our website. These are only set with your consent.
- Marketing cookies: Used to track the effectiveness of our advertising campaigns via UTM parameters. These are only set with your consent.
You can manage your cookie preferences at any time through our cookie consent banner or your browser settings. Note that disabling essential cookies may affect site functionality.
Data Retention
We retain your personal data for as long as necessary to fulfill the purposes outlined in this policy. Specifically:
- Order data: Retained for 3 years for accounting and legal compliance purposes
- Email addresses (newsletter): Retained until you unsubscribe
- Analytics data: Anonymized and aggregated data is retained indefinitely; personal identifiers are removed after 26 months
- Cookies: Session cookies expire when you close your browser; persistent cookies expire after 30 days to 1 year depending on their purpose
- Support communications: Retained for 2 years after the last interaction
Your Rights (GDPR & International)
Depending on your location, you have certain rights regarding your personal data. For residents of the European Economic Area (EEA) and similar jurisdictions, these rights include:
- Right of access: Request a copy of the personal data we hold about you
- Right to rectification: Request correction of inaccurate personal data
- Right to erasure: Request deletion of your personal data (subject to legal retention requirements)
- Right to restrict processing: Request that we limit how we use your data
- Right to data portability: Request your data in a structured, machine-readable format
- Right to object: Object to our processing of your personal data for certain purposes
- Right to withdraw consent: Withdraw consent at any time where processing is based on consent
To exercise any of these rights, please contact us at legal@likescafe.com. We will respond to your request within 30 days.
Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL
- Secure storage of sensitive data with encryption at rest
- Regular security assessments and updates
- Access controls limiting employee access to personal data on a need-to-know basis
- Use of reputable, security-certified third-party service providers
While we take reasonable precautions, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security of your data.
International Data Transfers
Your information may be transferred to and processed in countries other than your own. Our servers and service providers are located in the United States and Europe. When we transfer data internationally, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission.
Children's Privacy
Our services are not intended for individuals under the age of 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected data from a child under 16, we will take steps to delete such information promptly. If you believe a child has provided us with personal data, please contact us at legal@likescafe.com.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will notify you by updating the \"Last updated\" date at the top of this page and, where appropriate, provide additional notice (such as via email or a prominent website notice).
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your data.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Response time: We aim to respond to all privacy-related inquiries within 48 hours
You also have the right to lodge a complaint with your local data protection supervisory authority if you believe we have not addressed your concerns satisfactorily.