1. Who We Are
CoffeeSlap is a mobile ordering platform that lets customers pre-order coffee from nearby cafés and pick it up without waiting in line. The service is operated by CoffeeSlap ("we", "us", "our").
2. What Data We Collect
- Account information: Name, email address, phone number — provided when you register.
- Location data: GPS coordinates when you use the app to find nearby cafés, navigate to a café, or signal your arrival. Location is only collected while the app is in use and is not stored permanently.
- Order history: Coffee type, quantities, prices, order status, and associated café information.
- Device information: Device type, operating system, push-notification token for order status updates.
- Camera (optional): Used only to scan QR codes (e.g., at café tables or for quick menu access). We do not take, store, or transmit photos. Camera access can be revoked at any time via your phone settings.
- Vehicle details (optional): Car colour, license plate, and car description — provided voluntarily to help cafés identify you during curbside pickup.
- Reviews (optional): Star rating and comments you choose to leave for a café.
3. How We Use Your Data
- To process and fulfil your coffee orders.
- To show you nearby cafés and calculate distance/ETA.
- To send push notifications about order status changes.
- To let cafés know you have arrived for pickup.
- To display reviews and ratings on café listings.
- To improve our service and fix issues.
4. Data Sharing
We share limited data with the café you order from so they can prepare and hand over your order:
- Your name and phone number.
- Your order details.
- Your approximate location and vehicle details when you signal arrival.
We do not sell your data to third parties. We do not use your data for advertising.
5. Payments
CoffeeSlap does not process credit card payments directly. When card payment is available, it is handled by the café's own payment provider (e.g., SumUp). We never see or store your card details.
6. Data Storage & Security
- Your data is stored on servers located in Frankfurt, Germany (EU), hosted by Render.
- All communication between the app and our servers is encrypted via HTTPS/TLS.
- Passwords are hashed using BCrypt and are never stored in plain text.
- Authentication uses short-lived JWT tokens.
7. Data Retention
- Account data is kept as long as your account is active.
- Order history is retained for 12 months for your convenience, then anonymised.
- Location data is ephemeral — used in real time and not stored beyond the active session.
8. Your Rights (GDPR)
Under EU/Greek data protection law, you have the right to:
- Access your personal data.
- Correct inaccurate information.
- Delete your account and all associated data — request deletion here.
- Export your data in a portable format.
- Withdraw consent for location tracking at any time by revoking the location permission in your phone settings.
To exercise any of these rights, email us at hello@coffeeslap.gr.
9. Cookies & Analytics
The CoffeeSlap mobile app does not use cookies. Our website uses no third-party analytics or tracking scripts.
10. Children's Privacy
CoffeeSlap is not directed at children under 16. We do not knowingly collect data from anyone under 16 years of age.
11. Changes to This Policy
We may update this policy from time to time. We will notify you of significant changes via the app or email. The latest version will always be available at this URL.
12. Contact
For any privacy-related questions or requests:
Effective date: June 2025
← Back to CoffeeSlap