Privacy Policy for Fiffi's Coffee

Last updated: 10/01/2026

Fiffi’s Coffee (“we”, “our”, “us”) is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your information when you visit fiffiscoffee.com.

We comply with the General Data Protection Regulation (GDPR) and the Data Protection Acts 1988–2018 of Ireland.

 

1. Who We Are

Fiffi’s Coffee Website: https://www.fiffiscoffee.com Email: fiffiscoffee@gmail.com Address: Ramelton, F92 D544, County Donegal, Ireland and Downings, F92 YT22, County Donegal, Ireland.

If you have any questions about this policy or your data, you can contact us at the email above.

 

2. What Personal Data We Collect

We collect only the information necessary to operate our website and provide our services.

Information you provide directly

  • Name

  • Email address

  • Phone number

  • Delivery or billing address (if applicable)

  • Messages sent through contact forms

  • Order details (if you sell products)

Information collected automatically

  • IP address

  • Browser type and version

  • Device information

  • Pages visited

  • Time spent on the site

  • Cookies (see Section 8)

If you make a purchase (optional)

  • Payment details (processed securely by third‑party providers — we do not store card numbers)

 

3. Legal Bases for Processing

We process your data under the following GDPR legal bases:

  • Consent — when you submit a form or accept cookies

  • Contract — when you place an order or request a service

  • Legitimate interest — website analytics, security, fraud prevention

  • Legal obligation — tax, accounting, and regulatory requirements

  • Our use of Google Tag Manager is based on your consent under the GDPR and the Irish ePrivacy Regulations. GTM does not store personal data but may activate services that do, depending on the permissions you grant through our cookie banner.
 

4. How We Use Your Data

We use your information to:

  • Respond to enquiries

  • Process and deliver orders

  • Improve website performance and user experience

  • Send updates or marketing emails (only with your consent)

  • Maintain website security

  • Comply with legal obligations

We do not sell or rent your personal data.

 

5. Who We Share Your Data With

We may share your data with trusted third‑party service providers, such as:

  • Website hosting providers

  • Payment processors (e.g., Stripe, PayPal)

  • Email marketing services (e.g., Mailchimp)

  • Analytics tools (e.g., Google Analytics)

  • Delivery or courier services (if applicable)

All third parties are GDPR‑compliant and process data only on our instructions.

 

6. International Data Transfers

Some service providers may store data outside the EU/EEA. When this happens, we ensure appropriate safeguards such as:

  • Standard Contractual Clauses (SCCs)

  • Adequacy decisions

  • GDPR‑compliant data processing agreements

 

7. How Long We Keep Your Data

We retain personal data only as long as necessary:

  • Contact form messages: up to 12 months

  • Order information: 6 years (legal requirement)

  • Analytics data: 26 months (Google default)

  • Email marketing data: until you unsubscribe

You may request deletion at any time (see Section 10).

 

8. Cookies & Tracking Technologies

We use cookies to:

  • Improve website functionality

  • Analyse traffic

  • Remember your preferences

  • Support security features

You can manage or disable cookies through your browser settings or our cookie banner.

Google Tag Manager We use Google Tag Manager (“GTM”) to manage and deploy scripts on our website, such as analytics and marketing tags. GTM itself does not collect personal data. It enables other tools to operate based on your consent choices. Any data processed by tags loaded through GTM is governed by the respective tool’s privacy policy and your cookie preferences.

GTM and Cookies Google Tag Manager does not set cookies itself. However, it may trigger scripts that use cookies for analytics or advertising. These scripts only run after you have provided consent through our cookie banner. You can change or withdraw your consent at any time.

 

 

9. Security Measures

We take appropriate technical and organisational measures to protect your data, including:

  • SSL encryption

  • Secure hosting

  • Access controls

  • Regular updates and security monitoring

However, no online service is 100% secure.

 

10. Your GDPR Rights

You have the right to:

  • Access your personal data

  • Correct inaccurate data

  • Request deletion (“right to be forgotten”)

  • Restrict processing

  • Object to processing

  • Withdraw consent

  • Receive a copy of your data (data portability)

  • Lodge a complaint with the Data Protection Commission (DPC) in Ireland

To exercise your rights, contact us at: {{your email}}.

 

11. Children’s Privacy

Our website is not intended for children under 16, and we do not knowingly collect their data.

 

12. Changes to This Policy

We may update this Privacy Policy from time to time. The latest version will always be available on this page.

 

13. Contact Us

If you have any questions about this Privacy Policy or your personal data, please contact:

Email: fiffiscoffee@gmail.com Website: https://www.fiffiscoffee.com