Privacy Policy for Caterflow ApS website

We at Caterflow Aps (hereafter “Caterflow,” “us,” or “we”) use cookies on our website (https://www.caterflow.dk/), which forms part of our services. We would like to inform you about how we use cookies and how you can control them.

How to contact us

If you have questions about our privacy or cookie policy or would like additional information, please feel free to contact us at kontakt@caterflow.dk.

Address
  • Caterflow ApS / OpGo ApS
  • Torvegade 1, 2. Sal
  • 5000, Odense C
What are cookies?

A cookie is a small text file stored on your computer or mobile device when you visit our website. This file stores information about your usage of our website and can recognize you when you return.

Which cookies do we use?
  • Necessary cookies: These cookies are essential for our website to function properly. They help keep our website secure and user-friendly by enabling basic features such as page navigation, access to protected areas, and shopping cart functionality.
  • Preference cookies: These cookies are used to enhance your experience on our website. They help us remember your preferences, such as language, currency, and other user-defined settings.
Retention Periods:

Some cookies are session-based and are deleted once you close your browser, while others are persistent and remain stored on your device until they either expire or you delete them.

How can you manage cookies?

You can delete or block cookies at any time by adjusting your browser settings. Please note that blocking cookies may affect your user experience and prevent you from accessing certain features on our website. For more detailed guidance, you can visit your browser’s help pages or review instructions provided by well-known browsers (e.g., Firefox, Safari, Chrome, Edge ).

Changes to our cookie policy

We may update our cookie policy at any time to reflect changes in our practices or legal requirements. We recommend checking this page regularly to stay informed about any updates.

Privacy Policy for Caterflow web, IOS and Android applications

The Caterflow ApS applications are developed, maintained, supported, and copyrighted by OpGo ApS and sold through Caterflow ApS. Together, Caterflow ApS and OpGo ApS will be referred to as “The Companies” throughout this document.

1. Introduction

The Companies provide software solutions for catering companies, enabling regular users to order food and businesses to manage their lunch orders efficiently. Protecting your personal data is of utmost importance to us, and we are committed to complying with all applicable data protection laws, including the EU General Data Protection Regulation (GDPR).

This Privacy Policy explains how we collect, use, and protect your personal data and outlines your rights as a user of our software or app.

2. Data Controller

Caterflow ApS is a company under shared ownership; however, only OpGo ApS, as the software-as-a-service provider, has access to user data. OpGo ApS is the data controller responsible for managing and processing Caterflow order data, including any personal data covered by this policy.

If you have any questions about this Privacy Policy or how we handle your personal data, please don’t hesitate to contact us.

3. Personal Data We Collect

We collect and process the following types of personal data:

3.1

  • Name: Provided by you during account creation or order placement.
  • Address: Necessary for order delivery or billing purposes.
  • Phone Number: Used for communication regarding orders or customer support.
  • Email Address: Used for communication, order confirmation, and updates.
  • Purchase History: Information about your past orders, including items purchased, quantities, and dates.
  • Food Preferences: Any preferences or customizations specified during the order process (e.g., vegan, gluten-free).
  • Allergy Information: Disclosed by you to ensure safe meal preparation.
  • Notes: Information provided by you or the catering company, such as dietary needs, special requests, or customer service interactions.

3.2 Device Information

  • Device ID: Collected to improve app functionality and ensure secure access.

3.3 Business-Provided Information

  • Customer Notes: Catering companies using our platform may log relevant notes about you, such as food preferences, allergies, handicaps or meal ratings, improve service quality.

3.4 Data Origin

Most of the personal data we collect is provided directly by you through the app. In some cases, data may be entered on your behalf by customer service representatives when you contact the catering company.

4. How We Use Your Personal Data

We process your personal data for the following purposes:

  • To facilitate the placement and delivery of your orders.
  • To store and manage your preferences, purchase history, and allergy information for future orders.
  • To ensure secure access to the app and protect your data.
  • To enhance user experience by providing personalized recommendations.
  • To communicate with you regarding your orders, updates, or support inquiries.
  • To comply with legal obligations and protect our legitimate business interests.

5. Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Performance of a Contract: When processing is necessary for fulfilling your orders or providing our services.
  • Consent: For storing optional information such as allergy details or food preferences.
  • Legitimate Interests: To improve our services and protect the security of our platform.
  • Legal Obligations: When required to comply with applicable laws or respond to legal requests.

6. Data Sharing

We only share your personal data when necessary, including:

  • With Catering Companies: To fulfill your food orders and manage preferences.
  • Service Providers: To support app functionality, payment processing, and hosting.
  • Legal Authorities: When required to comply with legal obligations.

We never sell your personal data to third parties.

7. Data Retention

Your personal data is retained for as long as necessary to fulfill the purposes outlined in this policy or as required by law. When no longer needed, your data will be securely deleted or anonymized.

8. Your Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of the data we hold about you.
  • Rectification: Correct inaccuracies in your data.
  • Erasure: Request deletion of your data, subject to legal or contractual obligations.
  • Restriction: Limit the processing of your data in certain circumstances.
  • Data Portability: Request a copy of your data in a structured, commonly used, and machine-readable format.
  • Objection: Object to the processing of your data for legitimate interests or direct marketing.

To exercise your rights, contact us at kontakt@caterflow.dk.

9. Security Measures

The Companies are committed to protecting personal data and ensuring it is handled securely. To achieve this, we use state-of-the-art security measures, including the Clerk authorization platform, which provides robust encryption and ensures secure authentication and data handling across our site and systems.

Access to personal data stored in our systems is primarily restricted to the catering company where the customer orders food. Only authorized employees at the catering company can view and manage the data to perform tasks such as processing orders, handling customer service inquiries, or maintaining customer preferences.

The Companies employees do not routinely access personal data but may do so when necessary to resolve technical issues or to provide support requested by the catering company. This access is limited to the extent required to address the issue, and we continuously monitor and enforce measures to prevent unauthorized access.

In the event of a security breach that poses a high risk of misuse of personal data, The Companies will notify the affected catering company immediately and assist in notifying any impacted customers. We regularly review and update our security protocols to ensure compliance with technological advancements and industry standards.

To support our platform, The Companies collaborates with external service providers, such as IT infrastructure and payment solution providers. We have entered into data processing agreements with these providers to ensure they maintain a high standard of security and comply with all applicable data protection laws.

As a software provider, The Companies enables catering companies to share customer data securely within their teams to deliver optimal service. This internal data sharing is controlled by the catering companies, with tools provided by The Companies to manage permissions and access securely.

The Companies retain operational data only as long as it is necessary for the functionality of the software or to comply with legal obligations. For financial data, we retain records for five years in accordance with accounting regulations. Other data, unless otherwise specified, is retained for up to two years after the last recorded activity. Retention policies for customer data managed by catering companies are defined and handled by the catering companies themselves.

10. Cookies

Our platform uses cookies to improve your experience. For more details, refer to Caterflow ApS website policy.

11. Policy Updates

We may update this Privacy Policy to reflect changes in our practices or applicable laws. The latest version will always be available within the app or on our website.

12. Contact and Complaints

If you have questions or concerns about this policy or your data, please contact us using the details provided above. If you are not satisfied with our response, you have the right to file a complaint with your local data protection authority.