GDPR Policy

Last Updated: August 11, 2024

At Coofoodking, we prioritize your privacy and comply with the EU General Data Protection Regulation (GDPR) and Google’s Privacy & Data Requirements for services like Google Analytics and Google AdSense. This policy explains how we handle your data transparently and responsibly.

1. Data Controller

Coofoodking (Website: www.coofoodking.com, Email: [email protected]) is the data controller for personal data processed through our website.

2. Data We Collect

We may process:
✔ Identity Data (e.g., name when commenting or contacting us)
✔ Contact Data (e.g., email for newsletters)
✔ Technical Data (IP, browser, device – via cookies)
✔ Usage Data (pages visited, session duration – via Google Analytics)
✔ Ad Performance Data (clicks, impressions – via Google AdSense)

🚫 We do NOT collect sensitive data (health, ethnicity, religion, etc.).

3. Lawful Basis & Purpose of Processing

PurposeLegal Basis (GDPR)Google Compliance
Website access & securityLegitimate InterestAligns with Google’s security standards
Email newslettersConsent (opt-in required)Complies with Google’s anti-spam policies
Analytics (Google Analytics)Consent (via cookie banner)Follows Google Analytics Terms
Ads (Google AdSense)Consent (via cookie banner)Follows AdSense Program Policies
Responding to inquiriesContractual NecessityN/A

🔹 Withdraw consent anytime via cookie settings or email unsubscribe links.

4. Data Retention

We retain data only as long as necessary:

  • Google Analytics: Up to 26 months (automatically anonymized afterward).
  • AdSense data: Processed per Google’s EU User Consent Policy.
  • Newsletters: Until you unsubscribe.
  • Contact forms: 12 months after inquiry resolution.

5. Third-Party Data Sharing

We use Google services that may access your data:

  • Google Analytics (traffic analysis)
  • Google AdSense (personalized ads)
  • Email providers (e.g., Mailchimp for newsletters)

✅ All partners are GDPR-compliant and use:

  • Standard Contractual Clauses (SCCs) for EU-US transfers.
  • Data Processing Agreements (DPAs) with Google.

6. Your GDPR Rights

You have the right to:

  • Access, correct, or delete your data.
  • Restrict or object to processing.
  • Withdraw consent (e.g., opt out of ads via Ad Settings).
  • Data portability (request a copy of your data).
  • Lodge a complaint with a supervisory authority.

📩 To exercise rights, email: [email protected].

7. Cookies & Ad Personalization

We use cookies for:

  • Essential functions (always active).
  • Analytics & ads (enabled via cookie banner).

🔹 Manage preferences:

  • Cookie Consent Tool (on our website).
  • Browser settings (disable cookies).
  • Google’s Ad Personalization (opt out here).

8. International Data Transfers

Data may be transferred outside the EU (e.g., Google’s US servers) under:

  • EU-U.S. Data Privacy Framework (Google’s certification).
  • SCCs (for other processors).

9. Security Measures

We protect your data via:

  • SSL encryption (HTTPS).
  • Regular security audits.
  • Limited access controls.

10. Policy Updates

We may update this policy to reflect legal changes. Check the “Last Updated” date for revisions.

11. Contact Us

For GDPR requests or questions:
📧 Email: [email protected]
🌍 EU Representative (if required): [Details provided upon request]

Supervisory Authority:
If unsatisfied, you may complain to your local DPA (e.g., CNIL for France).

Why This Policy Is Fully Compliant:

✔ Google AdSense & Analytics Compliance: Explicit consent for cookies, data retention alignment, and AdSense policy adherence.
✔ GDPR Transparency: Clear lawful bases, user rights, and DPA/SCC safeguards.
✔ No Sensitive Data: Avoids violations of Google’s restricted data policies.
✔ Easy Opt-Out: Links to Google’s ad settings and cookie management tools.

Suggested Next Steps:

  1. Verify Google Analytics data retention (set to 26 months in your GA4 settings).
  2. Test your cookie banner with Google’s Consent Mode.
  3. Sign Google’s DPA (via Google Workspace Admin).