Privacy Policy
Last updated: 18 June 2025
1. Introduction
Fine Tastingbook Ltd ("we", "us", "our") values your privacy. This Privacy Policy explains what personal data we collect, how we use, share, store, and protect it, and your rights under global privacy laws including GDPR (EU/UK), CCPA (California), CPRA, PIPEDA (Canada), LGPD (Brazil), and similar.
Scope: Applies to all users worldwide who access tastingbook.com or use our services.
Contact:
- Email: pekka.nuikki@fine-magazines.com
- Address: Lepsämäntie 517, 01830 Lepsämä, Finland
2. Information We Collect
A. Information You Provide
- Account info: name, email, passwords
- Content: reviews, tasting notes, photos
- Communications: messages, support requests
B. Automatically Collected Data
- Usage & diagnostics: IP address, browser, device info, timestamps
- Cookies & tracking: cookies, pixels, local storage for analytics and preferences
3. Why We Collect Data
- To provide and maintain services
- To improve user experience and recommend wines
- To monitor usage and diagnostics
- To communicate offers, updates, and support
- To comply with laws and prevent abuse
4. Legal Basis for Processing
For GDPR jurisdictions:
- Contractual necessity (account registration)
- Consent (newsletters, optional features)
- Legal obligation (compliance, fraud prevention)
- Legitimate interests, balanced against your privacy
For CCPA/CPRA and similar laws:
- Collection of "personal information" as defined under each act.
- You have rights to know, delete, and opt-out of sales/sharing.
5. How We Use Your Data
- Platform functionality: registration, login, features
- Service delivery: tasting notes, content sharing
- Analytics: performance monitoring, error detection
- Marketing: optional newsletters (with your consent)
- Legal compliance: responding to lawful requests
6. Data Sharing
We do not sell personal data. We share data only in the following cases:
- With service providers and affiliates who assist us
- With legal authorities, as required by law
- With your consent
- In case of business transfers (e.g., acquisitions) — with notice to you
7. International Transfers
Data may be processed or stored globally. We ensure your data is protected using legally recognized safeguards (e.g., Standard Contractual Clauses or adequacy decisions).
8. Cookies & Tracking
- Maintain your login session
- Remember language/settings
- Collect analytics data
You can manage cookies in your browser; note that disabling them may affect site functionality.
9. Data Retention
We retain personal data only as long as needed to:
- Fulfill service obligations
- Meet legal or accounting requirements
- Respect your account activity
Typical retention:
- Active accounts: until account closure
- Marketing permissions: until withdrawal + short buffer
- Fraud/security logs: up to 3 years
10. Children's Privacy
We do not knowingly collect data from children under 13 (or higher local age). If notified, we will promptly delete such data.
11. Your Rights
For EU/UK residents (GDPR):
- Access, correction, erasure, portability, restriction, objection
- Withdraw consent anytime without affecting past processing
For California residents (CCPA/CPRA):
- Right to know, delete, correct, opt-out of "sale" or "share," non‑discrimination
For Canadian users (PIPEDA):
- Access, correction, and complaint to the Privacy Commissioner
For all users:
Email [email address] to exercise your rights. We may ask for verification.
12. Security
We implement reasonable technical and organizational measures to protect your data (e.g., encryption, restricted access). However, no online system is impervious.
13. Changes to This Policy
We may update this Privacy Policy as needed. We'll post "Last updated" date. For material changes, we'll notify you (e.g., email or banner). Continued use after effective date indicates acceptance.
14. Additional Disclosures
A. Global Privacy Control (GPC)
We respect "Do Not Sell or Share My Personal Information" signals from GPC‑enabled browsers or extensions.
B. Third‑Party Services
Our platform may include links or embeds (e.g., social media, maps, analytics) — we're not responsible for their privacy practices. Please check their policies.