GDPR Compliance Policy
Last Updated: April 03, 2026
Cookingbymum (the “Site”) is committed to protecting the privacy and personal data of all users, visitors, and subscribers. This GDPR Compliance Policy explains how we collect, use, and safeguard personal data in accordance with the European Union’s General Data Protection Regulation (GDPR). By accessing or using our Site, you acknowledge that you have read, understood, and agreed to the terms outlined herein.
1. What Personal Data We Collect
- Email Addresses: We collect email addresses when you subscribe to our newsletter, create an account, or contact us for recipes or support. This data is used to send you relevant content, updates, and promotional offers.
- Cookies and Tracking Technologies: The Site uses first‑party cookies for essential functions (e.g., session management) and third‑party analytics cookies (Google Analytics, Matomo) to collect anonymous usage statistics. Cookies help us understand how visitors interact with our content and improve user experience.
- Analytics Data: We gather aggregated, anonymised data such as page views, time on page, referral sources, and device types. This information assists in optimizing website performance, tailoring content, and detecting security threats.
2. Legal Basis for Processing
We process personal data based on the following lawful bases:
- Consent: When you voluntarily provide your email address or other personal information, we obtain your explicit consent to process that data for the purpose of communication, account management, or providing requested services.
- Legitimate Interest: We process data necessary for the legitimate interests of Cookingbymum, such as maintaining website security, improving content relevance, and conducting internal research to enhance user experience. We ensure that these interests do not override your fundamental rights.
3. How We Protect Your Data
- SSL/TLS Encryption: All data transmitted between your browser and the Site is encrypted via HTTPS, preventing interception by third parties.
- Secure Servers: Our hosting infrastructure employs industry‑standard security measures, including firewalls, intrusion detection, and regular vulnerability assessments.
- Access Controls: Only authorized staff members with a legitimate need-to-know are granted access to personal data, and all access is logged and monitored.
- Data Retention: Personal data is retained only for as long as necessary to fulfill its purpose or as required by law. Email addresses are automatically deleted after 12 months of inactivity, while cookie data is cleared after 30 days unless the user opts out.
4. Your GDPR Rights
Under the GDPR, you have the following rights regarding your personal data. Each right is illustrated with a Bootstrap icon for clarity.
Right to Access
Request a copy of the personal data we hold about you.
Right to Rectification
Ask us to correct inaccurate or incomplete information.
Right to Erasure
Request deletion of your personal data in certain circumstances.
Right to Restrict Processing
Limit how we use your data, for instance during a dispute.
Right to Data Portability
Receive your data in a structured, machine‑readable format.
Right to Object
Object to processing for direct marketing or profiling.
Right to Withdraw Consent
Revoke consent at any time, with no negative consequences.
5. How to Exercise Your Rights
To exercise any of the rights listed above, please contact our Data Protection Officer at [email protected]. Your request should include:
- A clear statement of the right you are exercising.
- Any relevant details to help us identify your records (e.g., email address, username).
- Proof of identity if required (for certain rights, such as deletion or rectification).
We will respond to your request within 30 days of receipt. If you need a quicker response, please let us know in your initial email and we will do our best to accommodate.
6. Contact Information
For any questions, concerns, or complaints about this policy or our data practices, please contact:
- Data Protection Officer: Cookingbymum – GDPR Office
- Email: [email protected]
- Address: 123 Culinary Lane, Kitchen City, 45678, Country
7. Amendments to This Policy
We reserve the right to modify this policy at any time. Any changes will be posted on this page and, where appropriate, communicated to users via email. The “Last Updated” date will reflect the most recent revision.
By continuing to use Cookingbymum after changes are posted, you agree to the updated terms. If you do not agree with any changes, you may discontinue use of the Site and/or unsubscribe from our communications.