Privacy & Data Protection Policy

At Shuga Cookies NY, your privacy is important to us. This Privacy Policy explains how we collect, use, and protect your information when you visit our website, submit a request, place an order, sign up for updates, or access our online services.
We are committed to complying with applicable privacy laws, including the GDPR, CCPA (when applicable), and other international best practices.
 
1. Information We Collect
We may collect the following types of personal and technical data when you use our website or services:
 
Name, email address, and phone number
Shipping or billing address
Uploaded images, reference files, or documents
Order and purchase history
Course enrollment and activity data
Payment and transaction details (processed by secure third parties)
Newsletter subscription preferences
Live chat or support interactions
Technical data (IP address, browser type, device info, referral URL)
Behavior data (pages visited, time spent, clicks)

2. How We Use Your Information
Your data may be used to:
Respond to quote requests or inquiries
Fulfill orders and deliver physical or digital products
Manage your account, preferences, or course progress
Send transactional emails (e.g., receipts, order updates, course access)
Send promotional content (only if you’ve opted in)
Analyze website traffic and user behavior
Improve our website, services, and user experience
Prevent spam, fraud, or abuse
Comply with legal obligations
We will never sell or rent your personal data.
 
3. Cookies and Tracking Tools
We use cookies and similar technologies to:
Enable core functionality (shopping cart, login, language)
Analyze usage with tools like Google Analytics
Personalize ads using remarketing tools (e.g., Meta/Facebook Pixel)
Monitor email campaigns (e.g., Mailchimp, Omnisend)
Enhance user experience (e.g., remembering form input)
You can disable non-essential cookies through your browser or consent banner settings.
 
4. Online Orders and Payments
We sell physical goods (such as decorated cookies) and digital products (such as courses).
To process payments, we may use third-party services such as PayPal or Stripe. These providers collect and store your payment details securely and independently of our website.
We do not store your credit card or bank information on our servers.

5. Online Courses and Membership Areas
If you register for or purchase access to an online course:
We collect enrollment data, lesson activity, and progress information
Your access to courses may be restricted to registered users only
We use course management tools to deliver digital content and track completion
Discussion forums, comments, or messaging may be monitored for safety and compliance
In some cases, downloadable content may be watermarked or protected by DRM
If we offer memberships or recurring subscriptions, your data may also be used to manage billing and access.
 
6. Contact Forms and File Uploads
When you fill out a contact, order, or quote form:
We may collect personal data and uploaded files (images, references, documents)
These submissions are used only for fulfilling your request or order
Uploaded files are stored securely and not shared publicly
You can request deletion of files submitted via forms

7. Email Marketing and Communications
If you subscribe to our newsletter or marketing list:
We may use your email to send product updates, promotions, and tips
You can unsubscribe at any time using the link in the email footer
We may track open rates and click behavior to improve our emails
We comply with CAN-SPAM, GDPR, and other email privacy regulations.

8. Third-Party Services
We use secure external providers to manage:
Website hosting and performance
Email and form processing
Analytics and advertising
Payments and invoicing
Course management and delivery
File storage
Customer support or live chat
Each provider is responsible for its own privacy policy and data protection compliance.

9. Data Security and Retention
We use appropriate technical and organizational measures to protect your personal data:
SSL encryption
Secure hosting platforms
Limited access to data
Regular backups and updates
We retain your data only as long as necessary to provide services or comply with legal obligations. You may request deletion of your personal data at any time.
 
10. International Users
Our services are primarily operated from the United States, but accessible worldwide. If you access our website from outside the U.S., you acknowledge that your information may be transferred to and processed in the U.S.
 
11. Your Rights
You have the right to:
Access the personal data we hold about you
Request correction or deletion
Withdraw consent where applicable
Opt out of marketing communications
Request data portability (when applicable)
To make a privacy-related request, contact us at:
📧 Email: contact@shugacookiesny.com
 
12. Changes to This Policy
We may update this policy to reflect changes to our services, practices, or legal requirements. Updates will be posted on this page with a new “Last Updated” date.

Effective Date: July 9, 2025
Last Updated: July 9, 2025

By using this website, you agree to the collection and use of your information in accordance with this policy.