Privacy Policy & Cookies

Last updated: 8 January 2026

At Slam Cakes, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, store, and protect your data when you use our website and services.

By using our website, you agree to the collection and use of information in accordance with this policy. If you have any questions about this Privacy Policy, please contact us using the information provided at the end of this document.

What Data We Collect

Personal Information

When you place an order, we collect the following information:

  • Name - Required to process and fulfill your order
  • Phone Number - Required so we can contact you about your order
  • Email Address - Optional, used to send order confirmations and updates
  • Delivery Address - Required only if you choose doorstep delivery
  • Postcode - Required only if you choose doorstep delivery, used to calculate delivery fees

Order Information

We also collect information about your order to fulfill it:

  • Product selections (cake base, frosting, filling, toppings)
  • Custom messages or special requests
  • Quantity and pricing information
  • Delivery method (pickup or delivery)
  • Preferred delivery date and time

Shopping Cart Data

We store your shopping cart contents in your browser's local storage so you can continue shopping later. This information includes product selections and quantities, but does not include any personal information.

How We Use Your Data

We use your personal information solely for the following purposes:

  • Order Processing - To process, fulfill, and deliver your orders
  • Communication - To send order confirmations, status updates, and contact you if we have questions about your order
  • Customer Service - To respond to your inquiries and provide support
  • Legal Compliance - To comply with legal obligations, such as keeping records for tax purposes

We do not use your personal information for marketing purposes unless you explicitly opt-in to receive marketing communications.

Who We Share Data With

We share your data only with trusted third-party service providers who help us operate our business and fulfill your orders. All third parties are GDPR compliant and act as data processors on our behalf:

Stripe (Payment Processing)

We use Stripe to process payments securely. When you make a purchase, we share:

  • Your name, email, phone number, and delivery address
  • Order details and pricing information
  • Payment information is handled entirely by Stripe and never touches our servers

Stripe is PCI DSS compliant and processes data according to their privacy policy. Your card details are encrypted and secure.

Email Service (SMTP)

We use SMTP email services to send you order confirmation emails and status updates. We share:

  • Your name and email address
  • Order details for inclusion in confirmation emails

Emails are transmitted securely via encrypted SMTP connections (TLS/SSL).

Appwrite (Database & Authentication)

We use Appwrite to securely store your order information and manage our database. All data is stored securely and encrypted.

Umami Analytics (Website Analytics)

We use Umami Analytics, a privacy-focused analytics service hosted at stats.arsalan.io, to understand how visitors use our website. Umami:

  • Does not use cookies or collect personal information
  • Anonymizes IP addresses automatically
  • Only collects anonymous usage statistics (page views, referrers, device types)
  • Is GDPR compliant and does not require cookie consent
  • Does not share data with third parties

For more information about Umami's privacy practices, you can review their privacy policy. We use this data solely to improve our website's functionality and user experience.

We do NOT sell your data

We never sell, rent, or trade your personal information to third parties for marketing purposes. Your data is only shared with service providers necessary to fulfill your orders.

Data Storage & Security

We take the security of your personal information seriously:

  • All data is stored on secure, encrypted servers
  • Payment information is processed by Stripe and never stored on our servers
  • We use industry-standard security measures to protect against unauthorized access, alteration, disclosure, or destruction of your data
  • All data transmissions are encrypted using secure protocols

However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your data, we cannot guarantee absolute security.

Your Rights (GDPR)

Under the General Data Protection Regulation (GDPR), you have the following rights regarding your personal data:

  • Right to Access - You can request a copy of the personal data we hold about you
  • Right to Rectification - You can request that we correct any inaccurate or incomplete data
  • Right to Erasure - You can request that we delete your personal data (subject to legal obligations)
  • Right to Restrict Processing - You can request that we limit how we use your data
  • Right to Data Portability - You can request a copy of your data in a machine-readable format
  • Right to Object - You can object to certain types of data processing

To exercise any of these rights, please contact us using the contact information provided at the end of this policy. We will respond to your request within 30 days.

Cookies Policy

What Are Cookies?

Cookies are small text files that are stored on your device when you visit a website. They help websites remember your preferences and improve your browsing experience.

Cookies We Use

We use the following types of cookies:

  • Essential Cookies - These are necessary for the website to function properly. They include session cookies for managing your shopping cart and authentication cookies for admin access.
  • Analytics Cookies - We use Umami Analytics (hosted at stats.arsalan.io) to understand how visitors use our website. Umami is a privacy-focused analytics tool that:
    • Does not use cookies
    • Does not collect personal information
    • Anonymizes IP addresses
    • Complies with GDPR and does not require cookie consent

    Umami only collects anonymous usage statistics such as page views, referrers, and device types to help us improve our website. No personal data is collected or stored.

  • Third-Party Cookies - When you use Stripe checkout, Stripe may set cookies to process your payment securely. These are managed by Stripe according to their privacy policy.

Cookies We Do NOT Use

We do not use:

  • Advertising or tracking cookies
  • Social media tracking cookies
  • Third-party marketing cookies

Managing Cookies

You can control cookies through your browser settings. Most browsers allow you to refuse or delete cookies. However, please note that disabling essential cookies may affect the functionality of our website, particularly your shopping cart experience.

Local Storage

We use browser local storage to save your shopping cart contents so you can continue shopping later. This information is stored locally on your device and does not contain any personal information. You can clear this data at any time by clearing your browser's local storage or by clearing your cart on our website.

Data Retention

We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law:

  • Order Information - We retain order records for at least 7 years to comply with tax and accounting requirements
  • Shopping Cart Data - Stored in your browser's local storage until you clear it or clear your browser data
  • Email Addresses - Retained for as long as necessary to send order-related communications

If you request deletion of your data, we will delete it within 30 days, except where we are required to retain it for legal or regulatory purposes.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date at the top of this document.

We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

Slam Cakes

Email: info@slam-cakes.com

Order Inquiries: order@slam-cakes.com

Location: Blackpool, Lancashire, United Kingdom

Website: www.slam-cakes.com

For data protection inquiries, please include "Data Protection" in your subject line. We aim to respond to all inquiries within 30 days.

🧁 Made with love in Blackpool