Privacy Policy
This Privacy Policy explains how Punch Pizza ("we," "us," "our," or the "Company") collects, uses, discloses, and safeguards your personal information when you visit our website pizzapunch.click, place orders, interact with our digital services, or otherwise engage with us. Please read this policy carefully. By accessing or using our website and services, you acknowledge that you have read, understood, and agree to the practices described in this Privacy Policy.
We are committed to protecting your privacy and handling your personal data in a transparent, lawful, and responsible manner. This policy is designed to comply with applicable United States federal and state privacy laws, including the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), the Federal Trade Commission Act (FTC Act), and other applicable consumer protection regulations.
1. Who We Are
Punch Pizza is a food service business operating in the United States. We operate the website located at pizzapunch.click and provide food ordering, delivery, and related services to our customers.
- Business Name: Punch Pizza
- Website: pizzapunch.click
- Email: [email protected]
For all privacy-related inquiries, data access requests, or complaints, please use the contact information provided in Section 14 of this policy.
2. Information We Collect
We collect various categories of personal information depending on how you interact with us. Below is a comprehensive description of the types of data we may collect from you.
2.1 Personal Identification Information
When you create an account, place an order, or contact us, we may collect personally identifiable information, including but not limited to:
- Full name
- Email address
- Phone number
- Billing address and delivery address
- Date of birth (where required for age verification)
- Username and password (for account holders)
- Profile picture (if voluntarily uploaded)
2.2 Payment and Financial Information
When you make a purchase through our platform, we collect payment-related information necessary to process your transaction. This may include:
- Credit or debit card numbers (last four digits only, as full card numbers are processed by our secure payment processor)
- Billing address associated with the payment method
- Transaction history and order records
- Digital wallet information (e.g., Apple Pay, Google Pay) where applicable
We do not store full credit card numbers on our servers. All payment data is transmitted using industry-standard encryption and processed by PCI DSS-compliant third-party payment processors.
2.3 Order and Transaction Information
As part of providing our food ordering services, we collect information about your orders, including:
- Items ordered, customizations, and special instructions
- Order dates, times, and amounts
- Delivery or pickup preferences
- Order history and frequency
- Feedback, ratings, and reviews submitted
2.4 Usage Data and Website Interaction Information
We automatically collect certain information about how you interact with our website and services. This usage data may include:
- Pages visited and content viewed
- Time spent on specific pages
- Links clicked and buttons interacted with
- Search queries made on our website
- Referring URLs (the website that brought you to ours)
- Session start and end times
- Cart abandonment data
2.5 Device and Technical Information
We collect technical information about the device and software you use to access our services, including:
- IP address
- Browser type and version
- Operating system and version
- Device type (desktop, mobile, tablet)
- Device identifiers and hardware model
- Screen resolution and display settings
- Language preferences
- Time zone settings
2.6 Location Data
With your permission, we may collect geolocation data to provide you with delivery services, locate nearby restaurant locations, or improve our service delivery. Location data collected may include:
- Precise GPS coordinates (with your explicit consent)
- Approximate location derived from your IP address
- Delivery address information you provide manually
You may disable location tracking through your device settings at any time. Disabling location services may affect certain features of our platform.
2.7 Communications and Customer Support Data
If you contact us for support, submit a complaint, or engage with us through any communication channel, we may collect:
- Content of messages, emails, or chat transcripts
- Records of phone calls (where permitted by law and with notice)
- Nature of your inquiry or complaint
- Correspondence history with our team
2.8 Marketing Preferences and Survey Data
If you choose to participate in surveys, promotions, loyalty programs, or subscribe to our marketing communications, we may collect:
- Responses to surveys and questionnaires
- Marketing preferences and opt-in/opt-out choices
- Promotional code usage
- Loyalty program activity and point balances
2.9 Cookies and Tracking Technologies
We use cookies, web beacons, pixel tags, local storage, and similar tracking technologies to enhance your experience and collect usage data. Please refer to Section 9 of this policy and our dedicated Cookie Policy for detailed information.
3. How We Use Your Information
We use the personal information we collect for a variety of business and operational purposes. All uses of your data are grounded in one or more lawful bases, including contractual necessity, legitimate business interests, your consent, or compliance with legal obligations.
3.1 Service Provision and Order Fulfillment
- Processing and fulfilling your food orders
- Coordinating delivery or pickup logistics
- Sending order confirmations, receipts, and status updates
- Managing your account and preferences
- Resolving order issues, complaints, and disputes
3.2 Payment Processing
- Authorizing and processing payments for orders
- Preventing fraudulent transactions
- Processing refunds and chargebacks where applicable
- Maintaining financial records as required by law
3.3 Customer Service and Support
- Responding to your questions, concerns, and requests
- Providing technical support for our website and app
- Investigating complaints and resolving disputes
- Improving the quality of our customer support services
3.4 Analytics and Service Improvement
- Analyzing how customers use our website and services
- Identifying trends, preferences, and usage patterns
- Improving the functionality, design, and performance of our platform
- Developing new menu items, features, and service offerings
- Conducting internal research and business intelligence activities
3.5 Marketing and Promotions
With your consent where required, we may use your information to:
- Send promotional emails, newsletters, and special offers
- Deliver targeted advertising based on your interests and order history
- Notify you about new menu items, seasonal promotions, and loyalty rewards
- Conduct sweepstakes, contests, and referral programs
- Personalize your experience on our website
You may opt out of marketing communications at any time by clicking "unsubscribe" in any email we send, or by contacting us at [email protected].
3.6 Legal Compliance and Safety
- Complying with applicable federal and state laws and regulations
- Responding to lawful requests from government authorities and law enforcement
- Preventing, detecting, and investigating fraud, abuse, or illegal activities
- Enforcing our Terms of Service and other agreements
- Protecting the rights, property, and safety of Punch Pizza, our customers, and the public
3.7 Business Operations
- Managing our business relationships and vendor contracts
- Conducting audits, risk assessments, and quality control
- Planning for business continuity and disaster recovery
- Facilitating mergers, acquisitions, or asset transfers (see Section 5)
4. Legal Basis for Processing
We process your personal information based on the following legal grounds:
| Legal Basis | Description | Examples |
|---|---|---|
| Contractual Necessity | Processing required to fulfill our agreement with you | Order fulfillment, payment processing, account management |
| Legitimate Interests | Processing necessary for our legitimate business interests | Fraud prevention, analytics, service improvement |
| Consent | Processing based on your explicit agreement | Marketing emails, targeted advertising, location tracking |
| Legal Obligation | Processing required by law or regulation | Tax records, responding to government requests |
5. Sharing Your Information with Third Parties
We do not sell your personal information to third parties for their own independent marketing purposes. However, we may share your information in the following circumstances:
5.1 Service Providers and Business Partners
We work with carefully selected third-party service providers who assist us in operating our business and delivering services to you. These providers are contractually obligated to use your information only as directed by us and in accordance with this Privacy Policy. Categories of service providers include:
- Payment processors – to securely handle payment transactions
- Delivery logistics partners – to coordinate food delivery
- Cloud hosting and infrastructure providers – to host our website and databases
- Email and SMS communication platforms – to send transactional and marketing messages
- Analytics providers – to help us understand website usage (e.g., Google Analytics)
- Customer relationship management (CRM) tools – to manage customer interactions
- Advertising networks – to deliver relevant ads on other platforms
- Fraud detection and security services – to protect against unauthorized activity
5.2 Legal Requirements and Law Enforcement
We may disclose your personal information if required to do so by law or in response to valid legal processes, including:
- Court orders, subpoenas, or legal process
- Requests from federal, state, or local government authorities
- Regulatory investigations or compliance audits
- National security or law enforcement requirements
Where permitted by law, we will attempt to notify you before disclosing your information in response to such requests.
5.3 Business Transfers
If Punch Pizza is involved in a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of its assets, your personal information may be transferred to the acquiring entity. We will notify you of any such change in ownership or control of your personal data through a prominent notice on our website or via email.
5.4 Protection of Rights
We may share information when we believe in good faith that disclosure is necessary to:
- Protect the rights and safety of Punch Pizza, our customers, or the public
- Prevent or investigate possible wrongdoing in connection with our services
- Enforce our Terms of Service or other legal agreements
5.5 With Your Consent
We may share your information with additional third parties when you have given us explicit consent to do so, such as when participating in joint promotions or referral programs.
6. Data Security
We take the security of your personal information seriously and implement a range of technical, administrative, and physical safeguards to protect it from unauthorized access, use, alteration, or destruction.
6.1 Technical Security Measures
- SSL/TLS Encryption: All data transmitted between your browser and our website is encrypted using Secure Socket Layer (SSL) or Transport Layer Security (TLS) protocols.
- Data Encryption at Rest: Sensitive data stored in our databases is encrypted using industry-standard encryption algorithms.
- Firewalls and Intrusion Detection: We deploy firewalls, intrusion detection systems, and network monitoring tools to protect our infrastructure.
- Access Controls: We implement role-based access controls, ensuring that only authorized personnel can access personal data on a need-to-know basis.
- Multi-Factor Authentication: We require multi-factor authentication for access to sensitive internal systems.
6.2 Administrative Security Measures
- Regular employee training on data privacy and security best practices
- Strict internal data handling policies and confidentiality agreements
- Periodic privacy impact assessments and security audits
- Vendor due diligence to ensure third-party partners maintain adequate security standards
6.3 Breach Response
In the event of a data security breach that may compromise your personal information, we will notify you and relevant authorities as required by applicable law, including state data breach notification laws. We maintain an incident response plan to address security breaches promptly and effectively.
7. Your Privacy Rights
Depending on your state of residence, you may have specific rights regarding your personal information. We are committed to honoring these rights in accordance with applicable law.
7.1 Rights for California Residents (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), grants you the following rights:
- Right to Know: You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you, the categories of sources from which it was collected, the purposes for collection, and the categories of third parties with whom we share it.
- Right to Delete: You have the right to request that we delete the personal information we have collected about you, subject to certain exceptions provided by law.
- Right to Correct: You have the right to request correction of inaccurate personal information we maintain about you.
- Right to Opt-Out of Sale or Sharing: You have the right to opt out of the sale of your personal information or sharing it with third parties for cross-context behavioral advertising. To exercise this right, visit our "Do Not Sell or Share My Personal Information" page.
- Right to Limit Use of Sensitive Personal Information: You have the right to limit the use and disclosure of sensitive personal information to only what is necessary to perform the requested services.
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA/CPRA rights. We will not deny you goods or services, charge you different prices, or provide a lower quality of service because you exercised your privacy rights.
- Right to Data Portability: You have the right to receive a copy of your personal data in a structured, commonly used, and machine-readable format.
7.2 General Privacy Rights for All Users
Regardless of your state of residence, we provide the following rights to all users:
- Right to Access: You may request a copy of the personal information we hold about you.
- Right to Correction: You may request that we update or correct inaccurate or incomplete information.
- Right to Deletion: You may request that we delete your personal data, subject to legal and contractual limitations.
- Right to Withdraw Consent: Where processing is based on your consent, you may withdraw that consent at any time without affecting the lawfulness of prior processing.
- Right to Opt-Out of Marketing: You may opt out of receiving marketing communications from us at any time.
7.3 How to Exercise Your Rights
To exercise any of your privacy rights, you may submit a request through the following channels:
- Email: [email protected]
- Website: pizzapunch.click
We will respond to verifiable consumer requests within 45 days of receipt, with the possibility of extending the response period by an additional 45 days where reasonably necessary and with prior notice. We will need to verify your identity before processing your request to protect your privacy and prevent unauthorized disclosure.
8. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, comply with legal obligations, resolve disputes, and enforce our agreements. The following retention periods apply:
| Data Category | Retention Period | Reason |
|---|---|---|
| Account Information | Duration of account + 3 years | Service provision and legal compliance |
| Order and Transaction Records | 7 years | Tax, accounting, and legal requirements |
| Payment Information | As required by payment processor regulations | PCI DSS compliance and fraud prevention |
| Customer Support Records | 3 years from resolution | Quality assurance and dispute resolution |
| Usage and Analytics Data | 2 years (aggregated/anonymized thereafter) | Service improvement |
| Marketing Preferences | Until opt-out + 1 year | Compliance with opt-out requests |
| Cookie Data | Varies by cookie type (see Cookie Policy) | User preferences and analytics |
| Legal Hold Data | Duration of legal proceedings | Legal obligations |
After the applicable retention period expires, we will securely delete or anonymize your personal information in accordance with our data disposal procedures.
9. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience, analyze website traffic, and deliver personalized content and advertising.
9.1 Types of Cookies We Use
- Essential Cookies: Required for the website to function properly. These cannot be disabled.
- Performance and Analytics Cookies: Help us understand how visitors interact with our website.
- Functional Cookies: Remember your preferences and personalize your experience.
- Marketing and Advertising Cookies: Used to deliver relevant advertisements and track campaign effectiveness.
9.2 Managing Your Cookie Preferences
You can manage your cookie preferences through:
- Our cookie consent banner displayed on your first visit
- Your browser settings (see your browser's help documentation)
- Opt-out tools provided by advertising networks (e.g., the NAI opt-out tool at optout.networkadvertising.org)
Disabling certain cookies may affect the functionality of our website and your user experience. For complete details about the specific cookies we use, their purposes, and how to manage them, please refer to our full Cookie Policy.
10. Children's Privacy
Punch Pizza's website and services are not directed to, and are not intended for use by, children under the age of 18. We do not knowingly solicit or collect personal information from minors. If you are a parent or guardian and believe that your child under 18 has provided us with personal information, please contact us immediately at [email protected].
Upon receiving notification that a child under 18 has submitted personal information to us, we will:
- Promptly investigate the matter
- Delete the minor's information from our records
- Terminate any account associated with the minor
- Notify the parent or guardian of the action taken
This commitment is consistent with the requirements of the Children's Online Privacy Protection Act (COPPA) and applicable state laws. We encourage parents and guardians to monitor their children's online activities and educate them about safe internet use.
11. International Data Transfers
Punch Pizza is a United States-based business and our primary data processing activities occur within the United States. However, due to the global nature of internet infrastructure and the use of cloud-based service providers, your personal information may be transferred to, stored in, or accessed from servers and systems located in countries other than your country of residence.
These countries may have data protection laws that differ from those in your state or country. When we transfer personal data internationally, we take appropriate safeguards to ensure that your data receives an adequate level of protection, including:
- Using service providers that are contractually bound to maintain appropriate data protection standards
- Implementing standard contractual clauses or data processing agreements where applicable
- Ensuring that international transfers comply with applicable US federal and state privacy laws
- Conducting periodic assessments of our international data transfer arrangements
If you have questions about how your data may be transferred internationally or the safeguards we apply, please contact us at [email protected].
12. Third-Party Links and Services
Our website may contain links to third-party websites, social media platforms, or integrated services (such as Google Maps for location services or social login options). This Privacy Policy does not apply to those third-party websites or services. We encourage you to review the privacy policies of any third-party sites you visit, as we have no control over and assume no responsibility for their content, privacy practices, or terms of use.
Examples of third-party services we may integrate include:
- Social media platforms (Facebook, Instagram, Twitter/X)
- Payment gateways (Stripe, PayPal, Square)
- Mapping and location services (Google Maps)
- Analytics platforms (Google Analytics)
- Customer review platforms (Yelp, Google Reviews)
13. How to File a Complaint
If you have concerns about how we handle your personal information, we encourage you to contact us directly in the first instance using the details provided below. We take all privacy complaints seriously and will investigate and respond to your concern promptly.
13.1 Internal Complaint Process
- Submit your complaint in writing to [email protected] with the subject line: "Privacy Complaint."
- Include a detailed description of your concern, your contact information, and any relevant supporting documentation.
- We will acknowledge receipt of your complaint within 5 business days and provide a substantive response within 30 days.
- If additional time is required to investigate your complaint, we will notify you and provide an estimated timeline for resolution.
13.2 External Regulatory Complaints
If you are not satisfied with our response to your complaint, or if you believe we have violated applicable privacy laws, you have the right to file a complaint with the relevant government authority:
| Authority | Jurisdiction | Contact |
|---|---|---|
| Federal Trade Commission (FTC) | United States (Federal) | ftc.gov/complaint |
| California Privacy Protection Agency (CPPA) | California Residents | cppa.ca.gov |
| California Attorney General | California Residents | oag.ca.gov/privacy |
| State Attorney General (Other States) | All US States | Contact your state's Attorney General office |
14. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data handling practices, please contact us using the information below. We are committed to addressing your inquiries promptly and transparently.
- Business Name: Punch Pizza
- Website: pizzapunch.click
- Email: [email protected]
- Subject Line for Privacy Requests: "Privacy Request" or "Privacy Complaint"
When contacting us about a privacy matter, please include:
- Your full name and contact information
- A clear description of your request or concern
- The specific right you wish to exercise (if applicable)
- Sufficient information to verify your identity
15. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time to reflect changes in our practices, legal requirements, or operational needs. When we make material changes to this policy, we will:
- Update the "Last Updated" date at the top of this page
- Post a prominent notice on our website
- Send an email notification to registered users where required by law
We encourage you to review this Privacy Policy periodically to stay informed about how we collect, use, and protect your personal information. Your continued use of our website and services after any changes to this policy constitutes your acceptance of the revised terms.
If you disagree with the changes, you may close your account and discontinue use of our services. For significant changes, we may seek your renewed consent where required by applicable law.
16. Governing Law
This Privacy Policy is governed by and construed in accordance with the laws of the United States of America and applicable state laws, including but not limited to the California Consumer Privacy Act (CCPA/CPRA) for California residents, the Children's Online Privacy Protection Act (COPPA), and the Federal Trade Commission Act (FTC Act). Any disputes arising from or related to this Privacy Policy shall be resolved in accordance with our Terms of Service.
Effective Date: April 7, 2026 | Last Updated: April 7, 2026 | Version: 1.0
For any questions about this policy, contact us at [email protected] or visit pizzapunch.click.