GDPR
Privacy Policy
How Mae Thai Wok handles your personal data — what we collect, why, and for how long.
1. Data controller
The data controller is Mae Thai Wok AB (corp. ID 556789-1234), Vasagatan 10, 111 20 Stockholm. Questions about personal data should be sent to privacy@maethaiwok.se.
2. What data do we collect?
We collect:
- Reservation details: name, phone, email, party size, any special diets
- Order details: delivery address, payment data (encrypted via our payment partner)
- Contact details: messages sent via form or email
- Technical data: IP address, browser type, visit times (anonymized)
3. Why do we process the data?
We process personal data to:
- fulfil contracts (reservations, orders, delivery)
- communicate with you about your order
- comply with legal requirements (accounting, tax rules)
- improve our services (anonymized analytics)
- send marketing (only after your active consent)
4. Storage and deletion
Reservations and orders are stored for 7 years (accounting requirements). Marketing data is stored until you withdraw consent. Technical logs are deleted after 90 days.
You may at any time request deletion of your data — contact privacy@maethaiwok.se.
5. Your rights
Under GDPR you have the right to:
- know what data we hold about you
- request correction of inaccurate data
- request erasure ("right to be forgotten")
- request data portability
- object to processing
- complain to the Swedish Authority for Privacy Protection (IMY)
6. Third-party services
We use:
- Stripe / Klarna — payments
- Foodora / Wolt / Bolt Food — home delivery
- Google Analytics — anonymized visit analytics
- Mailchimp — newsletter (consent only)
We share only the data necessary for each service.