GDPR Policy

Website: https://ritamugcakes.com
Operated by: Rita
Last Updated: August 2026


1. Our Commitment to Privacy

At https://ritamugcakes.com (“the Website,” “we,” “our,” or “us”), protecting your personal data and respecting your privacy rights are among our highest priorities.

This GDPR Compliance Policy explains how we collect, use, process, store, protect, and, where applicable, transfer personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”), the UK GDPR, and other applicable data protection laws.

This policy applies to visitors located in the European Economic Area (EEA), the United Kingdom, Switzerland, and other jurisdictions with similar privacy legislation.

This page should be read together with our:

  • Privacy Policy
  • Cookie Policy
  • Terms of Use

2. What Is the GDPR?

The General Data Protection Regulation (GDPR) is a European privacy law designed to provide individuals with greater control over their personal information while establishing strict obligations for organizations that process personal data.

Under the GDPR, personal data must be:

  • Processed lawfully, fairly, and transparently.
  • Collected only for specified and legitimate purposes.
  • Limited to data that is necessary for those purposes.
  • Kept accurate and up to date.
  • Protected using appropriate security measures.
  • Retained only for as long as necessary.

We are committed to following these principles whenever we process personal information.


3. Personal Data We May Collect

Depending on how you interact with https://ritamugcakes.com, we may collect the following categories of personal data:

  • Name
  • Email address
  • IP address
  • Approximate geographic location
  • Browser type
  • Device information
  • Operating system
  • Language preferences
  • Website usage data
  • Pages visited
  • Time spent on pages
  • Referring websites
  • Cookie identifiers
  • Form submissions
  • Messages sent through our contact forms
  • Newsletter subscription information (if applicable)
  • Information collected through trusted analytics and advertising partners

We do not knowingly collect sensitive categories of personal data, including information relating to:

  • Health
  • Race or ethnicity
  • Political opinions
  • Religious beliefs
  • Biometric information
  • Sexual orientation

If such information is voluntarily provided, it will be processed only where permitted by applicable law.


4. How We Use Personal Data

We process personal information only where necessary to operate our Website and provide our services.

Personal data may be used to:

  • Respond to inquiries.
  • Provide customer support.
  • Operate and maintain the Website.
  • Improve recipes and website content.
  • Analyze visitor behavior.
  • Improve website performance.
  • Personalize user experience where permitted.
  • Display advertising through trusted advertising partners.
  • Detect fraud and security threats.
  • Comply with legal obligations.
  • Send newsletters or updates when you have provided your consent.

We do not sell your personal data.


5. Legal Bases for Processing

Under the GDPR, we process personal information using one or more of the following legal bases:

Consent

We rely on your consent when you:

  • Accept non-essential cookies.
  • Subscribe to newsletters.
  • Submit certain forms.
  • Choose to receive communications.

You may withdraw your consent at any time.


Legitimate Interests

We may process data where necessary to:

  • Operate our Website.
  • Maintain security.
  • Improve website functionality.
  • Analyze website performance.
  • Prevent fraud.
  • Ensure reliable operation.

These interests are balanced against your fundamental rights and freedoms.


Legal Obligations

Certain processing activities may be necessary to comply with legal obligations, regulatory requirements, or lawful requests from public authorities.


Contractual Necessity

Where applicable, we may process personal information when necessary to fulfill a request initiated by you or to provide services you have requested.


6. Cookies and Similar Technologies

We use cookies and similar technologies to:

  • Ensure proper website functionality.
  • Remember your preferences.
  • Analyze website traffic.
  • Improve user experience.
  • Measure advertising performance.
  • Support Google AdSense and other trusted advertising services.

Where required by law, non-essential cookies are placed only after your consent has been obtained through our cookie consent banner.

You may:

  • Accept cookies.
  • Reject non-essential cookies.
  • Customize your preferences.
  • Withdraw consent at any time through the Manage Consent option available on our Website.

For complete information, please review our Cookie Policy.


7. Your GDPR Rights

If you are located within the EEA, the United Kingdom, Switzerland, or another jurisdiction providing similar protections, you may have the following rights:

  • Right of Access.
  • Right to Rectification.
  • Right to Erasure (“Right to be Forgotten”).
  • Right to Restrict Processing.
  • Right to Data Portability.
  • Right to Object.
  • Right to Withdraw Consent.
  • Rights relating to automated decision-making where applicable.

To exercise any of these rights, please contact us at:

Email: contact@ritamugcakes.com

Subject: GDPR Request

For security purposes, we may request information necessary to verify your identity before processing your request.

You also have the right to lodge a complaint with your local Data Protection Authority if you believe your rights have been violated.


8. Data Retention

We retain personal information only for as long as reasonably necessary to fulfill the purposes described in this policy, unless a longer retention period is required by law.

Examples include:

  • Contact inquiries — until resolved.
  • Newsletter subscriptions — until you unsubscribe.
  • Analytics data — according to provider retention settings.
  • Cookie preferences — according to applicable consent settings.

Once retention periods expire, data is securely deleted, anonymized, or otherwise disposed of in accordance with applicable laws.


9. International Data Transfers

Some of our trusted service providers may process personal information outside the European Economic Area or the United Kingdom.

Where international transfers occur, we implement appropriate safeguards, including, where applicable:

  • Standard Contractual Clauses (SCCs).
  • Adequacy Decisions.
  • Other legally recognized transfer mechanisms.

These safeguards are designed to ensure your personal information remains adequately protected.


10. Third-Party Data Processors

We work with trusted third-party providers that help us operate and improve our Website.

These providers may include:

  • Google Analytics.
  • Google AdSense.
  • Website hosting providers.
  • Security services.
  • Email communication platforms.
  • Consent management platforms.
  • Affiliate partners.
  • Embedded media providers such as YouTube and Pinterest.

These providers process personal information only in accordance with their own privacy policies and applicable legal requirements.


11. Data Security

We implement reasonable technical and organizational safeguards designed to protect personal information, including:

  • HTTPS encryption.
  • Secure hosting infrastructure.
  • Firewall protection.
  • Malware monitoring.
  • Software updates.
  • Access controls.
  • Security monitoring.

Although we take reasonable precautions, no method of electronic transmission or storage can be guaranteed to be completely secure.


12. Children’s Privacy

Our Website is intended for a general audience and is not directed toward children under the age of 13.

We do not knowingly collect personal information from children.

If you believe a child has submitted personal information through our Website, please contact us immediately so we can promptly delete the information where appropriate.


13. Changes to This GDPR Compliance Policy

We may update this GDPR Compliance Policy from time to time to reflect changes in:

  • Applicable laws.
  • Regulatory guidance.
  • Technology.
  • Business practices.
  • Third-party service providers.

The updated version will always be published on this page with a revised Last Updated date.

Your continued use of https://ritamugcakes.com after any modifications constitutes acceptance of the updated policy.


14. Contact Information

If you have questions regarding this GDPR Compliance Policy or wish to exercise your privacy rights, please contact us:

Website: https://ritamugcakes.com

Email: contact@ritamugcakes.com

We will make reasonable efforts to respond to your request within the timeframes required under applicable data protection laws.