Privacy policy
Privacy Policy – Steak-King.co.uk
Effective Date: 1 May 2026
Last Updated: [DATE]
1. Introduction
We respect your privacy and are committed to protecting your personal data. This policy explains how we collect, use, store, and safeguard your information when you purchase products from us online or interact with our website, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Who We Are
This website is operated by:
Steak King Holdings Limited
Suite E Ground Floor, Profile West, 950 Great West Road, Brentford, United Kingdom, TW8 9ES
Business Registration Number: 17204147
Email: orders@steak-king.co.uk
If you have any questions about this policy or how we handle your data, please contact us using the details above.
3. Data We Collect
We may collect the following information:
- Contact details: name, email address, phone number, and delivery/billing address.
- Payment details: processed securely via our third-party payment provider. We do not store full card details ourselves.
- Order information: purchase history, order preferences, and delivery instructions.
- Browsing behaviour: cookies, device information, and analytics data.
- Marketing preferences: your opt-in/opt-out choices.
4. How We Use Your Data
We use your data for:
- Order fulfilment: processing payments, arranging delivery, and providing customer service.
- Marketing: sending promotional emails and offers, only where you have given consent.
- Business operations: improving our website, products, and customer experience.
- Legal compliance: maintaining records for tax, accounting, and regulatory purposes.
5. Legal Basis for Processing
We process your data under the following lawful bases:
- Contractual necessity: to fulfil your orders and provide our services.
- Consent: for marketing communications (which you may withdraw at any time).
- Legitimate interests: to improve our services, secure our website, and prevent fraud.
- Legal obligations: to retain records for tax and accounting requirements.
6. Cookies
Our website uses cookies and similar technologies to enable core functionality, analyse traffic, and (with your consent) support marketing. When you first visit our site, you will be presented with a cookie banner allowing you to accept or manage non-essential cookies. You can change your preferences at any time. [If you have a separate Cookie Policy, link it here.]
7. Data Retention
- Order and transaction records: retained for 6 years, in line with UK tax and accounting requirements.
- Marketing data: retained until you unsubscribe or request deletion.
- Browsing/analytics data: retained for up to 26 months, after which it is deleted or anonymised.
8. Sharing Your Data
We share your data only where necessary, with the following categories of trusted third parties:
- E-commerce platform: Shopify, which hosts our online store.
- Delivery partner: DPD, to arrange and complete your delivery.
- Scheduling app: Zapiet, to manage delivery dates and details.
- Payment processor: Airwallex, to handle secure transactions.
- Marketing service provider: Klaviyo, to send communications where you have consented.
We have appropriate data-processing agreements in place with these providers, requiring them to protect your data and process it only in accordance with our instructions. We do not sell your personal data to anyone.
9. International Transfers
Some of our service providers, and members of our wider corporate group, are located outside the UK. In particular, your personal data may be accessed by our affiliated entity in Hong Kong for operational, fulfilment, and customer service purposes.
As Hong Kong is not currently covered by a UK adequacy decision, we put appropriate safeguards in place for these transfers, such as the UK International Data Transfer Agreement (IDTA) or Standard Contractual Clauses (SCCs), to ensure your data continues to receive a level of protection consistent with UK GDPR standards. You may contact us for further information about these safeguards.
10. Data Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. This includes secure hosting, encryption of payment data via our providers, and restricted access to personal information.
11. Automated Decision-Making
We do not use your personal data for automated decision-making or profiling that produces legal or similarly significant effects.
12. Children
Our services are intended for individuals aged 18 and above. We do not knowingly collect or process data from children. If we become aware that we have inadvertently collected such data, we will delete it.
13. Your Rights
Under UK GDPR, you have the right to:
- Access your personal data.
- Rectify inaccurate or incomplete data.
- Erase your data (the "right to be forgotten").
- Restrict or object to processing.
- Withdraw consent for marketing at any time (e.g. via the unsubscribe link in any email).
- Data portability — to receive your data in a machine-readable format.
You can exercise any of these rights by contacting us at orders@steak-king.co.uk. We will respond within one month.
14. Right to Complain
If you are unhappy with how we have handled your data, you have the right to lodge a complaint with the UK supervisory authority, the Information Commissioner's Office (ICO):
Website: ico.org.uk
Helpline: 0303 123 1113
We would, however, appreciate the chance to address your concerns first, so please do contact us.
15. Changes to This Policy
We may update this policy from time to time. Any changes will be posted on this page with an updated "Last Updated" date.
16. Contact Us
For any privacy concerns or to exercise your rights, please contact us at: orders@steak-king.co.uk