Privacy Policy
Privacy Policy
Data Controller
Sakura Grill LLC ("Sakura Grill," "we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, dine at our restaurant, use our services, or interact with us in any way. We operate our business at 1234 Cherry Blossom Lane, Downtown District, and serve as the data controller responsible for your personal information.
Information We Collect
Information You Provide Directly
We collect information that you voluntarily provide to us when you:
- Make a reservation through our website, phone, or third-party platforms
- Sign up for our newsletter or marketing communications
- Purchase gift cards or merchandise
- Participate in surveys, contests, or promotional activities
- Contact us with inquiries or feedback
- Apply for employment opportunities
- Book private events or catering services
- Join our loyalty program or sake club
- Create an account on our website
This information may include:
- Full name and contact information (email, phone number, address)
- Payment and billing information
- Dining preferences and dietary restrictions
- Special occasion information
- Communication preferences
- Account credentials
- Employment application materials
Information Collected Automatically
When you visit our website or interact with our digital services, we automatically collect certain information:
- Device information (type, operating system, browser type)
- IP address and geographic location
- Website usage data and browsing behavior
- Clickstream data and page interactions
- Referring website information
- Date and time of visits
- Cookies and similar tracking technologies data
- Mobile app usage data (if applicable)
- Wi-Fi usage information when using our restaurant's network
Information from Third Parties
We may receive information about you from third parties:
- Reservation platforms (OpenTable, Resy, etc.)
- Social media platforms when you interact with our pages
- Payment processors and financial institutions
- Marketing partners and advertising networks
- Background check providers (for employment purposes)
- Reviews and rating platforms
- Business partners for joint promotions
- Analytics providers
How We Use Your Data
We use your personal information for various purposes to provide and improve our services:
Service Delivery
- Process and confirm your reservations
- Provide dining services and fulfill your orders
- Manage waitlists and table availability
- Accommodate dietary restrictions and special requests
- Process payments and prevent fraud
- Deliver catering services and manage events
- Administer loyalty programs and rewards
Communication
- Send reservation confirmations and reminders
- Notify you about changes to your bookings
- Respond to your inquiries and provide customer support
- Send marketing communications (with your consent)
- Share updates about new menu items and special events
- Request feedback and conduct satisfaction surveys
- Send gift cards and promotional offers
Analytics and Improvement
- Analyze dining trends and preferences
- Improve our menu offerings and services
- Optimize website functionality and user experience
- Conduct market research and business analysis
- Monitor and improve service quality
- Develop new products and services
Legal Compliance
- Comply with applicable laws and regulations
- Respond to legal requests and court orders
- Protect our rights and property
- Investigate and prevent fraudulent activities
- Enforce our terms and conditions
- Maintain records for tax and accounting purposes
Security and Operations
- Ensure the safety and security of our premises
- Monitor and prevent unauthorized access
- Maintain and improve IT security
- Conduct internal audits and quality control
- Train staff and improve service delivery
Business Operations
- Process job applications and manage employment
- Manage vendor and supplier relationships
- Conduct financial planning and reporting
- Facilitate business transactions and partnerships
Legal Basis for Processing
We process your personal data based on the following legal grounds:
Consent
We rely on your consent for:
- Marketing communications and newsletters
- Cookies and similar tracking technologies
- Sharing your information with certain third parties
- Collecting sensitive health information (allergies, dietary needs)
You may withdraw your consent at any time by contacting us or using unsubscribe links.
Contract
Processing is necessary to fulfill our contractual obligations when you:
- Make a reservation or place an order
- Purchase gift cards or merchandise
- Book private events or catering services
- Join our loyalty program
Legitimate Interest
We process data based on legitimate business interests for:
- Improving our services and customer experience
- Fraud prevention and security
- Direct marketing (where permitted)
- Internal administrative purposes
- Analyzing business performance
Legal Obligation
We process data to comply with legal requirements:
- Tax and financial reporting obligations
- Health and safety regulations
- Employment law requirements
- Food safety and licensing compliance
Data Sharing and Disclosure
We share your information only in the following circumstances:
Service Providers
We work with trusted third-party vendors who assist us in operating our business:
- Reservation management systems
- Payment processors and banks
- Email service providers
- Cloud storage and hosting services
- Analytics and marketing platforms
- Delivery partners
- IT support and security services
- Professional advisors (lawyers, accountants)
All service providers are contractually obligated to protect your data and use it only for specified purposes.
Legal Authorities
We may disclose information when required by law or in response to:
- Court orders and subpoenas
- Government investigations
- Law enforcement requests
- Legal proceedings
- Protection of our legal rights
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the successor entity. We will notify you of any such change in ownership or control.
With Your Consent
We may share your information with other parties when you explicitly consent to such sharing.
Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy:
- Reservation data: 2 years after your last visit
- Transaction records: 7 years for tax compliance
- Marketing preferences: Until you unsubscribe
- Employment applications: 1 year if not hired
- Customer service communications: 3 years
- Security footage: 30 days unless required for investigations
- Website analytics: 26 months
- Loyalty program data: Duration of membership plus 2 years
We may retain certain information longer if required by law or for legitimate business purposes.
Data Security
We implement comprehensive security measures to protect your personal information:
Technical Measures
- SSL/TLS encryption for data transmission
- Encrypted storage of sensitive information
- Firewalls and intrusion detection systems
- Regular security audits and penetration testing
- Access controls and authentication systems
- Regular software updates and patches
Organizational Measures
- Employee training on data protection
- Confidentiality agreements with staff
- Limited access on a need-to-know basis
- Regular security awareness programs
- Incident response procedures
- Vendor security assessments
Despite our efforts, no security system is impenetrable. We cannot guarantee absolute security but are committed to notifying you promptly of any data breaches as required by law.
Your Rights
Under applicable data protection laws, you have the following rights:
Right of Access
You can request a copy of the personal information we hold about you. We will provide this information free of charge within 30 days, unless requests are excessive or unfounded.
Right to Rectification
You have the right to request correction of inaccurate or incomplete personal information. We will update our records promptly upon verification.
Right to Erasure (Right to be Forgotten)
You may request deletion of your personal information when:
- It's no longer necessary for the original purpose
- You withdraw consent (where consent is the legal basis)
- You object to processing based on legitimate interests
- The data has been unlawfully processed
- Deletion is required by law
Certain exceptions apply, such as legal obligations or defense of legal claims.
Right to Restrict Processing
You can request that we limit how we use your data in certain circumstances:
- While we verify the accuracy of disputed information
- If processing is unlawful but you don't want deletion
- When we no longer need the data but you need it for legal claims
- While we assess an objection to processing
Right to Data Portability
For data processed based on consent or contract, you can request to receive your information in a structured, commonly used, machine-readable format, or have it transmitted directly to another service provider where technically feasible.
Right to Object
You can object to processing of your personal information for:
- Direct marketing purposes (including profiling)
- Processing based on legitimate interests
- Processing for scientific/historical research or statistics
We will honor your objection unless we have compelling legitimate grounds that override your interests.
Right to Withdraw Consent
Where we rely on consent, you can withdraw it at any time. This doesn't affect the lawfulness of processing before withdrawal.
To exercise any of these rights, contact us at privacy@sakuragrill.com or call +1 (555) 123-4567.
International Data Transfers
As we operate primarily in the United States, most data processing occurs within the U.S. However, some of our service providers may process data internationally. When we transfer personal information outside your country of residence, we ensure appropriate safeguards:
- Standard contractual clauses approved by relevant authorities
- Adequacy decisions where applicable
- Privacy Shield certification (where still valid)
- Your explicit consent for specific transfers
We ensure all international transfers comply with applicable data protection laws.
Children's Privacy
Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal information from children under 16. If we learn that we have collected such information, we will promptly delete it. Parents or guardians who believe we may have collected information from their child should contact us immediately.
For dining services, children may visit with adult supervision, but any data collection relates to the adult making reservations or payments.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technologies, legal requirements, or business operations. We will notify you of any material changes by:
- Posting the updated policy on our website
- Sending an email to registered users
- Displaying a notice in our restaurant
- Updating the "Last Updated" date
We encourage you to review this policy periodically. Your continued use of our services after changes constitutes acceptance of the updated policy.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Data Protection Officer Sakura Grill LLC Email: privacy@sakuragrill.com Phone: +1 (555) 123-4567 Address: 1234 Cherry Blossom Lane, Downtown District
You also have the right to lodge a complaint with your local data protection authority if you believe we have violated your privacy rights.
Last Updated: January 2024