Privacy Policy
This Privacy Policy describes how Dave's Hot Chicken ("we," "us," "our," or "the Company") collects, uses, discloses, retains, and protects information about you when you visit our website at daveshotnow.click, place orders through our online platform, participate in our loyalty programs, or otherwise interact with our services (collectively, the "Services"). We are committed to protecting your personal information and your right to privacy. Please read this policy carefully before using our Services.
By accessing or using our website or Services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with its terms, please discontinue use of our Services immediately.
1. About Us and How to Contact Us
Dave's Hot Chicken operates as a food service business in the United States. For all privacy-related inquiries, requests, or concerns, you may contact us using the following details:
| Company Name | Dave's Hot Chicken |
|---|---|
| Website | daveshotnow.click |
| Email Address | [email protected] |
We will respond to all privacy-related inquiries within a reasonable timeframe, and no later than forty-five (45) calendar days as required under applicable United States privacy laws.
2. Scope and Applicability
This Privacy Policy applies to all individuals who:
- Visit or browse our website at daveshotnow.click;
- Create an account or register for membership on our platform;
- Place food orders online, via mobile, or through third-party delivery platforms we are integrated with;
- Subscribe to our email newsletters, promotional communications, or loyalty programs;
- Contact our customer support team via email, phone, or web forms;
- Participate in surveys, contests, sweepstakes, or promotional events we run;
- Interact with our social media pages or digital advertising campaigns;
- Otherwise provide personal information to us in connection with our food services.
This policy does not apply to third-party websites, applications, or services that may be linked to from our website. We are not responsible for the privacy practices of those third parties and encourage you to review their privacy policies independently.
3. Information We Collect
We collect several types of information to operate our food service business, improve our offerings, and communicate with our customers effectively. The categories of information we collect are described below.
3.1 Personal Identification Information
When you create an account, place an order, or contact us, we may collect the following personal information:
- Full name — to identify you and personalize your experience;
- Email address — for order confirmations, receipts, account management, and marketing;
- Phone number — for order updates, delivery coordination, and customer support;
- Mailing and delivery address — to fulfill food delivery orders to your location;
- Date of birth — to verify age eligibility for certain promotions or programs;
- Username and password — to secure your online account with us.
3.2 Payment and Financial Information
When you make a purchase through our website, we collect payment-related information. This may include:
- Credit card or debit card type (e.g., Visa, Mastercard);
- Last four digits of your card number;
- Billing address associated with your payment method;
- Transaction identifiers and order amounts.
Full payment card numbers are processed exclusively through our third-party payment processors. We do not store, retain, or have direct access to your complete payment card number. Our payment processors comply with the Payment Card Industry Data Security Standard (PCI-DSS).
3.3 Order and Transaction Information
We collect information about the food orders you place, including:
- Items ordered, quantities, and customizations (e.g., spice level selections);
- Order history and purchase frequency;
- Special dietary notes or preferences you submit;
- Loyalty points earned and redeemed;
- Delivery instructions and special requests;
- Timestamps of orders, modifications, and cancellations.
3.4 Device and Technical Information
When you access our website, our servers and analytics tools automatically collect certain technical data, including:
- IP address and approximate geographic location derived from IP;
- Browser type and version (e.g., Chrome, Firefox, Safari);
- Operating system and device type (desktop, tablet, mobile);
- Screen resolution and display settings;
- Internet service provider (ISP);
- Referring URL (the website you visited before ours);
- Exit pages and click paths through our website.
3.5 Usage and Behavioral Data
We collect information about how you interact with our website and Services, including:
- Pages visited and time spent on each page;
- Menu items browsed, added to cart, or saved;
- Search queries entered on our platform;
- Links clicked and buttons activated;
- Session duration and frequency of visits;
- Errors encountered during navigation or checkout.
3.6 Cookies and Tracking Technologies
We use cookies, web beacons, pixel tags, local storage objects, and similar tracking technologies to collect information about your activity on our website. For a full explanation of the cookies we use, their purposes, and how to manage your cookie preferences, please refer to our Cookie Policy, which is available on our website. A brief overview is also provided in Section 10 of this Privacy Policy.
3.7 Communications Data
When you contact us for customer support or feedback, we may collect:
- The content of your emails, messages, or form submissions;
- Your preferred contact method;
- Records of communications between you and our support team;
- Survey responses and ratings you submit.
3.8 Information from Third Parties
We may receive information about you from third-party sources, including:
- Third-party delivery partners (e.g., DoorDash, Uber Eats, Grubhub) when you place an order through those platforms;
- Social media platforms if you log in or connect your social media account to our Services;
- Analytics and advertising partners who provide aggregated or pseudonymized audience insights;
- Business partners who co-sponsor promotions or events with us.
4. How We Use Your Information
We use the personal information we collect for specific, legitimate purposes related to our food service operations. The primary purposes for which we use your data include:
4.1 Service Provision and Order Fulfillment
- Processing and fulfilling your food orders accurately and efficiently;
- Coordinating with delivery personnel to bring orders to your address;
- Sending you order confirmations, receipts, and status updates;
- Managing your customer account and preferences;
- Handling order modifications, cancellations, and refund requests.
4.2 Customer Support
- Responding to your inquiries, complaints, and feedback in a timely manner;
- Resolving disputes, issues, and order errors;
- Providing technical assistance with our website or app;
- Maintaining records of support interactions for quality assurance.
4.3 Account Management
- Creating and maintaining your online account;
- Authenticating your identity when you log in;
- Managing your loyalty points, rewards, and membership status;
- Sending account-related notifications such as password resets and security alerts.
4.4 Marketing and Promotional Communications
With your consent or as permitted by applicable law, we may use your information to:
- Send promotional emails about new menu items, special offers, and discounts;
- Deliver personalized recommendations based on your order history;
- Invite you to participate in contests, sweepstakes, or loyalty events;
- Target digital advertisements to you on social media and third-party websites;
- Conduct A/B testing and campaign performance analysis.
You may opt out of marketing emails at any time by clicking the "Unsubscribe" link in any promotional email or by contacting us at [email protected].
4.5 Analytics and Business Intelligence
- Analyzing website traffic, user behavior, and ordering patterns;
- Conducting market research and customer satisfaction surveys;
- Monitoring and improving the performance and functionality of our website;
- Evaluating the effectiveness of our marketing campaigns;
- Forecasting demand and planning menu and inventory decisions.
4.6 Legal Compliance and Safety
- Complying with applicable federal and state laws and regulations;
- Responding to lawful subpoenas, court orders, or government requests;
- Detecting, preventing, and investigating fraudulent transactions or unauthorized account access;
- Enforcing our Terms of Service and other applicable policies;
- Protecting the rights, property, and safety of Dave's Hot Chicken, our customers, and the public.
5. Sharing of Your Information with Third Parties
We do not sell your personal information to third parties for monetary compensation. However, we may share your information with trusted third parties in the following circumstances:
5.1 Service Providers and Vendors
We engage third-party companies and individuals to perform functions on our behalf. These service providers may have access to your personal information only to perform specific tasks and are contractually obligated to protect your data. Categories of service providers include:
- Payment processors — to securely handle credit card and electronic payment transactions;
- Delivery logistics partners — to coordinate food delivery to your specified address;
- Cloud hosting and IT infrastructure providers — to store and manage our website data;
- Email marketing platforms — to manage and send promotional and transactional emails;
- Analytics providers (e.g., Google Analytics) — to analyze website usage and performance;
- Customer support tools — to manage and respond to support tickets and communications;
- Fraud prevention and identity verification services — to protect against unauthorized activity.
5.2 Business Transfers
In the event that Dave's Hot Chicken undergoes a merger, acquisition, reorganization, sale of assets, or bankruptcy, your personal information may be transferred to the successor entity as part of that transaction. We will notify you via email or a prominent notice on our website if such a transfer occurs and your information becomes subject to a different privacy policy.
5.3 Legal Requirements
We may disclose your personal information when required to do so by law, regulation, or legal process, including:
- In response to valid subpoenas, warrants, court orders, or government agency requests;
- To comply with applicable federal or state laws, including the FTC Act and state consumer protection statutes;
- To enforce our contractual agreements or Terms of Service;
- To protect the safety of any person from death or serious bodily harm;
- To prevent fraud or illegal activity against us, our customers, or third parties.
5.4 Advertising and Marketing Partners
We may share pseudonymized or aggregated data with advertising networks and social media platforms to facilitate targeted advertising campaigns. This may include sharing hashed email addresses or device identifiers with platforms such as Meta (Facebook/Instagram) or Google to create custom or lookalike audiences. We do not share your name or full contact details for this purpose without your explicit consent.
5.5 With Your Consent
We may share your information with additional third parties if you explicitly consent to such sharing at the time you provide your information, or if you instruct us to do so.
6. Data Security Measures
We take the security of your personal information seriously and implement a variety of technical, administrative, and physical safeguards to protect it from unauthorized access, disclosure, alteration, or destruction.
6.1 Technical Safeguards
- SSL/TLS encryption — all data transmitted between your browser and our website is encrypted using Secure Sockets Layer (SSL) or Transport Layer Security (TLS) protocols;
- Data encryption at rest — sensitive data stored in our systems is encrypted using industry-standard encryption protocols;
- Secure payment processing — payment card data is processed through PCI-DSS compliant payment gateways;
- Firewalls and intrusion detection — we maintain network security controls to detect and block unauthorized access attempts;
- Access controls — access to personal data is restricted to authorized personnel on a need-to-know basis.
6.2 Administrative Safeguards
- Regular privacy and security training for all staff with access to personal data;
- Internal data handling policies and procedures;
- Vendor due diligence and contractual data protection obligations for third-party service providers;
- Periodic review and audit of our privacy and security practices.
6.3 Incident Response
In the event of a data breach that is likely to affect your rights and freedoms, we will notify affected individuals and appropriate authorities as required by applicable state and federal laws, including relevant state breach notification statutes. We will provide notification without undue delay and in accordance with legally mandated timelines.
7. Your Privacy Rights
Depending on your state of residence, you may have certain rights regarding your personal information. Dave's Hot Chicken respects and honors these rights to the fullest extent required by applicable law.
7.1 Rights Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA)
If you are a California resident, you have the following rights under the CCPA and CPRA:
- Right to Know: You have the right to request that we disclose what personal information we have collected about you, the categories of sources, the business purposes for collection, and the categories of third parties with whom we share it;
- Right to Access: You may request a copy of the specific pieces of personal information we hold about you;
- Right to Deletion: You may request that we delete your personal information, subject to certain legal exceptions;
- Right to Correction: You have the right to request that we correct inaccurate personal information we hold about you;
- Right to Opt-Out of Sale or Sharing: You have the right to opt out of the sale or sharing of your personal information for cross-context behavioral advertising purposes;
- Right to Limit Use of Sensitive Personal Information: You may request that we limit our use and disclosure of sensitive personal information to only what is necessary to provide the Services;
- Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights. We will not deny services, charge different prices, or provide a lower quality of service because you exercised your privacy rights.
7.2 General Privacy Rights (All U.S. Residents)
Regardless of your state of residence, you have the following general rights with respect to your personal information:
- Right to Access and Review: You may log into your account to view and update the personal information we hold about you;
- Right to Correction: You may request that we correct any inaccurate or incomplete personal information;
- Right to Deletion: You may request deletion of your account and associated personal data, subject to certain retention requirements;
- Right to Data Portability: You may request that we provide you with a copy of your personal information in a commonly used, machine-readable format;
- Right to Opt-Out of Marketing: You may opt out of promotional and marketing communications at any time;
- Right to Withdraw Consent: Where we rely on your consent to process personal data, you may withdraw that consent at any time without affecting the lawfulness of processing prior to withdrawal.
7.3 How to Exercise Your Rights
To exercise any of the rights described above, please contact us using one of the following methods:
- Email: [email protected]
- Website: daveshotnow.click
We will verify your identity before processing your request to protect the security of your personal information. We may ask you to confirm information associated with your account. We will respond to your request within forty-five (45) calendar days. If we need additional time, we will notify you and may extend the response period by up to an additional forty-five (45) days with notice.
8. Data Retention
We retain your personal information only for as long as is necessary to fulfill the purposes for which it was collected, comply with our legal obligations, resolve disputes, and enforce our agreements. Our general data retention principles are as follows:
| Category of Data | Typical Retention Period |
|---|---|
| Account and registration information | Duration of account plus 3 years after account closure |
| Order history and transaction records | 7 years (for tax and accounting compliance) |
| Payment processing records | As required by PCI-DSS and applicable law (typically 5–7 years) |
| Customer support communications | 3 years after resolution of inquiry |
| Marketing preferences and opt-out records | 5 years or until updated by user |
| Website analytics data | Up to 26 months |
| Cookie and tracking data | Varies by cookie type (see Cookie Policy) |
| Legal and compliance records | As required by applicable federal or state law |
When personal information is no longer required for the purposes for which it was collected, we will securely delete, anonymize, or de-identify it in accordance with our data disposal procedures.
9. Children's Privacy
Dave's Hot Chicken does not knowingly collect, solicit, or process personal information from children under the age of 13 without verifiable parental consent. Our website and online ordering platform are not directed at children under 13, and we do not intentionally market food products or loyalty programs to individuals under 13.
We comply with the Children's Online Privacy Protection Act (COPPA), which prohibits the collection of personal information from children under 13 without prior parental consent. If we become aware that we have inadvertently collected personal information from a child under the age of 13, we will take immediate steps to delete that information from our systems.
If you are a parent or legal guardian and believe that your child under the age of 13 has provided personal information to us without your consent, please contact us immediately at [email protected] so that we can investigate and take appropriate action.
For individuals between 13 and 17 years of age, we encourage parental or guardian oversight of online activity. Certain features of our Services may require users to confirm they are 18 or older to access promotional content or create independent accounts.
10. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience, remember your preferences, and analyze website performance. Below is a brief overview of the types of cookies we use:
10.1 Types of Cookies We Use
- Strictly Necessary Cookies: Essential for the operation of our website, including maintaining your session, processing orders, and enabling secure account login. These cannot be disabled without disrupting core functionality;
- Performance and Analytics Cookies: These cookies collect anonymized information about how visitors use our website, such as which pages are visited most often and where users encounter errors. We use this data to improve our website experience;
- Functionality Cookies: These remember your preferences, such as your saved delivery address, preferred spice level, or language settings, to provide a more personalized experience;
- Marketing and Advertising Cookies: These track your browsing habits across websites to enable us and our advertising partners to deliver relevant advertisements based on your interests. You may opt out of these cookies through our cookie preference center or the Digital Advertising Alliance's opt-out tool.
10.2 Managing Your Cookie Preferences
You may manage your cookie preferences at any time through our website's cookie consent tool. You may also control cookies through your browser settings by blocking or deleting cookies. Please note that disabling certain cookies may affect the functionality of our website and your ability to place orders or access your account.
For more detailed information about the specific cookies we use, how long they are retained, and how to manage your preferences, please refer to our full Cookie Policy available on daveshotnow.click.
11. International Data Transfers
Dave's Hot Chicken is a United States-based business and our primary data processing activities take place within the United States. However, some of our third-party service providers, such as cloud hosting companies and analytics platforms, may store or process data on servers located outside of the United States.
If your personal information is transferred to countries outside of the United States, we take appropriate steps to ensure that it receives an adequate level of protection. This may include:
- Entering into data processing agreements with our vendors that include appropriate contractual data protection clauses;
- Working only with vendors who maintain internationally recognized security certifications (e.g., ISO 27001);
- Ensuring that any international data transfers comply with applicable U.S. federal and state privacy laws.
If you are located outside the United States and choose to use our Services, please be aware that your information may be transferred to, stored, and processed in the United States where our servers are located. By using our Services, you consent to such transfer, storage, and processing.
12. Legal Basis for Processing (U.S. Law Context)
While the United States does not have a single comprehensive federal privacy law equivalent to the European General Data Protection Regulation (GDPR), our data processing activities are governed by the following legal frameworks, depending on your state of residence:
- The Federal Trade Commission Act (FTC Act) — prohibits unfair or deceptive trade practices, including deceptive privacy practices;
- The California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) — provides California residents with specific rights regarding their personal information;
- The Children's Online Privacy Protection Act (COPPA) — restricts collection of personal data from children under 13;
- State-specific breach notification laws — requiring timely notification to affected consumers in the event of a data breach;
- Other applicable state consumer privacy laws — including those enacted in Virginia, Colorado, Connecticut, Texas, and other U.S. states with their own consumer data privacy frameworks.
We process your personal information in reliance on one or more of the following grounds: performance of a contract with you (e.g., fulfilling your food order), compliance with legal obligations, our legitimate business interests, and/or your consent where applicable.
13. How to File a Complaint
If you have a concern about the way we have handled your personal information and are not satisfied with our response, you may file a complaint with the appropriate regulatory authority.
13.1 Federal Trade Commission (FTC)
For complaints related to unfair or deceptive privacy practices, you may contact the Federal Trade Commission:
- Website: www.ftc.gov/complaint
- Phone: 1-877-382-4357
- Address: Federal Trade Commission, 600 Pennsylvania Avenue NW, Washington, DC 20580
13.2 California Residents
California residents may file complaints with the California Privacy Protection Agency (CPPA) or the California Attorney General's Office:
- California Privacy Protection Agency: cppa.ca.gov
- California Attorney General: oag.ca.gov/privacy
13.3 Other State Residents
Residents of other states with applicable consumer privacy laws may file complaints with their respective state attorney general's office or consumer protection agency. We encourage you to contact your state's official consumer protection authority for guidance.
13.4 Contact Us First
We encourage you to contact us directly before filing a complaint with a regulatory authority. Many concerns can be resolved quickly and efficiently by our privacy team. You may reach us at [email protected].
14. Do Not Track Signals
Some web browsers transmit "Do Not Track" (DNT) signals to websites as a means of communicating that the user does not wish to be tracked. Currently, there is no universally accepted standard for how websites should respond to DNT signals. Our website does not currently alter its data collection practices in response to DNT signals. However, you may control tracking technologies through your browser settings and our cookie consent manager as described in Section 10.
15. Links to Third-Party Websites and Services
Our website may contain links to third-party websites, applications, or services, including social media platforms, delivery partner websites, and restaurant review platforms. These third-party sites have their own privacy policies that govern their data collection and use practices. We are not responsible for the privacy practices, content, or security of any third-party websites. We strongly encourage you to review the privacy policy of any third-party site you visit.
16. Changes to This Privacy Policy
We reserve the right to update, modify, or revise this Privacy Policy at any time to reflect changes in our business practices, technology, legal requirements, or regulatory changes. When we make material changes to this policy, we will:
- Update the "Last Updated" date at the top of this page;
- Post a prominent notice on our website informing users of the update;
- Send an email notification to registered account holders where required by law or where the changes materially affect your rights.
Your continued use of our Services after any changes to this Privacy Policy constitutes your acknowledgment of the updated policy. We encourage you to review this page periodically to stay informed about how we protect your information.
17. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, your personal information, or our privacy practices, please do not hesitate to contact us. We are committed to addressing your inquiries promptly and transparently.
| Business Name | Dave's Hot Chicken |
|---|---|
| [email protected] | |
| Website | daveshotnow.click |
We aim to respond to all privacy-related inquiries within ten (10) business days of receipt and to resolve all formal requests within the timeframes required by applicable law.