Privacy policy

Last Updated: March 01, 2026

At Chilli Chan's, we value your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you visit our website or make a purchase. We comply with the General Data Protection Regulation (GDPR) and Dutch data protection laws.

1. Who We Are  

We are:  
Chilli Chan's B.V.
Keizersgracht 482, 1017EG Amsterdam, Netherlands
Email: hello [at] chillichans.com
VAT ID: NL869084070B01
Chamber of Commerce: 99668815

As the "data controller," we are responsible for your personal data.

2. What Data We Collect  

We collect the following personal data:  
- Identity and Contact Data: Name, email address, phone number, and shipping address when you place an order.  
- Payment Data: Billing details and transaction information (processed securely via our payment provider).  
- Technical Data: IP address, browser type, and device information via cookies and Google Analytics.  
- Order Data: Details about your purchases, such as items ordered and delivery preferences.  

3. How We Collect Your Data  

We collect data when you:  
- Place an order on our website.  
- Contact us via email or forms.  
- Visit our website (via cookies—see Section 7).  

4. How We Use Your Data  

We use your data to:  
- Fulfill Orders: Process and deliver your purchases, including sharing your name, address, and order details with our fulfillment provider.  
- Manage Payments: Handle transactions securely via our payment provider.  
- Communicate: Respond to your inquiries or send order updates.  

5. Legal Basis for Processing  

We process your data based on:  
- Contract: To fulfill your order (e.g., shipping goods).  
- Consent: For non-essential cookies (e.g., Google Analytics) when you opt in.  
- Legitimate Interest: To improve our website and services, provided it doesn’t override your rights.  

6. Who We Share Your Data With  

We share your data with:  
- Fulfillment Provider: To process and ship your orders.  
- Payment Provider: To handle transactions securely.  
- Google Analytics: To analyze website usage (data is anonymized where possible).  
- Authorities: If required by law.  

We ensure third parties comply with GDPR via contracts or safeguards.

7. Cookies  

We use cookies to make our website work and improve it:  
- Essential Cookies: Enable core functions like adding items to your cart (no consent needed).  

8. Data Retention  

We keep your data only as long as necessary:  
- Order data: 7 years (Dutch tax law requirement).  
- Technical data: Up to 2 years (Google Analytics).  
- Contact data: Until your inquiry is resolved, unless part of an order.  

9. International Transfers  

If data (e.g., via Google Analytics) is transferred outside the EU (e.g., to the US), we use safeguards like Standard Contractual Clauses to protect it.

10. Your Rights  

Under GDPR, you have the right to:  
- Access your data.  
- Correct inaccurate data.  
- Erase your data ("right to be forgotten").  
- Restrict or object to processing.  
- Move your data elsewhere (data portability).  
- Withdraw consent (e.g., for cookies).  

To exercise these rights, email us at hello [at] chillichans.com. You can also complain to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) at www.autoriteitpersoonsgegevens.nl.

11. Security  

We use secure systems and encryption to protect your data. However, no online transmission is 100% secure.

12. Online Dispute Resolution (ODR)  

If you’re an EU consumer and have a dispute about a purchase, you can use the EU’s Online Dispute Resolution platform:  
- Website: https://ec.europa.eu/consumers/odr  
- Our email: hello [at] chillichans.com

13. Changes  

We may update this policy. Check back here for the latest version.

14. Contact Us  

Questions? Reach us at:  
Email: hello [at] chillichans.com  
Address: Leeuwendalersweg 614, 1061BJ Amsterdam, Netherlands