Privacy Policy

This Privacy Policy explains how MiamMiam collects, uses, stores and protects your personal data when you use our website, mobile application and services. We are committed to protecting your privacy and processing your personal data in accordance with the European Union General Data Protection Regulation (GDPR). Please read this policy carefully to understand how your personal data is handled when you use the MiamMiam platform.


1. Introduction
MiamMiam (“we”, “us”, “our”) is committed to protecting your personal data and respecting your privacy.
This Privacy Policy explains how we collect, use, store and protect your personal data when you use our website, app and services, in accordance with the European Union General Data Protection Regulation (GDPR).

2. Data Controller
The data controller responsible for processing your personal data is:

MiamMiam
1, Avenue de Luxembourg
L-4950 Bascharage
Luxembourg
Email: support@miammiam.lu

For any questions regarding data protection, you can contact us using the details above.

3. Personal Data We Collect
Depending on how you use our services, we may collect the following personal data:

• Name  
• Email address  
• Phone number  
• Delivery address  
• Order details  

We do not collect or store credit card information. All payments are handled securely by our payment service provider.

4. When We Collect Personal Data
We collect personal data when you:

• Create an account  
• Place an order  
• Enter information on our website or app  
• Contact us for customer support  

5. Legal Basis for Processing (GDPR Article 6)
We process your personal data based on the following legal grounds:

• Performance of a contract: to process orders, deliveries and payments  
• Legal obligation: to comply with accounting and tax regulations  
• Legitimate interest: to operate, secure and improve our services  
• Consent: where required, for example if you contact us voluntarily  

6. How We Use Your Personal Data
We use your personal data to:

• Process and deliver your orders  
• Communicate order-related information  
• Provide customer support  
• Improve and maintain our platform  
• Ensure the security and functionality of our services  

7. Sharing of Personal Data
We do not sell or trade your personal data.

Your personal data is shared only when necessary:

• Restaurants receive your name, phone number and delivery address solely to prepare and deliver your order  
• Stripe processes payments securely on our behalf  
• Amazon Web Services (AWS) provides hosting infrastructure (EU – Frankfurt region)

No other third parties receive your personal data.

8. International Data Transfers
All data is hosted within the European Union (AWS Frankfurt).
We do not transfer personal data outside the EU.

9. Data Retention
We retain personal data only for as long as necessary:

• Order and invoice data: retained according to legal and tax obligations  
• Account data: retained until the account is deleted  
• Customer support data: retained as long as necessary to resolve the request  

When data is no longer required, it is securely deleted.

10. Data Security
We implement appropriate technical and organisational measures to protect your personal data, including:

• Secure servers and restricted access  
• Encrypted communication using SSL  
• Regular security monitoring  

Access to personal data is limited to authorised personnel only.

11. Your Rights Under GDPR
You have the right to:

• Access your personal data  
• Correct inaccurate or incomplete data  
• Request deletion of your data  
• Restrict or object to processing  
• Receive a copy of your data (data portability)  
• Withdraw consent at any time  

To exercise your rights, please contact us at support@miammiam.lu. We may request identification to verify your request.

12. Cookies
We use only functional cookies that are strictly necessary for the operation of our website, including:

• Shopping cart functionality  
• User sessions and security  

We do not use tracking, analytics or marketing cookies.

You can disable cookies in your browser settings. Please note that disabling cookies may affect the functionality of our website.

13. Children’s Privacy
Our services are not intended for children under the age of 16.
We do not knowingly collect personal data from children.

14. Complaints
If you believe that we have violated applicable data protection laws, you may contact us directly. You also have the right to lodge a complaint with the Luxembourg data protection authority (CNPD).

15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any changes will be published on this page.