Privacy Policy

Last Updated: January 2025

Welcome to our Healthy Meal Prep service. We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, share, and protect your data when you use our meal preparation and delivery services, including corporate lunches and home delivery of prepared dishes.

This policy complies with the Singapore Personal Data Protection Act (PDPA) 2012, the European General Data Protection Regulation (GDPR), and other applicable international privacy laws.

1. Information We Collect

We collect various types of information to provide and improve our services:

Personal Identification Data
  • Full name and preferred name
  • Email address
  • Telephone number and mobile number
  • Delivery address (residential or office)
  • Billing address and payment information
  • Company name (for corporate lunch orders)
  • Date of birth (for promotional purposes)
Dietary and Preference Information
  • Dietary restrictions and allergies
  • Food preferences and meal choices
  • Portion size preferences
  • Nutritional goals and health objectives
  • Special instructions for meal preparation
Order and Transaction Data
  • Order history and meal selections
  • Payment method and transaction records
  • Delivery schedule and time preferences
  • Subscription plan details
  • Promotional code usage
Technical and Usage Data
  • IP address and device identifiers
  • Browser type and version
  • Operating system information
  • Pages visited and time spent on our website
  • Referral source and search terms
  • Click patterns and navigation paths
Contact Form Data

When you submit inquiries through our contact forms, we collect:

  • Your name
  • Email address
  • Phone number
  • Message content and inquiry details

This information is stored in CSV files on our secure servers for the purpose of responding to your inquiries and maintaining customer service records in compliance with Singapore PDPA requirements.

2. How We Use Your Information

We process your personal data based on the following legal grounds and for these specific purposes:

Contractual Necessity

  • Processing and fulfilling your meal orders
  • Arranging delivery to your specified address
  • Processing payments and managing billing
  • Managing your subscription plans
  • Providing customer support and responding to inquiries

Legitimate Business Interests

  • Improving our meal offerings and service quality
  • Conducting market research and customer satisfaction surveys
  • Analyzing website usage to enhance user experience
  • Preventing fraud and ensuring platform security
  • Managing corporate lunch programs efficiently

Legal Compliance

  • Maintaining records for tax and accounting purposes
  • Complying with food safety regulations
  • Responding to legal requests and court orders
  • Meeting ACRA registration and reporting requirements

Consent-Based Processing

  • Sending marketing communications and promotional offers
  • Personalizing meal recommendations
  • Displaying targeted advertisements
  • Sharing testimonials and reviews (with explicit permission)

3. How We Share Your Information

We may share your personal information with the following categories of recipients:

Service Providers and Business Partners

  • Delivery Partners: To facilitate meal delivery to your location
  • Payment Processors: To securely process your transactions
  • Cloud Storage Providers: To store data securely
  • Kitchen and Catering Partners: For meal preparation (corporate orders)
  • Marketing Platforms: To send communications (with your consent)
  • Analytics Providers: To understand service usage and improve offerings

Legal and Regulatory Authorities

  • When required by law or legal process
  • To protect our rights and property
  • To ensure food safety compliance
  • In response to valid government requests

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections.

4. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your browsing experience and analyze website performance.

Google Analytics

We use Google Analytics to understand how visitors interact with our website. This service collects:

  • Pages viewed and time spent on each page
  • Traffic sources and referral information
  • Device and browser information
  • Geographic location (city/country level)
  • User behavior patterns and navigation flows

Google Analytics uses cookies to track sessions and does not identify individual users. Data is aggregated and anonymized.

Google Ads Conversion Tracking and Remarketing

We use Google Ads to:

  • Track conversions from our advertising campaigns
  • Display relevant ads to previous website visitors
  • Measure the effectiveness of our marketing efforts
  • Create custom audiences based on website behavior

Google Ads places cookies on your device to track your interactions with our ads and website.

Facebook Pixel

The Facebook Pixel helps us:

  • Measure the effectiveness of Facebook advertising
  • Build targeted audiences for future campaigns
  • Remarket to people who have visited our website
  • Track conversions from Facebook ads
  • Optimize ad delivery to people likely to be interested

Facebook collects information about your visit, including pages viewed and actions taken.

How to Opt-Out of Tracking

  • Browser Settings: Most browsers allow you to refuse cookies or delete existing cookies
  • Google Analytics Opt-Out: Install the Google Analytics Opt-out Browser Add-on
  • Google Ads Settings: Visit Google Ads Settings to control personalized advertising
  • Facebook Ad Preferences: Adjust your Facebook ad preferences in your account settings
  • Do Not Track: Enable Do Not Track signals in your browser
  • Industry Opt-Out Tools: Use Digital Advertising Alliance or Network Advertising Initiative opt-out pages

5. Your Privacy Rights

Under GDPR, PDPA, and other applicable privacy laws, you have the following rights:

Right to Access

You can request a copy of all personal data we hold about you, including order history, dietary preferences, and account information.

Right to Correction

You have the right to request correction of inaccurate or incomplete personal information, including delivery addresses and dietary restrictions.

Right to Erasure

You can request deletion of your personal data (Right to be Forgotten), subject to legal retention requirements for financial and tax records.

Right to Data Portability

You can request your data in a structured, commonly used, machine-readable format to transfer to another service provider.

Right to Object

You can object to processing of your personal data for direct marketing purposes or based on legitimate interests.

Right to Withdraw Consent

Where processing is based on consent, you can withdraw your consent at any time without affecting prior processing.

Right to Restrict Processing

You can request limitation of processing in certain circumstances, such as while we verify data accuracy.

Right to Non-Discrimination

You will not receive discriminatory treatment for exercising your privacy rights, though some services may be unavailable without necessary data.

To exercise any of these rights, please contact us using the information provided at the end of this policy. We will respond to your request within 30 days as required by law.

6. Platform-Specific Disclosures

Google (Google Analytics & Google Ads)

Data Shared: Website usage patterns, conversion events, device information, approximate location

Purpose: Analytics, advertising measurement, remarketing campaigns

Data Controller: Google LLC

Privacy Policy: Governed by Google's Privacy Policy

Retention: Google Analytics data retained for 26 months; Ads data varies by product

Meta/Facebook (Facebook Pixel & Custom Audiences)

Data Shared: Website visits, page views, conversion events, hashed email addresses (for Custom Audiences)

Purpose: Advertising optimization, audience building, conversion tracking

Data Controller: Meta Platforms, Inc.

Privacy Policy: Governed by Meta's Data Policy

Matching: Email addresses are hashed before transmission for privacy protection

Microsoft/Bing (Bing Ads)

Data Shared: Conversion data, website interactions, device identifiers

Purpose: Advertising performance measurement, remarketing