Privacy Policy
Effective Date: November 6, 2025
Last Updated: November 6, 2025
At EJ's Wine Shop ("we," "us," or "our"), we respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website ejswineshop.com (the "Site") and use our services.
Please read this Privacy Policy carefully. By using our Site, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Site.
1. Information We Collect
1.1 Personal Information
We may collect the following types of personal information when you:
- Create an account
- Make a purchase
- Join our wine or beer club memberships
- Make a reservation
- Subscribe to our newsletter
- Contact us
Personal information may include:
- Contact Information: Name, email address, phone number, mailing address
- Account Information: Username, password, profile picture, preferences
- Payment Information: Credit card details, billing address (processed securely through Stripe)
- Order Information: Purchase history, pickup preferences, order details
- Membership Information: Membership type, start/end dates, delivery preferences
- Reservation Information: Date, time, party size, special requests
1.2 Automatically Collected Information
When you visit our Site, we automatically collect certain information about your device and browsing activity:
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Information: Pages viewed, time spent on pages, links clicked, search queries
- Location Information: General geographic location based on IP address
- Cookies and Tracking Technologies: See Section 5 for details
1.3 Information from Third Parties
We may receive information about you from third-party services:
- Google OAuth: If you sign in with Google, we receive your name, email address, and profile picture
- Payment Processors: Stripe provides transaction confirmations and payment status
- Analytics Providers: Google Analytics provides aggregated usage data
2. How We Use Your Information
We use your information for the following purposes:
2.1 To Provide Our Services
- Process and fulfill your orders
- Manage your membership subscriptions
- Process reservations and event registrations
- Send order confirmations and updates
- Provide customer support
2.2 To Communicate With You
- Send transactional emails (order confirmations, receipts, pickup notifications)
- Send membership updates and club selections
- Send event reminders and reservation confirmations
- Send marketing communications (only if you opt in) - wine/beer newsletters, promotions, new arrivals
- Respond to your inquiries and requests
2.3 To Improve Our Services
- Analyze usage patterns and trends
- Personalize your experience and product recommendations
- Conduct research and analytics
- Test new features and functionality
2.4 For Legal and Security Purposes
- Comply with legal obligations and regulations
- Verify age (21+ requirement for alcohol purchases)
- Prevent fraud and unauthorized transactions
- Protect the security and integrity of our Site
- Enforce our Terms of Service
3. How We Share Your Information
We do not sell your personal information to third parties. We may share your information in the following circumstances:
3.1 Service Providers
We share information with trusted third-party service providers who assist us:
- Payment Processing: Stripe (payment processing and fraud prevention)
- Email Services: Resend (transactional and marketing emails)
- Cloud Hosting: Netlify (website hosting)
- Database Services: Supabase (data storage and authentication)
- Analytics: Google Analytics (usage analytics)
- Content Management: Sanity.io (content delivery)
- Search: Meilisearch (product search functionality)
These service providers are contractually obligated to protect your information and use it only for the purposes we specify.
3.2 Legal Requirements
We may disclose your information if required by law or in response to:
- Court orders, subpoenas, or other legal processes
- Requests from government authorities
- Protection of our rights, property, or safety
- Investigation of fraud or security issues
3.3 Business Transfers
If EJ's Wine Shop is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you via email and/or prominent notice on our Site of any change in ownership.
3.4 With Your Consent
We may share your information with third parties when you give us explicit consent.
4. Data Security
We implement appropriate technical and organizational security measures to protect your personal information:
- Encryption: All data transmitted to and from our Site is encrypted using SSL/TLS
- Secure Payment Processing: Payment information is processed by Stripe, a PCI-DSS compliant provider
- Access Controls: Restricted access to personal information on a need-to-know basis
- Regular Security Audits: We regularly review and update our security practices
- Password Protection: Passwords are hashed and salted using industry standards
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
5. Cookies and Tracking Technologies
5.1 What Are Cookies?
Cookies are small text files stored on your device that help us provide and improve our services.
5.2 Types of Cookies We Use
Essential Cookies (Required)
- Authentication: Keep you logged in to your account
- Shopping Cart: Remember items in your cart
- Security: Protect against fraud and abuse
Analytics Cookies (Optional)
- Google Analytics: Understand how visitors use our Site
- Performance Monitoring: Track page load times and errors
Preference Cookies (Optional)
- Language/Region: Remember your preferences
- Display Settings: Remember your view preferences
5.3 Managing Cookies
You can control cookies through your browser settings:
- Most browsers accept cookies automatically, but you can modify settings to decline
- Disabling cookies may limit your ability to use certain features of our Site (e.g., staying logged in)
- To opt out of Google Analytics: Google Analytics Opt-out Browser Add-on
6. Your Privacy Rights
Depending on your location, you may have the following rights:
6.1 Access and Portability
- Request a copy of the personal information we hold about you
- Receive your data in a structured, commonly used format
6.2 Correction
- Update or correct inaccurate personal information
- You can edit most information in your account settings
6.3 Deletion
- Request deletion of your personal information
- Note: We may retain certain information for legal compliance or legitimate business purposes
6.4 Opt-Out
- Unsubscribe from marketing emails (click "Unsubscribe" at bottom of any marketing email)
- Manage email preferences in your account settings
- Opt out of analytics cookies via browser settings
6.5 Restriction
- Request restriction of processing in certain circumstances
6.6 Objection
- Object to processing of your information for certain purposes
6.7 Exercising Your Rights
To exercise any of these rights, please contact us at privacy@ejswineshop.com or use the contact information in Section 12. We will respond within 30 days.
7. Children's Privacy
Our Site and services are intended for individuals 21 years of age or older (legal drinking age). We do not knowingly collect personal information from anyone under 21.
If we learn that we have collected personal information from someone under 21, we will delete that information immediately. If you believe we have collected information from someone under 21, please contact us.
8. Data Retention
We retain your personal information for as long as necessary to:
- Provide our services to you
- Fulfill the purposes described in this Privacy Policy
- Comply with legal obligations (e.g., tax records for 7 years)
- Resolve disputes and enforce our agreements
Specific retention periods:
- Account Information: Until you delete your account, plus 30 days
- Order History: 7 years (for tax and legal compliance)
- Membership Records: Duration of membership plus 2 years
- Marketing Preferences: Until you unsubscribe or delete your account
- Analytics Data: 26 months (Google Analytics default)
9. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
9.1 Right to Know
You have the right to request:
- Categories of personal information we collect
- Categories of sources from which we collect information
- Business purposes for collecting information
- Categories of third parties with whom we share information
- Specific pieces of personal information we hold about you
9.2 Right to Delete
You have the right to request deletion of your personal information.
9.3 Right to Opt-Out of Sale
We do not sell your personal information. We have not sold personal information in the past 12 months.
9.4 Right to Non-Discrimination
We will not discriminate against you for exercising any of your CCPA rights.
9.5 Shine the Light Law
California residents may request information about our disclosure of personal information to third parties for direct marketing purposes. Contact us at privacy@ejswineshop.com.
10. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):
10.1 Legal Basis for Processing
We process your personal information based on:
- Contract: Processing necessary to fulfill our contract with you (orders, memberships)
- Consent: You have given explicit consent (marketing emails)
- Legitimate Interests: Processing necessary for our legitimate business interests (analytics, fraud prevention)
- Legal Obligation: Processing required by law (tax records, age verification)
10.2 International Data Transfers
Your information may be transferred to and processed in the United States. We ensure appropriate safeguards are in place through:
- Standard Contractual Clauses with service providers
- Adequacy decisions where applicable
10.3 Data Protection Officer
For GDPR-related inquiries, contact our privacy team at privacy@ejswineshop.com.
10.4 Right to Lodge a Complaint
You have the right to lodge a complaint with your local data protection authority if you believe we have not complied with GDPR.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
When we make changes:
- We will update the "Last Updated" date at the top of this page
- For material changes, we will notify you via email or prominent notice on our Site
- Your continued use of our Site after changes constitutes acceptance
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
EJ's Wine Shop & Tasting Room
Email: privacy@ejswineshop.com
Phone: (555) 555-5555
Address: [Your Physical Address]
For general inquiries: cheers@ejswineshop.com
13. Additional Information
13.1 Age Verification
By using our Site and making purchases, you represent that you are at least 21 years of age. We may verify your age through various methods, including ID verification at pickup.
13.2 No Shipping Policy
We do not ship alcohol. All orders must be picked up in-store. We do not collect shipping addresses for alcohol purchases.
13.3 Third-Party Links
Our Site may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to read their privacy policies.
13.4 Reviews and Public Content
Reviews and ratings you post may be visible to other users. Do not include personal information in public reviews. We reserve the right to remove inappropriate content.
This Privacy Policy is effective as of November 6, 2025. By using EJ's Wine Shop, you acknowledge that you have read and understood this Privacy Policy.
