Privacy Policy (Pending Legal Review)

Who we are

At CoffAI Shop, we brew up practical AI tools for B Corps, nonprofits, and purpose-driven teams. Our mission? Make AI simple, ethical, and useful so changemakers can spend less time on spreadsheets and more time changing the world.

Our website address is: https://coffaishop.com.

Our Dedication to Your Data Privacy

At coffaishop.com (“coffaishop,” “we,” “us,” or “our”), safeguarding your personal information is a core principle of our operations. As an AI consultancy with a Canadian base and a clientele that may span the United States and the European Union, we are committed to upholding robust privacy standards. This includes aligning with the tenets of the European Union’s General Data Protection Regulation (GDPR) and Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA). Our commitment means that we handle your information transparently, with your consent, and provide you with control over your data.

You have the right to request access to, correction of, or deletion of your personal data held by us, at no charge, subject to applicable legal or contractual obligations. We embed privacy considerations into all our client interactions and data collection points, ensuring you understand our data practices.

Information We May Collect

coffaishop.com acts as the ‘Controller’ for the personal data you entrust to us. We strive to collect only what is essential for our engagement. The categories of information may include:

  • Professional Contact Details: This typically encompasses your name, the name of your organization, your role, business email address, business phone number, and office address. We use this to initiate contact, manage our professional relationship, for project-related communications, and for billing purposes.
  • AI Project-Specific Data: To deliver bespoke AI consultancy services, we may process information and datasets you provide. This can range from business intelligence and operational data to specific datasets intended for AI model development, training, and validation. The exact nature of this data will be defined by the scope of each individual AI project and will be handled according to agreed-upon protocols detailed in our client service agreements.
  • Website Interaction Data: When you visit coffaishop.com, we may gather data such as your IP address, the type of web browser and operating system you use, the web pages you visited before ours, the specific pages you view on our site, and the timestamps of your visits. This information aids us in optimizing our website’s performance and user experience.
  • Engagement History: We maintain records of our interactions, which can include email correspondence, summaries of consultation calls, and any support tickets or inquiries.

We do not proactively seek sensitive personal data (e.g., information about health, genetics, biometrics, race, ethnic origin, political views, or religious beliefs). Should an AI project necessitate the processing of such data, it will only occur with your explicit, informed consent and under a distinct contractual framework that specifies meticulous handling, security, and purpose limitation for that data.

Our Rationale for Data Collection

The personal data we collect is crucial for:

  • Delivering our specialized AI consultancy services, which may involve data analysis, AI model design and development, strategic guidance, system implementation, and ongoing support.
  • Facilitating clear and effective communication regarding your inquiries, the status of your AI projects, and other service-related matters.
  • Efficiently managing our client engagements and internal administrative functions.
  • Sharing (with your explicit consent) relevant updates, newsletters, or insights related to AI advancements and our service offerings.
  • Continuously enhancing our website, service quality, and the overall client journey.
  • Adhering to pertinent legal and regulatory frameworks.

We are committed to data minimization and will not gather personal data beyond what is necessary for these stated purposes.

Securing Your Data

Given the nature of AI consultancy, which may involve handling proprietary or sensitive datasets, data security is paramount at coffaishop.com. We employ robust technical and organizational safeguards designed to protect your personal data from unauthorized access, alteration, disclosure, loss, or destruction. These safeguards include, but are not limited to:

Defining project-specific data security measures within individual client agreements, particularly for sensitive datasets used in AI model development..

Utilizing secure communication protocols (e.g., HTTPS) for our website and client portals.

Employing secure cloud infrastructure and data processing environments that feature stringent access controls and threat detection.

Implementing data encryption methodologies for data at rest and in transit where appropriate and feasible.

Adhering to strict password management and access control policies for our team members.

Conducting periodic security reviews and updating our protective measures.

How We Utilize Your Data

Access to your personal data within coffaishop.com is restricted to authorized employees and, when essential, to carefully selected contractors. These contractors are bound by strict confidentiality agreements and access data solely for the purposes of assisting us in delivering services to you, such as project execution or system maintenance.

  • Third-Party Collaborators: We may engage reputable third-party organizations to support our operational needs, such as cloud hosting for AI model computation, CRM systems for client management, or communication platforms. When we do, we share only the minimum information necessary and ensure these partners maintain data protection standards comparable to our own. A list of key third-party data processors relevant to your engagement can be provided or included in service agreements.
  • Commitment Against Data Commercialization: coffaishop.com will not sell, rent, lease, or otherwise commercially exploit your personal information with any unaffiliated third parties for their own marketing purposes without your explicit prior consent.
  • Legal and Protective Disclosures: We may be compelled to disclose your personal information if required by law, court order, or other governmental authority, or if we believe in good faith that such disclosure is necessary to protect our rights, property, or safety, or that of our clients or the public, or to prevent or stop illegal activities.

Our Communications (e.g., AI Insights & Newsletters)

Should you opt-in, we may use email platforms to share newsletters, insights into AI trends, or updates about coffaishop.com. Every such communication will include a clear and easy way to unsubscribe, and you can withdraw your consent for these communications at any time.

Use of Cookies and Digital Technologies

  • Cookies: These are small text files stored by your browser. Our website, coffaishop.com, may use cookies to improve your Browse experience, for example, by remembering preferences or helping us analyze site usage patterns. We will seek your consent for any non-essential cookies.
  • JavaScript: Our website may utilize JavaScript, a common programming language, to provide dynamic features and enhance site functionality.
  • You generally have control over cookies and JavaScript through your browser settings. Disabling them might affect how our website looks or functions. Our use of cookies is not intended to access unrelated information on your device.
  • Website Analytics: To understand how visitors engage with coffaishop.com, we may employ analytics services like Google Analytics. We configure these services to prioritize user privacy, potentially including IP anonymization. This data helps us refine our online presence.

Your IP Address

Your IP address may be logged for routine server administration, troubleshooting, and to help us understand the general geographic distribution of our website visitors. It might also be used sessionally to identify you during a particular visit for site functionality.

Data Retention

We retain your professional contact details and marketing preferences for the duration of our client relationship or as long as you show interest in our AI consultancy services, or until you request us to remove such information. This is always subject to legal or contractual requirements that may necessitate longer retention.

Data specifically related to AI projects will be retained, archived, or securely disposed of according to the terms stipulated in our individual client service agreements. These agreements will outline procedures for data return or deletion upon project conclusion or agreement termination, unless legal obligations dictate otherwise.

Your Rights Concerning Your Private Data

In line with GDPR and other applicable privacy legislation, you possess certain rights over your personal information. These often include:

  • The Right to Access: You can request a copy of the personal data we maintain about you.
  • The Right to Rectification: You can ask us to correct any data you believe is inaccurate or complete any information you believe is missing.
  • The Right to Erasure (or “Right to be Forgotten”): Under specific circumstances, you can request the deletion of your personal data.
  • The Right to Restrict Processing: You may request that we limit how we process your personal data under certain conditions.
  • The Right to Data Portability: Where applicable, you can ask for your data to be transferred to another entity or directly to you in a structured, commonly used, and machine-readable format.
  • The Right to Object: You can object to our processing of your personal data under certain conditions, especially in relation to direct marketing.
  • The Right to Withdraw Consent: If our data processing is based on your consent, you can withdraw this consent at any time.

Should you believe any information we hold on you is incorrect or if you wish to exercise any of your rights, please reach out to us. We are committed to addressing your requests promptly. If you have concerns about our handling of your personal data, you can contact us to investigate.

If you are unsatisfied with our response, you have the right to lodge a complaint with your relevant data protection supervisory authority.

Mobile SMS

  • Third Parties that Help Provide the Messaging Service: We will not share your opt-in to an SMS short code campaign with a third party for purposes unrelated to supporting you in connection with that campaign. We may share your Personal Data with third parties that help us provide the messaging service, including, but not limited to, platform providers, phone companies, and other vendors who assist us in the delivery of text messages.
  • Additional Disclosures: Affiliates: We may disclose the Personal Data to our affiliates or subsidiaries; however, if we do so, their use and disclosure of your Personal Data will be subject to this Policy. All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.

Modifications to This Privacy Statement

This Privacy Statement may be updated periodically to align with evolving business practices, legal interpretations, or regulatory changes. Significant modifications will be communicated by posting the updated statement on our website, along with the new effective date.

Peter J. Davison | Chief Coffee Drinker/ Founder| Coffaishop.com

May 2025