Skip to main content
Privacy Policy

Your privacy.

We're a family-owned pizza shop, not a data company. This page explains, in plain English, what information we collect when you use our website or contact us — and how we look after it.

Last updated: 14 May 2026

Who we are

Certified Pizza Bar ("Certified Pizza", "we", "our") is the trading name of Certified Pizza Pty Ltd (ABN 87 625 485 850), a family-owned pizzeria operating from 5 Crana St, St Marys NSW 2760. We handle personal information in line with the Australian Privacy Principles set out in the Privacy Act 1988 (Cth).

What we collect

We only collect what we need to run the shop and respond to you.

  • Contact and bulk-order enquiries. When you submit the contact form, we collect the name, phone number, pickup date, and order details you provide.
  • Phone and walk-in orders. If you call the shop or come in, we may take your name and phone number to confirm the order.
  • Website analytics. We use Google Analytics to count visits and understand which pages are popular. This includes pseudonymous data like IP address (truncated), browser, device type, and pages viewed.
  • Anti-spam checks. When you submit the contact form, Cloudflare Turnstile checks that you're a real person — this uses short-lived cookies set by Cloudflare.
  • Small site preferences. Some interactive widgets (like the size-compare on the homepage) store your last choice in your browser's local storage. This never leaves your device and contains no personal information.

Why we collect it

  • To respond to your enquiry, confirm your order, and let you know if anything changes.
  • To prepare and hand over your pickup, dine-in, or delivery order.
  • To understand which parts of the website are useful so we can keep improving it.
  • To protect the website from spam, abuse, and automated attacks.
  • To keep records as required by Australian tax, accounting, and food-safety laws.

Who we share it with

We don't sell your information. We share limited information only with the providers we need to run the website and respond to your enquiries.

  • Brevo (formerly Sendinblue) — delivers contact-form enquiries to our inbox. Brevo privacy policy →
  • Cloudflare — hosts and protects the website, runs anti-spam checks, and helps the site load quickly. Cloudflare privacy policy →
  • Google — provides analytics and fonts used on the website. Google privacy policy →
  • Government bodies — only if required by Australian law (for example, a valid subpoena or order).

Some of these providers store data on servers outside Australia (typically the United States and the European Union). They're bound by their own privacy obligations and contractual safeguards.

How long we keep it

  • Contact enquiries: kept in our email inbox for up to 24 months, then archived or deleted.
  • Order records: kept as required by Australian tax and accounting laws (currently up to 7 years).
  • Analytics data: retained by Google Analytics for 14 months at most, then deleted.
  • Anti-spam cookies: typically expire within minutes to hours.

Cookies and similar tech

We use a small number of cookies and browser-storage entries:

  • Analytics cookies set by Google Analytics (typically _ga, _ga_*) to count unique visits.
  • Security cookies set by Cloudflare and Cloudflare Turnstile during contact-form submissions to detect bots.
  • Local storage for in-page preferences (for example, your last selected pizza-size comparison).

You can clear or block cookies through your browser settings. Blocking analytics cookies doesn't affect ordering or using the site. Blocking security cookies may prevent the contact form from working.

Your rights

Under the Australian Privacy Principles you can:

  • Ask us what information we hold about you.
  • Ask us to correct anything that's wrong or out of date.
  • Ask us to delete your contact-form enquiry from our inbox.
  • Withdraw consent for future marketing (we don't currently send marketing emails).

To make a request, email info@certifiedpizzabar.com.au with the subject "Privacy request". We'll get back to you within 30 days.

How we keep it safe

Information is transmitted over HTTPS, our website is protected by Cloudflare, and access to the inbox is limited to staff who need it. If there's ever a data breach likely to cause serious harm, we'll let affected people know in line with the Notifiable Data Breaches scheme.

Children

Our website isn't directed at children under 13. We don't knowingly collect their information. If you believe we have, please contact us and we'll delete it.

Changes to this policy

We may update this policy from time to time. Material changes will be reflected by the "Last updated" date at the top of this page.