Privacy Policy
Last Updated: November 1, 2025
GDPR & CCPA Compliant
This Privacy Policy complies with the EU General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). We are committed to protecting your privacy rights.
Manage Your Data
You have the right to access, export, and delete your personal data at any time. Visit your profile settings to download all your data or permanently delete your account.
Go to Data & Privacy SettingsTable of Contents
1. Introduction
Oishi ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. By using Oishi, you consent to the data practices described in this policy. If you do not agree with this policy, please do not use the Service.
What This Means to You
We take your privacy seriously and want you to understand how we handle your information.
2. Information We Collect
We collect several types of information: 1. Information You Provide: - Account information (name, email, username, password) - Profile information (bio, location, profile picture) - User Content (reviews, photos, comments) - Communications with us 2. Automatically Collected Information: - Device information (IP address, browser type, device type) - Usage data (pages visited, features used, time spent) - Location data (with your permission) - Cookies and similar technologies 3. Information from Third Parties: - Social media profile information (if you connect accounts) - Payment information (processed by third-party providers)
What This Means to You
We collect information you give us (like your profile), information about how you use Oishi, and some technical information about your device.
3. How We Use Your Information
We use your information to: - Provide, maintain, and improve the Service - Create and manage your account - Process your reviews and content - Personalize your experience and recommendations - Communicate with you about the Service - Send notifications and updates (with your consent) - Analyze usage patterns and trends - Prevent fraud and ensure security - Comply with legal obligations - Enforce our Terms of Service We process your data based on: - Your consent - Performance of our contract with you - Legitimate business interests - Legal compliance
What This Means to You
We use your information to run Oishi, improve your experience, keep the platform safe, and communicate with you.
6. Data Security
We implement appropriate technical and organizational measures to protect your information: - Encryption of data in transit and at rest - Regular security assessments and audits - Access controls and authentication - Secure data storage and backup - Employee training on data protection However, no method of transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials.
What This Means to You
We use industry-standard security measures to protect your data, but no system is perfect. Keep your password secure.
7. Data Retention
We retain your information for as long as necessary to: - Provide the Service - Comply with legal obligations - Resolve disputes - Enforce our Terms Specific retention periods: - Account information: Until account deletion + 90 days - User Content: Until deletion + backup retention period - Usage data: 24 months - Security logs: 12 months When you delete your account, we will delete or anonymize your personal information, except where we are required to retain it by law.
What This Means to You
We keep your data as long as you use Oishi, plus a bit longer for legal and security reasons. When you delete your account, we delete your data.
8. Your Privacy Rights
You have the right to: - Access your personal information - Correct inaccurate information - Delete your information ("right to be forgotten") - Restrict or object to processing - Data portability (receive your data in a portable format) - Withdraw consent - Opt out of marketing communications To exercise these rights: - Access your account settings - Contact us at privacy@oishi.com We will respond to requests within 30 days. Some rights may be subject to legal limitations.
What This Means to You
You can access, correct, or delete your information anytime. You control your data and can request it be removed or downloaded.
9. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA): 1. Right to Know: - What personal information we collect - How we use and share it - Categories of third parties we share with 2. Right to Delete: - Request deletion of your personal information 3. Right to Opt-Out: - We do not sell personal information 4. Right to Non-Discrimination: - We will not discriminate against you for exercising your rights To exercise CCPA rights, email privacy@oishi.com with "CCPA Request" in the subject line. We will verify your identity before processing requests.
What This Means to You
California residents have special privacy rights. You can request to know what data we have, delete it, and we won't discriminate if you exercise these rights.
10. European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR): 1. Legal Basis for Processing: - Consent: For marketing communications - Contract: To provide the Service - Legitimate Interests: To improve and secure the Service - Legal Compliance: To comply with laws 2. Your Rights: - Right to access, rectification, erasure - Right to restrict or object to processing - Right to data portability - Right to withdraw consent - Right to lodge a complaint with supervisory authority 3. International Data Transfers: - We use standard contractual clauses approved by the EU Commission - Your data may be transferred to and processed in the United States To exercise GDPR rights, contact privacy@oishi.com.
What This Means to You
EU residents have strong data protection rights under GDPR. You control your data and can file complaints with regulators if needed.
11. Children's Privacy
The Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided personal information to us, please contact us at privacy@oishi.com. We will delete such information from our systems. If you are between 13 and 18, you may only use the Service with parental consent.
What This Means to You
Oishi is not for kids under 13. If you're 13-17, get your parent's permission first.
12. International Data Transfers
Oishi is based in the United States. If you access the Service from outside the U.S., your information will be transferred to, stored, and processed in the United States. The United States may not have the same data protection laws as your jurisdiction. However, we will protect your information as described in this Privacy Policy and comply with applicable data protection laws. By using the Service, you consent to the transfer of your information to the United States.
What This Means to You
Oishi operates in the US. If you're elsewhere, your data will be sent to and stored in America, but we'll still protect it.
13. Changes to Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by: - Posting the new policy on this page - Updating the "Last Updated" date - Sending an email notification (for significant changes) Your continued use of the Service after changes constitutes acceptance of the updated policy. We encourage you to review this policy periodically. Previous versions of this policy are available upon request.
What This Means to You
We may update this policy. We'll let you know about important changes. Keep using Oishi means you accept the updates.
14. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us: Email: privacy@oishi.com Data Protection Officer: dpo@oishi.com Address: Oishi Privacy Department [Address to be provided] We aim to respond to all privacy inquiries within 30 days.
What This Means to You
Privacy questions? Email privacy@oishi.com or our Data Protection Officer at dpo@oishi.com.