Smash Burger

Privacy policy

How Smash Burger collects, uses and protects personal data.

Last updated: 13 August 2026

1. Introduction

This Privacy Policy describes how Smash Burger collects, uses, stores, discloses and protects personal data processed through:

This notice should be read together with the Cookie Policy and the Terms of use published on this website.

2. Data controller

The data controller for the processing described in this notice is the venue that publishes this website:

CRIMA SRL

Via Secondo Bini, 7, 48100, Ravenna, RA

VAT / tax ID: IT02438880391

Tax code: 02438880391

Email: info@pandeajo.it

Phone: +390544461097

For questions about privacy, use the contact details above or the Contact page of this website.

3. Technology providers

This website may be built, hosted or operated with the help of technology providers (for example digital tools that publish pages, manage reservations or process orders). Where those providers process guest data on our behalf, they normally act as data processors under our documented instructions. Smash Burger remains the data controller for guest and customer data collected for venue services.

4. Categories of personal data

4.1 Browsing and technical data

When you visit the website we may process:

4.2 Identity and contact data

Depending on the form or service you use, we may process:

4.3 Reservation, order and service data

We may process information needed to manage your request, such as date and time, number of guests, table or service preferences, order items, notes, payment status where applicable, and related communications (confirmations, reminders or updates).

5. Purposes and legal bases

We process personal data for the following purposes:

6. How we collect data

Data may be collected:

7. Recipients and sharing

Personal data may be shared only with:

We do not sell personal data. We do not use guest data to build unrelated advertising profiles on our own behalf without a valid legal basis.

8. Retention

We retain personal data only as long as needed for the purposes above, including:

When retention ends, data are deleted, anonymised or archived as required by law.

9. International transfers

If a provider stores or accesses data outside your country, we take steps required by applicable law (for example appropriate contractual safeguards) so that your data remain protected.

10. Your rights

Subject to applicable law, you may request:

To exercise your rights, contact us at info@pandeajo.it. You may also lodge a complaint with your local supervisory authority.

11. Updates

We may update this Privacy Policy to reflect legal, technical or organisational changes. The “Last updated” date at the top of this page will be revised when material changes are published. Please review this page periodically.

Review this template with your counsel and adapt it to your venue before publishing.