International Compliance in Progress
We are actively working to ensure full compliance with international privacy regulations including GDPR and CCPA. See international sections below for current status.
Maintenance 101 Privacy Policy
Maintenance 101 ("Company", "we", "us", or "our") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our coffee machine maintenance service, in compliance with applicable privacy laws including the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and Korean Personal Information Protection Act (PIPA).
Effective Date: August 30, 2025
Last Updated: August 30, 2025
Governing Law: Singapore law governs international disputes; Korean law governs domestic users.
Purpose of Processing Personal Data
We process your personal data for the following purposes and legal bases:
Account Management Contract Performance
Member service provision, identity verification, social login integration
Service Provision Contract Performance
Coffee machine maintenance routine recommendation service
Community Features Legitimate Interest
Routine sharing, tip exchange, follow/care mate functions
Service Improvement Consent Required
Website usage analytics and service improvement (requires consent for international users)
Categories of Personal Data We Process
Required Information
- • Email address
- • Username/Nickname
- • Password (encrypted)
- • Age verification (16+ required)
- • IP address and browser data
- • Session cookies
Optional Information
- • Coffee machine model
- • Usage frequency preferences
- • Analytics data (with consent)
- • Theme and language preferences
- • Social media profile data (OAuth)
GDPR/CCPA Note: You have the right to access, rectify, erase, restrict processing, object to processing, and data portability for all personal data we collect.
Data Retention Periods
Account Information
Until account deletion or as required by law
Service Usage Records
3 years (or 25 months for EU users under GDPR)
Analytics Data
14 months (automatically deleted by Google Analytics)
Cookie Consent Records
1 year (required for GDPR compliance proof)
Right to Erasure: You can request deletion of your personal data at any time. We will comply within 30 days unless legally required to retain certain information.
Third-Party Data Sharing
We do not sell, trade, or rent your personal data to third parties.
Limited exceptions (with your consent or legal requirement):
Legal Compliance
We may disclose information when required by law, court order, or government regulation
Business Transfer
In case of merger, acquisition, or asset sale, user data may be transferred with 30 days advance notice
🌍 Your International Privacy Rights
Depending on your location, you may have additional privacy rights under GDPR (EU), CCPA (California), or other privacy laws:
🇪🇺 GDPR Rights (EU Residents)
- • Right to access your data
- • Right to rectification
- • Right to erasure ("right to be forgotten")
- • Right to restrict processing
- • Right to data portability
- • Right to object
- • Rights related to automated decision making
🇺🇸 CCPA Rights (California Residents)
- • Right to know what data we collect
- • Right to delete personal information
- • Right to opt-out of sale (we don't sell data)
- • Right to non-discrimination
- • Right to correct inaccurate data
- • Right to limit use of sensitive data
How to Exercise Your Rights
Contact us at: espresso.machine.maintenance@gmail.com
We will respond within 30 days (GDPR) or 45 days (CCPA). Identity verification may be required.
Data Processing Partners
We work with the following trusted partners to provide our services. All partners are bound by strict data protection agreements:
Google LLC GDPR Adequate
• reCAPTCHA spam prevention
• Google social login services
• Google Analytics for site usage analysis (with consent)
• Data location: EU/US with adequate safeguards
Kakao Corporation Korea Local
Social login service provision (Korea only)
International Data Transfers: When your data is transferred outside your country, we ensure adequate protection through EU Standard Contractual Clauses, adequacy decisions, or your explicit consent.
Data Security Measures
Administrative Measures
Minimal access privileges, staff privacy training, data breach response procedures
Technical Measures
- • Password encryption and hashing
- • Role-based access control system
- • SSL/TLS encrypted communications
- • Security monitoring and intrusion detection
- • Regular security audits and penetration testing
- • Data encryption at rest and in transit
- • Secure backup and disaster recovery procedures
Data Breach Notification: In case of a data breach affecting your personal information, we will notify you within 72 hours as required by GDPR and applicable laws.
Your Privacy Rights and How to Exercise Them
You can exercise the following rights at any time:
Data Protection Officer
Contact Person: Data Protection Officer
espresso.machine.maintenance@gmail.com
Available in English and Korean | Response within 30 days
Cookie Usage Information
Our service uses the following types of cookies:
Essential Cookies
Login session maintenance, CSRF security tokens
Functional Cookies
User preference storage (theme, language, etc.)
Analytics Cookies Consent Required
• Google reCAPTCHA for service improvement
• Google Analytics for usage behavior analysis and service improvement
• Note: You can manage these cookies in Cookie Settings
Cookie Consent: Analytics cookies require your explicit consent and can be managed in your Cookie Settings. EU users have enhanced control options.
Privacy Policy Changes
This privacy policy is effective from the implementation date. Any additions, deletions, or corrections to the content according to laws and policies will be announced through notices 7 days before the implementation of changes. Material changes affecting your rights will be notified by email where possible.
Contact Information & Dispute Resolution
Contact Information
Email: espresso.machine.maintenance@gmail.com
Response Time: Within 30 days (GDPR/PIPA) or 45 days (CCPA)
Languages: English, Korean
Dispute Resolution
Governing Law: Singapore law for international users; Korean law for domestic users
EU Users: You have the right to lodge a complaint with your local data protection authority
Arbitration: ICC Rules (Singapore venue) for international disputes exceeding $10,000 USD
Effective Date: August 30, 2025 | Last Updated: August 30, 2025
This Privacy Policy complies with GDPR, CCPA, and Korean PIPA requirements