CellarCharts Privacy Policy
Welcome to CellarCharts. This Privacy Policy explains how CellarCharts ("we", "us", or "our") collects, uses, discloses, and safeguards your personal information when you use our website, mobile applications, APIs, and related services (collectively, the "Services"). By using CellarCharts, you agree to the practices described in this Privacy Policy.
Information We Collect
Personal Identifiers: Name, email address, account credentials, billing information, and age verification data.
Usage Data: Wine searches, queries, saved wines, cellar inventory and tracking data, reviews, tasting notes, photos, ratings, AI chat interactions, preferences, favorite producers and regions, wines you view or click on, and browsing behavior within our Services. We use this data to personalize your experience, generate tailored recommendations, and understand your wine preferences.
Technical Data: IP address, location, browser type, device information, access times, referring URLs, and diagnostic data.
Cookies and Tracking: We use cookies and similar technologies to authenticate users, remember preferences, personalize recommendations, analyze usage, and maintain security. You can manage cookies through your browser settings, though this may limit functionality.
Third-Party Sources: We may receive information from authentication services, payment processors, analytics providers, and publicly available wine databases.
How We Use Your Information
We use your information to provide and improve our Services, including:
- Processing searches, generating AI recommendations, and delivering personalized wine insights;
- Providing WineRadar analytics, pricing data, and vintage comparisons;
- Managing accounts, subscriptions, and payments;
- Communicating updates, newsletters, and promotional content (with consent);
- Analyzing usage to improve features and user experience;
- Training AI/ML models for recommendations and content generation;
- Protecting security, preventing fraud, and enforcing our Terms;
- Complying with legal obligations.
AI Services and Personalization
We use artificial intelligence and machine learning throughout our Services to enhance your experience. This includes:
- Personalized Recommendations: We analyze your cellar inventory, saved wines, search history, ratings, and browsing behavior to suggest wines you might enjoy and identify wines similar to those in your collection;
- Natural Language Search: Our AI processes your questions and queries to surface the most relevant wines and information;
- Content Generation: AI creates vintage overviews, tasting note summaries, food pairing suggestions, and other informational content based on aggregated data;
- Model Training: We use aggregated user data, including cellar contents, preferences, and interactions, to train and improve our AI algorithms. This helps us provide better recommendations and insights for all users;
- Pattern Recognition: Our systems identify trends, similarities between wines, and market patterns to enhance WineRadar analytics and discovery features.
You can limit certain personalization features through your account settings, though this may reduce the relevance and quality of recommendations.
Analytics and Third-Party Services
We use Google Analytics to analyze site usage (see https://policies.google.com/privacy to opt out). We use email service providers for communications and third-party payment processors (like Stripe) for billing. We use cloud hosting and infrastructure providers for data storage and delivery. We may use third-party AI and machine learning services to power certain features, including natural language processing and recommendation engines. These providers are contractually obligated to protect your data and use it only to provide services to us.
Data Sharing
We do not sell your personal information. We share data only in these circumstances:
- Service Providers: With vendors who perform services for us (hosting, analytics, AI/LLM services, payments, email) under strict confidentiality obligations;
- Wine Retailers: Limited information when you click retailer links (subject to their privacy policies);
- Legal Requirements: When required by law, to protect rights and safety, or respond to legal process;
- Business Transfers: In mergers, acquisitions, or asset sales (with notice to you);
- Aggregate Data: Anonymized statistics and trends that cannot identify you;
- With Consent: For any other purposes with your permission.
Data Security
We implement industry-standard security measures including encryption, access controls, monitoring, and regular security assessments. However, no system is completely secure, and we cannot guarantee absolute security. You are responsible for protecting your account credentials.
Data Retention
We retain information as long as necessary to provide Services, comply with legal obligations, and meet legitimate business needs. Account data is kept for the life of your account plus a reasonable backup period. Transaction records are retained as required by law (typically 7-10 years). You may request deletion at any time, subject to legal retention requirements.
Your Rights and Choices
You have the right to:
- Access: Request information we hold about you;
- Correction: Update inaccurate or incomplete information;
- Deletion: Request deletion of your account and data;
- Object/Restrict: Limit certain processing activities;
- Portability: Request your data in a transferable format;
- Withdraw Consent: Opt out of processing based on consent;
- Complain: Lodge complaints with data protection authorities.
Marketing Opt-Out: Unsubscribe from promotional emails via links in our messages or account settings. You'll still receive transactional emails.
Cookie Management: Control cookies through browser settings or our cookie consent tool.
To exercise your rights, contact us using the information below. We will respond within 30-45 days and may verify your identity before processing requests.
California Privacy Rights (CCPA)
California residents have additional rights including the right to know what information we collect, the right to delete information, and the right to opt out of sale (we do not sell personal information). You have the right to non-discrimination for exercising these rights. Contact us to exercise your California privacy rights.
European Privacy Rights (GDPR)
If you're in the EEA, UK, or Switzerland, we process your data based on consent, contract performance, legal obligation, or legitimate interests. You have enhanced rights under GDPR as described above. You may contact our data protection representative or lodge complaints with your local supervisory authority.
Children's Privacy
CellarCharts is intended for users of legal drinking age (21+ in the US, 18+ or local drinking age elsewhere). We do not knowingly collect information from individuals under the legal drinking age. If we discover we have collected such information, we will delete it promptly. If you believe we have information from someone underage, please contact us immediately.
International Data Transfers
Your information may be transferred to and processed in the United States or other countries with different data protection laws. We use appropriate safeguards such as Standard Contractual Clauses to protect your data during international transfers. By using our Services, you consent to these transfers.
Third-Party Links
Our Services may link to third-party websites and services with their own privacy policies. We are not responsible for their practices. Review their privacy policies before sharing information with them.
Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. Material changes will be communicated via website notice, email, or other appropriate means. Continued use after changes constitutes acceptance of the updated policy.
Contact Us
For questions, concerns, or to exercise your privacy rights, contact us via our online form at cellarcharts.com/contact. Use subject line "Privacy Request" for privacy-specific inquiries or "GDPR Inquiry" for GDPR matters. We will respond within the timeframe required by law.
Last updated: February 9, 2026
