Privacy policy
Roar Cacao Privacy Policy
Last updated: 29 November 2025
This Privacy Policy describes how Roar Cacao (“Roar Cacao”, the “Site”, “we”, “us”, or “our”) collects, uses, and discloses your personal information when you visit, use our services, or make a purchase from roarcacao.com (the “Site”), or otherwise communicate with us regarding the Site (collectively, the “Services”).
For purposes of this Privacy Policy, “you” and “your” means you as the user of the Services, whether you are a customer, website visitor, subscriber, or another individual whose information we have collected pursuant to this Privacy Policy.
Please read this Privacy Policy carefully.
1. Changes to This Privacy Policy
We may update this Privacy Policy from time to time, including to reflect changes to our practices or for other operational, legal, or regulatory reasons. When we do, we will post the revised Privacy Policy on the Site, update the “Last updated” date above and take any other steps required by applicable law.
2. What Personal Information We Collect
The types of personal information we obtain about you depend on how you interact with our Site and use our Services. When we use the term “personal information”, we are referring to information that identifies, relates to, describes or can be associated with you.
2.1 Information You Provide Directly
Information that you directly submit to us through our Services may include:
-
Contact details – name, billing address, shipping address, email address, phone number.
-
Order information – products ordered, payment confirmation details, delivery information and order history.
-
Account information – username, password, security questions and any information used for account security.
-
Shopping information – items you view, add to your basket, save to your account (including loyalty points, reviews, referrals and gift cards), and purchases you make.
-
Marketing preferences – your choices about receiving marketing by email, SMS, WhatsApp or other channels.
-
Customer support information – details you include when you contact us, for example by email, contact form or social media.
Some features of the Services may require you to provide certain information. If you choose not to provide it, you may not be able to use or access those features.
2.2 Information We Collect Automatically (Usage Data and Cookies)
When you visit or use the Site, we may automatically collect certain information about your interaction with the Services (“Usage Data”). To do this, we use cookies, pixels and similar technologies (“Cookies”).
Usage Data may include:
-
Device and browser information
-
IP address and general location derived from it (for example country or city)
-
Dates and times of access
-
Pages viewed, links clicked and how you navigate the Site
-
Interaction with emails and marketing messages (e.g. opening, clicking)
Location data:
We do not collect precise GPS location. We only use technical measures such as your IP address to determine an approximate location (for example, country or region). We use this information to:
-
Show relevant currency, language or shipping options
-
Help prevent fraud and protect our Services
-
Analyse where our customers come from so we can improve our business
You can control cookies through your browser settings. See the “Cookies” section below for more detail.
2.3 Information We Obtain from Third Parties
We may obtain information about you from third parties, including vendors and service providers, such as:
-
E-commerce and hosting providers (for example, Shopify) who support our Site and Services.
-
Payment processors, who collect payment information (e.g. bank account, credit or debit card information, billing address) to process your payment in order to fulfil your orders and provide products or services you’ve requested.
-
Analytics and marketing partners, who help us understand how visitors use our Site and how our marketing performs.
-
Email, SMS and WhatsApp marketing platforms, who help us send communications and track basic engagement.
-
Scorecard and quiz providers (for example, ScoreApp), who host our online assessments and scorecards on sub-domains such as quiz.roarcacao.com and process your quiz responses on our behalf.
Any information we obtain from third parties will be treated in accordance with this Privacy Policy.
3. Scorecards, Quizzes and Assessments
We use online scorecards and quizzes, including the “Clean Energy Scorecard: Are You Fuelled or Fooled?”, which may be hosted on a sub-domain such as quiz.roarcacao.com and operated for us by our service provider ScoreApp.
When you complete a scorecard or quiz, we may collect:
-
Your name and contact details (such as email address and/or phone number)
-
Your quiz answers about your habits, lifestyle and preferences (for example, information about your eating, sleep and movement routines)
-
Technical information such as IP address, device information and cookie data
-
Any other information you choose to provide in free-text fields
We use this information to:
-
Generate your personalised score and report
-
Email you a copy of your results (where applicable)
-
Send follow-up advice, tips and recommendations related to your answers
-
Offer products and services that are relevant to your situation, including Roar Cacao products
-
Segment our audience (for example, into low/medium/high scores) so that our messages are more relevant
-
Analyse and improve our scorecards and marketing
ScoreApp acts as our data processor and only processes your data on our instructions. We do not sell your quiz data to third parties.
Where you give us your email address or phone number in a scorecard or quiz, we may also use it to send you marketing messages (for example by email, SMS or WhatsApp) that you can unsubscribe from at any time using the links or instructions in those messages.
Cookies and similar technologies may be used on our quiz pages to make the service work, to remember your progress and to help us understand how the scorecard is used. For more information about cookies, please see the “Cookies and Similar Technologies” section of this policy.
4. SMS, WhatsApp and Email Marketing
We offer SMS, WhatsApp and email programmes to share updates, offers, tips and other marketing messages related to Roar Cacao.
4.1 What We Collect for Messaging
When you opt in to receive marketing from us, we may collect and use:
-
Your email address
-
Your mobile phone number
-
Your WhatsApp contact (where applicable)
-
Your name and order information (for example, what you bought, when you bought it)
-
Basic engagement data (such as whether you opened a message or clicked a link)
-
Information from our scorecards and quizzes (for example, your score or answers), so that our messages can be tailored to you
4.2 How We Use This Information
We may use this information to:
-
Send promotional offers, product news and content by email, SMS and/or WhatsApp
-
Send transactional messages related to your orders (e.g. order confirmations, shipping updates)
-
Send cart reminder / abandoned cart messages (see below)
-
Personalise messages based on your purchases, browsing behaviour, quiz results and preferences
-
Measure and improve the performance of our marketing
4.3 SMS Abandoned Cart Messages
To send SMS cart reminders, our Site uses cookies and similar technologies that help us track when a basket has been started but not completed.
Required wording for SMS abandoned cart:
“Roar Cacao’s website uses cookies to help keep track of items you put into your shopping cart, including when you have abandoned your cart. This information is used to determine when to send cart reminder messages via SMS.”
We may also use similar techniques for email and WhatsApp cart reminders.
4.4 Your Consent and How to Opt Out
You will only receive marketing SMS, WhatsApp messages or marketing emails from us if:
-
You have actively opted in (for example, by ticking a box or signing up through a form or scorecard), or
-
It is otherwise permitted by applicable law.
You can opt out at any time by:
-
SMS: replying with the opt-out keyword provided in our message (e.g. “STOP”)
-
WhatsApp: using the opt-out options available in WhatsApp or following the instructions in our message
-
Email: clicking the “unsubscribe” link in any marketing email we send you
Opting out of marketing does not affect service or transactional messages (for example, order confirmations or shipping updates).
5. How We Use Your Personal Information
In addition to what is described in Section 4, we use your personal information for the following purposes:
5.1 Providing Products and Services
We use your personal information to provide you with the Services and fulfil our contract with you, including to:
-
Process and manage your orders and payments
-
Arrange delivery, and handle returns and exchanges
-
Send transactional communications (order confirmations, shipping updates, etc.)
-
Create, maintain and manage your account
-
Provide features such as loyalty points, referrals and reviews
-
Generate and deliver your scorecard or quiz results and reports
We may also enhance your shopping experience by enabling Shopify to match your account with other Shopify services you may choose to use. In this case, Shopify will process your information as set out in its own Privacy Policy and Consumer Privacy Policy.
5.2 Marketing and Advertising
We may use your personal information for marketing and promotional purposes, such as to:
-
Send marketing, advertising and promotional communications by email, SMS, WhatsApp and, where permitted, postal mail
-
Show you tailored advertising for Roar Cacao products or services on the Site and on other websites, apps or social media platforms
-
Build look-alike or custom audiences where permitted by law
-
Tailor our marketing based on your purchases, browsing behaviour and scorecard/quiz results
If you are an EEA resident, the legal basis for these data processing activities is our legitimate interest in selling our products, according to Art. 6 (1) (f) GDPR, except where we rely on consent.
5.3 Security and Fraud Prevention
We use your personal information to detect, investigate and take action regarding possible fraudulent, illegal or malicious activity. This includes monitoring for suspicious orders or log-in attempts and protecting our Site and systems.
If you are an EEA resident, the legal basis for these data processing activities is our legitimate interest in keeping our website secure for you and other customers, according to Art. 6 (1) (f) GDPR.
5.4 Communicating With You and Improving Our Services
We use your personal information to:
-
Provide customer support and respond to your questions or complaints
-
Improve and develop our products, services, Site and scorecards
-
Analyse how people use our Site, scorecards and marketing so we can make them better
This is in our legitimate interests to be responsive to you, to provide effective services, and to maintain our business relationship with you according to Art. 6 (1) (f) GDPR.
6. Cookies and Similar Technologies
Like many websites, we use Cookies on our Site.
For specific information about the Cookies that we use related to powering our store with Shopify, please see:
https://www.shopify.com/legal/cookies
We use Cookies to:
-
Power and improve our Site and Services
-
Remember your preferences (for example, items in your basket or language settings)
-
Run analytics and understand how visitors use our Site and scorecards
-
Support marketing and advertising, including abandoned cart tracking as described in Section 4.3 above
Most browsers automatically accept Cookies, but you can set your browser to remove or reject them through your browser controls. Removing or blocking Cookies may negatively impact your user experience and may cause some parts of the Site or scorecard pages to work incorrectly or no longer be available.
Blocking Cookies may not completely prevent us from sharing information with third parties such as our advertising partners, but it will limit certain tracking.
7. How We Disclose Personal Information
In certain circumstances, we may disclose your personal information to third parties as described below.
We may disclose the following categories of personal information:
-
Identifiers such as basic contact details and certain order and account information
-
Commercial information such as order information, shopping information and customer support information
-
Internet or other similar network activity, such as Usage Data
-
Geolocation data such as locations determined by an IP address or other technical measures
-
Information from scorecards and quizzes, such as your score or responses, where needed to provide the Services or for our marketing (as described in this Policy)
Categories of recipients include:
-
Vendors and service providers who perform services on our behalf (such as Shopify, payment processors, IT service providers, fulfilment partners, logistics providers, customer support platforms, SMS/WhatsApp/email delivery platforms, ScoreApp, and data analytics providers).
-
Business and marketing partners who help us promote our products and run advertising campaigns.
-
Affiliates and group companies, as needed to run our business.
-
Other parties, where you have asked or consented for us to share your information (for example, social media log-ins or widgets).
-
Parties involved in a business transaction, such as a merger, acquisition, reorganisation or sale of assets.
-
Public authorities or other third parties when required to comply with legal obligations, to enforce our terms, or to protect or defend our rights and the rights of others.
We do not use or disclose sensitive personal information without your consent or for the purpose of inferring characteristics about you.
With your consent (where required by law), we may “sell” or “share” (as those terms are defined in applicable law) certain personal information for advertising and marketing purposes, such as:
-
Identifiers such as name, email address and phone number
-
Commercial information such as records of products or services purchased
-
Usage Data
These may be shared with our business and marketing partners, who will use your information in accordance with their own privacy notices.
Important: SMS Opt-in Data and Consent
If our privacy policy elsewhere refers to sharing or selling data to non-affiliated third parties, this does not apply to SMS opt-in data and consent.
The above excludes text messaging originator opt-in data and consent; this information will not be shared with any third parties.
For the purpose of this statement, service providers who help us deliver SMS messages on our behalf and under our instructions are not considered third parties.
8. Third-Party Websites and Links
Our Site may provide links to websites or online platforms operated by third parties. If you follow links to sites not affiliated or controlled by us, you should review their privacy and security policies and other terms and conditions.
We are not responsible for the privacy or security of such sites, including the accuracy, completeness or reliability of information found on them. Any information you provide in public or semi-public areas (including social media platforms) may be viewable by others and may be used by us or third parties.
Our inclusion of such links does not, by itself, imply any endorsement of the content on such platforms or of their owners or operators.
9. Children’s Data
The Services are not intended for children, and we do not knowingly collect any personal information about children.
If you are the parent or guardian of a child who has provided us with their personal information, you may contact us using the details in the “Contact” section below to request that it be deleted.
As of the effective date of this Privacy Policy, we do not have actual knowledge that we “share” or “sell” (as those terms are defined in applicable law) personal information of individuals under 16 years of age.
10. Security and Retention of Your Information
We use reasonable technical and organisational measures to protect your personal information. However, no security measures are perfect, and we cannot guarantee absolute security.
Any information you send to us may not be secure while in transit. Please do not use insecure channels to send us sensitive or confidential information (for example, full payment card details by email).
We keep your personal information only for as long as needed for the purposes described in this Privacy Policy, including to:
-
Maintain your account
-
Provide the Services and scorecards
-
Comply with legal obligations
-
Resolve disputes
-
Enforce our agreements
11. Your Rights
Depending on where you live, you may have some or all of the rights below in relation to your personal information. These rights are not absolute and may apply only in certain circumstances. In some cases, we may decline your request as permitted by law.
-
Right to Access / Know – to request access to personal information we hold about you.
-
Right to Delete – to ask us to delete personal information we maintain about you.
-
Right to Correct – to ask us to correct inaccurate personal information.
-
Right to Portability – to receive a copy of your personal information and, in some cases, to have it transferred to another controller.
-
Right to Opt Out of Sale, Sharing or Targeted Advertising – to direct us not to “sell” or “share” your personal information or process it for “targeted advertising” (as defined in applicable law).
-
Right to Restrict Processing – to ask us to stop or restrict certain processing of your personal information.
-
Right to Withdraw Consent – where we rely on consent, you can withdraw it at any time.
-
Right to Appeal – to appeal our decision if we decline to action your request, where applicable.
-
Managing Communication Preferences – you can opt out of marketing emails, SMS or WhatsApp messages as explained above.
You may exercise these rights where indicated on our Site or by contacting us using the details below. We may need to verify your identity (for example, by confirming your email address or account information) before responding.
You may also designate an authorised agent to act on your behalf, subject to proof of authority and, where required, direct verification by you.
We will not discriminate against you for exercising any of your rights.
12. Complaints
If you have any concerns or complaints about how we process your personal information, please contact us first using the details below.
If you are not satisfied with our response, you may have the right to lodge a complaint with your local data protection authority. For the EEA, you can find a list of supervisory authorities on the website of the European Data Protection Board.
13. International Users
We may transfer, store and process your personal information outside the country where you live. Your personal information may be processed by staff and third-party service providers in other countries.
If we transfer your personal information out of Europe, we will rely on recognised transfer mechanisms, such as the European Commission’s Standard Contractual Clauses or any equivalent contracts issued by the relevant competent authority of the UK, unless the data transfer is to a country recognised as providing an adequate level of protection.
14. Contact
If you have any questions about our privacy practices or this Privacy Policy, or if you would like to exercise any of your rights, please contact us at:
Email: contact@roarcacao.com
Postal address: Roar Cacao, 124 City Road, London, ENG, EC1V 2NX, United Kingdom
For the purpose of applicable data protection laws and unless stated otherwise, Roar Cacao is the data controller of your personal information.