| Cookie Name | Purpose | |
|---|---|---|
| Controller | Chauffeur International Ltd, trading as Classy Chauffeur | |
| Company number | 11233870 (registered in England and Wales) | |
| Registered office | 450 Bath Road, West Drayton, England, UB7 0EB | |
| Website | www.classychauffeur.co.uk | |
| Effective date | 22 July 2026 | |
| Document status | Pre-launch policy — production technology schedule awaiting verification |
Your privacy choices matter. This Policy explains how Classy Chauffeur uses cookies and other technologies that store information on, or access information from, your browser, mobile device or app. It explains what these technologies do, when we ask for consent and how you can change your choices.
Chauffeur International Ltd (company number 11233870), trading as Classy Chauffeur, is responsible for deciding how the technologies covered by this Policy are used on our services. In this Policy, “we”, “us” and “our” mean Chauffeur International Ltd.
Registered office: 450 Bath Road, West Drayton, England, UB7 0EB
Website: www.classychauffeur.co.uk
Email: office@classy-chauffeur.com
This Policy covers our public website and the Classy Chauffeur customer app for iOS and Android. It should be read with our Privacy Policy, which explains how and why we process personal information, retention periods, data sharing and your data-protection rights.
Privacy Policy: www.classychauffeur.co.uk/privacy-policy
Cookies are small data files that a website stores on a browser or device. First-party cookies are set for our service; third-party cookies are provided by another organisation. Session cookies usually expire when the browser session ends. Persistent cookies remain for a stated period unless deleted earlier.
The same legal rules can apply to other storage and access technologies, including web or app local storage, software development kits (SDKs), tracking pixels, tags, scripts, device identifiers and similar tools. We therefore use “technologies” in this Policy to cover all of them, not only traditional browser cookies.
Our use of these technologies is governed principally by the Privacy and Electronic Communications Regulations 2003 (PECR), as amended, and—where personal information is processed—the UK GDPR and Data Protection Act 2018.
We may use technologies without consent where they are required solely to transmit a communication, are strictly necessary to provide a service you request, or fall within another applicable statutory exception. Examples may include secure login, fraud prevention, technical security, keeping a booking session active and remembering your privacy selection.
For all other technologies, we request a specific choice before they are activated. Non-essential technologies remain off unless you consent. Rejecting them must not prevent you from creating an account or making a booking, although a feature that depends on an optional technology may remain unavailable until you choose to enable it.
The law may permit limited statistical or appearance/functionality technologies without consent where every condition for the relevant exception is met. If we rely on such an exception, we will explain the purpose, limit use to that purpose, provide a simple means of objecting where required and will not use the information for advertising or individual profiling. Until that assessment has been completed, optional analytics must remain consent-based.
| Category | What it may do | Default position | Your control |
|---|---|---|---|
| Strictly necessary | Security, authentication, booking functions, load balancing, fraud prevention and remembering privacy choices. | Enabled only where necessary or otherwise exempt. | Not controlled through the optional-consent switches. |
| Preferences and functionality | Remembering optional choices, user-interface settings, location or service preferences. | Off until chosen, unless a statutory exception clearly applies. | Enable or disable in Cookie Settings where applicable. |
| Analytics and performance | Understanding service use, errors and performance so that we can improve the website and app. | Off by default unless a verified statistical exception applies. | Separate analytics choice or simple objection mechanism, as applicable. |
| Advertising and measurement | Ad delivery, conversion measurement, attribution, remarketing or cross-service tracking. | Off until valid consent is given. | Separate marketing choice; withdrawal available at any time. |
| External content and communications | Maps, video, chat, social-media functions or other content supplied by another provider. | Blocked until enabled where the provider uses non-exempt technologies. | Enable in settings or at the point the feature is requested. |
The Cookie Settings panel forms part of this Policy. Once the production website and app are available, it must display the technologies actually active on the service, including the exact identifier, provider, purpose, category, first- or third-party status and duration. We will keep that list accurate when the service or providers change.
Our pre-launch design anticipates that the service may require session, authentication, security and privacy-preference technologies. Google Analytics, Google Ads, Meta technologies, maps, payment security, fraud prevention, crash reporting, push-notification or similar provider tools must be listed only if the final technical audit confirms that they are active. A provider named during development is not automatically an active provider.
If a technology is not included in the live list, it must not be activated unless it is added to the list and the required information and choice are provided first.
On your first visit, the website must provide equally accessible options to Accept all, Reject non-essential and Manage preferences. Optional controls must be off by default and must not use pre-ticked boxes or misleading design. The customer app must provide equivalent choices where it uses non-exempt app technologies.
You can change your choices at any time by:
Withdrawing consent does not affect the lawfulness of activity that occurred before withdrawal. After withdrawal, we will stop the relevant technology from future use where technically possible. Existing server-side records remain subject to the retention periods and rights explained in our Privacy Policy.
We normally remember a consent or refusal for up to six months, unless you clear the preference, our purposes or providers change, or an earlier refresh is appropriate. We will not repeatedly ask you to reverse a refusal.
Some features may be supplied by third parties. Depending on the final configuration, these could include analytics, advertising, mapping, payment, authentication, security, customer-support, crash-reporting or push-notification providers. We are responsible for understanding technologies placed through our service and for configuring them consistently with this Policy.
Where a provider processes personal information outside the United Kingdom, we will use an appropriate transfer safeguard or other lawful mechanism as explained in our Privacy Policy. The live technology list will identify the relevant provider and link to further provider information where appropriate.
A simple external link does not itself mean the linked provider sets technologies on our service. If you leave our service or actively open third-party content, that provider's own privacy and technology rules may apply.
Most browsers allow you to view, block or delete cookies. Mobile operating systems also provide controls for permissions, advertising identifiers, notifications and background activity. Blocking strictly necessary technology may prevent login, booking, payment-security or other requested functions from working correctly.
Private or incognito browsing normally permits temporary technologies during the session but removes some local information when the private session closes. It does not necessarily prevent all tracking or server-side processing. Browser settings alone do not replace our duty to provide a valid consent mechanism where consent is required.
Each live technology must have a duration proportionate to its purpose. Session technologies normally expire when the relevant session ends. Persistent technologies expire after the period shown in Cookie Settings unless you delete them earlier. A local technology's expiry is not necessarily the same as the retention period for related server-side information; those periods are explained in our Privacy Policy.
We may update this Policy when our service, providers, purposes or the law changes. We will publish the revised effective date. Continued use does not replace consent. If a change materially affects an optional purpose, we will request a new choice before activating the changed technology where required.
Questions or concerns about this Policy or our privacy controls can be sent to:
Email: office@classy-chauffeur.com
Post: Chauffeur International Ltd, 450 Bath Road, West Drayton, England, UB7 0EB
We will investigate concerns and try to resolve them promptly. You may also complain to the Information Commissioner's Office (ICO), although we encourage you to contact us first so that we have an opportunity to address the issue.
INTERNAL IMPLEMENTATION SCHEDULE — Complete this appendix before launch. Do not publish it to customers. After completion, populate the live Cookie Settings list, remove the pre-launch note and this appendix, and perform a clean-device test of every consent choice.
The earlier draft named the following technologies. Their inclusion below records a development claim only; it does not confirm that they exist or that their stated purpose or duration is correct.
| Identifier claimed | Provider | Claimed purpose | Claimed duration | Required launch action |
|---|---|---|---|---|
| PHPSESSID | First party | Session state | Session | Verify exact name and whether it is set. |
| csrf_token | First party | Form security | Session | Verify exact name and necessity. |
| lt_consent | First party | Privacy choices | Prior draft: 12 months | Verify name; configure normally up to six months. |
| _ga / _ga_<ID> | Google Analytics | Analytics | Prior draft: 2 years | Confirm GA4 ID, consent state and configured expiry. |
| _gid / _gat | Google Analytics | Analytics / request control | 24 hours / 1 minute | Confirm whether used; remove obsolete entries. |
| _gcl_au | Google Ads | Conversion measurement | Prior draft: 3 months | Confirm; block until marketing consent. |
| _fbp | Meta | Advertising measurement | Prior draft: 3 months | Confirm; block until marketing consent. |
| App SDKs / local storage | To be identified | Login, booking, security, analytics or crash reporting | To be identified | Inventory iOS and Android separately. |
The final audit must record:
Test on a clean browser and fresh app installation, then repeat after Accept all, Reject non-essential, category-level selection and withdrawal. Retain the audit record, consent configuration and policy version for compliance evidence.
Need Assistance?
Our team is available 24/7 for bookings and enquiries.