Skip to content

Privacy Policy

Original document

LAST VERIFIED 2026-10-01

Attention points

7 TO CHECK

Pointers to disclosures this policy may not clearly make, checked against major privacy laws. This is a heuristic — not legal advice, and not a finding that anything is missing or unlawful.

GDPR / UK-GDPR

8/13 ADDRESSED
  • Who controls your data (identity & contact of the data controller)GDPR Art. 13(1)(a)
  • Data Protection Officer contactGDPR Art. 13(1)(b)
  • Whether providing your data is required, and what happens if you don'tGDPR Art. 13(2)(e)
  • Automated decision-making or profilingGDPR Arts. 13(2)(f), 22
  • Where your data was obtained, if not collected from you (source)GDPR Art. 14(2)(f)

CCPA / CPRA

8/10 ADDRESSED
  • The categories of sources the data comes fromCCPA §1798.110(c)
  • A 'Limit the Use of My Sensitive Personal Information' option (CPRA)CPRA §1798.135(a)

Current text

At Barnes & Noble we value all of our customers and understand that you care about the privacy and security of your personal information. Our Privacy Policy applies to Barnes & Noble's collection, storage, use, and disclosure of personal information that may be collected by us when you interact with Barnes & Noble, such as when you visit our stores or websites, or use our devices or applications, participate in our Member programs, or deal with customer service. This…

Show full text