Privacy Policy
Effective 7 October 2026
In short: we collect only what's needed to run your restaurant's account, store it in India, don't sell it or use it for advertising, and delete it 90 days after you leave. The website itself uses no tracking or advertising cookies.
This policy explains how TableOrder ("we", "us") handles personal data when restaurants and their staff use TableOrder (the "Service") and when anyone visits this website. We follow British Columbia's Personal Information Protection Act and Canada's Personal Information Protection and Electronic Documents Act and, because our restaurants and their customers are in India, India's Digital Personal Data Protection Act, 2023.
1. Our role
- For the restaurant's own account (owner contact details, billing) and for staff sign-in, we decide how the data is used and are responsible for it.
- For data a restaurant records about its customers (for example a name or phone number on an order), the restaurant decides what to collect and why, and we process it on the restaurant's behalf and only on its instructions. Customers should contact the restaurant first about that data.
2. What we collect
- Restaurant account: restaurant name, address, GSTIN and other bill settings, the owner's name and phone number, and payment records for the subscription.
- Staff: names, roles, and, if the restaurant enters them, phone numbers, monthly salary and joining date; PINs (stored only as a one-way hash, never in readable form), discount limits, and clock-in/clock-out times if attendance is used.
- Orders and bills: items, prices, taxes, discounts with reasons, payments and their mode, which staff member took or changed an order, and any customer name, phone number or notes the restaurant enters.
- Devices and logs: a code and name for each device linked to the restaurant, when it was last used, a code for each device used offline, and technical logs (such as IP address, browser type and error messages) that our servers keep for security and troubleshooting.
- On your device: the app stores your sign-in, the restaurant code, settings, a copy of the menu and orders taken offline in the browser's or app's local storage so it can work without the internet. Clearing the browser's site data or signing out removes the sign-in.
- Website visitors: nothing beyond standard server logs. If you email us, we keep your message and email address to reply.
3. How we use it
- To provide the Service: sign staff in, take orders, show them in the kitchen, print and send bills, record payments and produce reports.
- To set up and support your account, and to bill you for your subscription.
- To keep the Service secure: preventing misuse, locking accounts after repeated wrong PINs, and investigating problems.
- To meet legal obligations, such as keeping invoices for tax purposes.
We don't sell personal data, use it for advertising, or use restaurants' order data for any purpose other than running the Service for that restaurant.
4. Where it's stored and who we share it with
- Data is stored on Microsoft Azure servers in India (Central India region), which host the Service for us.
- We share personal data only with service providers that help us run the Service and are bound to protect it, when the law requires it (for example a valid order from a government authority or court), or to protect the rights and safety of our users or the public.
- The app downloads some fonts (for example for the ₹ sign) from Google Fonts, so Google receives the device's IP address when they load. No other data is sent to Google.
- When a restaurant sends a payment request on WhatsApp, the message and the customer's phone number go through WhatsApp from the staff member's device. The link in it opens a page showing that bill; anyone with the link can see it, so it uses a long random code that can't be guessed.
- Printers and payment terminals you connect to belong to you; data sent to them (such as a printed bill) is under your control.
5. How long we keep it
- While a restaurant is subscribed, we keep its data so it can see past orders, bills and reports.
- When the subscription ends, we keep the data for 90 days so the restaurant can come back or ask for an export, then delete it, except records we must keep by law (such as our own invoices).
- Server logs are kept for up to 90 days.
6. Security
Data travels over encrypted (HTTPS) connections. Each restaurant can only see its own data, staff access depends on their role, PINs are stored hashed, and repeated wrong PINs lock the account for a few minutes. No system is perfectly secure; if a breach affects your personal data, we'll inform you and the privacy regulators the law requires us to tell, such as the Privacy Commissioner of Canada and the Data Protection Board of India.
7. Your rights
You can ask us to tell you what personal data we hold about you, correct or update it, or erase it (where we don't need to keep it by law), and you can withdraw consent where we rely on it. You can also nominate someone to exercise these rights for you if you're unable to. Staff of a restaurant can ask their employer, or contact us. We'll respond within 30 days.
8. Deleting your account and data
- Staff: your manager or the restaurant owner can switch off your account at any time (Manage → Staff), which stops it signing in straight away. To have your personal details (such as your phone number, salary and PIN) deleted, ask the restaurant or email us at contact us from your restaurant's registered contact, naming the restaurant and the staff member.
- Restaurant owners: email us from the restaurant's registered contact to close the restaurant's account and delete its data. We'll confirm, offer an export first, and delete the data within 30 days.
- Your name may stay on past orders and bills, because the restaurant must keep its sales and tax records; we delete everything else.
9. Children
The Service is for businesses and is not meant for children. We don't knowingly collect personal data from anyone under 18.
10. Changes
We may update this policy. If a change materially affects how we use your data, we'll tell restaurant owners at least 30 days before it takes effect. The date at the top shows the latest version.
11. Contact and grievances
For questions, requests or complaints about personal data, write to our grievance contact: contact us. We'll acknowledge your message within 7 days and resolve it within 30 days. If you're not satisfied with our response, you can complain to the Office of the Information and Privacy Commissioner for British Columbia, the Office of the Privacy Commissioner of Canada or, in India, the Data Protection Board of India.