← RestaurantBS

Privacy Policy

Last updated: October 2026

RestaurantBS ("we", "us") provides restaurant management software. This policy explains what personal data we collect, why we collect it, and how we protect it.

01 — Who we are

RestaurantBS is a software-as-a-service platform for restaurants. For questions about this policy or your data, contact us at the email address shown on your account invoice or through the in-app support chat.

02 — Data we collect

  • Account data: name, email address and password of every user you invite to your workspace.
  • Business data: the information you enter about your restaurant — reservations, customers, menus, employees, schedules, tickets, inventory and financial records.
  • Usage data: pages visited and actions taken inside the app, used to keep the service secure and improve it.
  • Payment data: handled entirely by our payment provider (Stripe). We never see or store your full card details.

03 — How we use your data

  • To operate the service: manage your account, your restaurant's data and your subscription.
  • To provide the AI features of the platform, using the data you choose to send them.
  • To send service messages: invitations, password resets, invoices and important notices.
  • To detect fraud, abuse and security incidents.

We do not sell your personal data, and we do not use your restaurant's business data for advertising.

04 — Data sharing

We share data only with the providers needed to run the service: hosting and database (Lovable Cloud / Supabase), payments (Stripe), AI processing (Lovable AI Gateway) and email delivery. Each provider processes data only on our instructions. We may disclose data when required by law.

05 — Data retention and deletion

Your data is kept while your subscription is active. When you cancel, you can export your data on request; after that, business data is deleted within 90 days, except what we must retain by law (for example, invoices).

06 — Your rights

You can access, correct, export or delete your personal data, and object to or restrict its processing. Restaurant owners manage their employees' and customers' data as data controllers; we act as their processor. Contact us to exercise your rights.

07 — Security

Data is encrypted in transit and at rest, stored in isolated databases per restaurant, and protected by role-based access control. Access by our staff is limited and logged.

08 — Cookies

We use only the technical cookies and local storage strictly necessary to keep you signed in and remember your preferences (such as your language). We do not use advertising or third-party tracking cookies.