Privacy Policy
This policy explains what information RestaurantCue handles, why we use it, when it is shared, and the choices available to customers and users.
Scope of this policy
This Privacy Policy explains how RestaurantCue Inc collects, uses, discloses, and retains information when customers and authorized users use RestaurantCue, visit our website, or communicate with us. It applies to information RestaurantCue processes as part of providing the service.
Restaurant customers may also provide information about their own employees or operations. The restaurant customer is responsible for determining what information it places in its workspace and for providing any notices or obtaining any permissions required for its own collection and use of that information.
Information we collect
Account and contact information. We may collect names, email addresses, authentication information, company and location details, roles, and other information used to create and administer accounts.
Restaurant and workspace content. Depending on the features used, RestaurantCue may process recipes, procedures, policies, guides, training and checklist activity, employee questions and feedback, documents, source references, manager-review records, and other information customers choose to place in their Restaurant Brain or workspace.
Private pre-signup previews. If a visitor chooses to try RestaurantCue with their own restaurant details before creating an account, we process the details they provide and the resulting working draft for that short preview. The preview is not visible to another restaurant.
Billing information. We maintain customer, subscription, billing-status, and transaction-reference information needed to administer subscriptions. Payment-card information is collected and processed through Stripe rather than stored in a RestaurantCue card vault.
Technical and service information. We may process authentication and session information, device or browser information, service-email delivery status, logs, error reports, and diagnostics needed to operate, secure, and troubleshoot the service.
Information from connected or selected services. When a customer chooses a supported document or integration workflow, RestaurantCue may receive the selected content and related source metadata needed to perform that workflow. For Google Drive imports, you choose the file through Google's picker. RestaurantCue reads the selected file to prepare it for review; it does not edit or delete your Drive files.
Where information comes from
We receive information directly from customers and authorized users, from use of the service, and from service providers or integrations used at a customer's direction. We do not treat access to one selected document or integration workflow as permission to collect unrelated information.
How we use information
We use information to provide and administer RestaurantCue; authenticate users and enforce company, location, and role permissions; maintain the Restaurant Brain; deliver approved knowledge and assigned work; perform requested AI and document functions; process subscriptions; send service communications; provide support; detect misuse and security problems; investigate errors; maintain records; and improve the reliability and usability of the service.
RestaurantCue's approval model remains in effect when information is processed by AI or document features. Processing source material or generating a draft does not automatically make that material approved employee guidance.
AI processing
When an AI capability is used, RestaurantCue may send task-relevant Restaurant Brain evidence, user instructions, and related context to the configured model provider, including OpenAI in the current implementation. This can include the restaurant details a visitor supplies in a private pre-signup preview. We aim to limit provider requests to information relevant to the requested function.
AI output remains subject to RestaurantCue's product validation and approval boundaries. Provider retention and model-training practices are governed by the applicable provider arrangement and configuration. RestaurantCue does not promise a provider-level retention or training practice beyond what has been established for the active service configuration.
Documents and OCR
RestaurantCue may process documents and related source metadata needed to keep Restaurant Brain knowledge traceable to its source.
When optical character recognition is required, selected document bytes and file type may be sent to Google Cloud Document AI for text extraction. Supported documents may also be parsed without third-party OCR when the document workflow allows it.
How we disclose information
We disclose information to service providers when necessary for them to perform services for RestaurantCue, to customer-authorized users according to their permissions, and when a customer directs or authorizes a particular integration or workflow.
Current service-provider categories include hosted database and authentication services, payment processing, AI model services, document OCR, email delivery, error monitoring, and infrastructure hosting. Current implementation paths include Supabase, Stripe, OpenAI, Google Cloud Document AI, Resend, Sentry, and Railway as applicable to the deployed service.
We may also disclose information when reasonably necessary to comply with law or legal process, protect rights or safety, investigate fraud or security incidents, or complete a merger, financing, acquisition, reorganization, or sale of all or part of the business, subject to applicable legal requirements.
RestaurantCue does not sell customer Restaurant Brain content as a data product or use private restaurant operational knowledge as public marketing content.
Cookies and browser storage
RestaurantCue uses cookies, session mechanisms, and browser storage that are necessary for authentication, security, and product preferences such as theme selection. RestaurantCue does not currently use this policy to claim consent for advertising or cross-site behavioral tracking that the product does not perform.
If our tracking practices materially change, we will update this policy and provide consent or choice mechanisms when required by applicable law.
Retention and deletion
We retain information for as long as reasonably necessary to provide and secure the service and to meet legitimate operational, billing, audit, dispute, legal, and recovery needs. Retention periods vary by the type of record and its purpose.
Private pre-signup preview details expire within 24 hours unless the visitor creates a restaurant. When a preview becomes a restaurant account, RestaurantCue carries only the resulting manager-review draft into that restaurant and clears the short-preview details.
Customers may request account or data deletion by contacting hello@restaurantcue.com. Some records may be retained when required or permitted for legal, billing, security, fraud-prevention, dispute, backup, or recovery purposes. Information processed by a service provider may also remain subject to that provider's applicable lifecycle.
Security
RestaurantCue uses administrative, technical, and organizational safeguards intended to protect information against unauthorized access, loss, misuse, or alteration. No online service can guarantee absolute security.
Access to RestaurantCue is designed around authenticated accounts, role and location scope, server-side privileged operations, and database authorization controls. More information about current product safeguards and provider boundaries is available in the Trust Center.
Privacy choices and rights
Authorized users can review or update certain account and workspace information through the product according to their role. You may contact us to request access to, correction of, or deletion of personal information associated with you, or to ask questions about how it is used.
Depending on where you live and the laws that apply to RestaurantCue, you may have additional privacy rights. We may need to verify a request before acting on it and may deny or limit a request where permitted by law. RestaurantCue will not discriminate against a person for exercising a privacy right protected by applicable law.
Requests may be sent to hello@restaurantcue.com. An authorized agent may submit a request where applicable law permits it, subject to reasonable verification of the agent's authority and the request.
Children
RestaurantCue is a business service for restaurant operations and is not directed to children under 13. We do not knowingly solicit personal information directly from children under 13 through the public service. If you believe a child has provided personal information directly to RestaurantCue inappropriately, contact us so we can review the matter.
Changes to this policy
We may update this Privacy Policy as RestaurantCue's features, providers, or legal obligations change. We will post the updated policy with a new effective date and provide additional notice of material changes when appropriate.
Contact us
Privacy questions and requests can be sent to hello@restaurantcue.com or mailed to RestaurantCue Inc, 1491 Aster Ave St 8, Akron, OH 44301.
