Privacy Policy
How we collect, use, and protect your data.
At MenuNova, we're committed to building the most trustworthy digital restaurant menu platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service, whether as a restaurant administrator, customer, or kitchen staff member.
Information We Collect
We collect information in several ways:
For Restaurant Administrators:
- Account Information: Name, email, restaurant name, phone number, and billing address
- Business Details: Restaurant location, cuisine type, hours of operation, and menu items
- Payment Information: Securely processed by Stripe (we never store full credit card details)
- Usage Data: Login times, features used, customizations made
For Customers Ordering:
- Order Information: Items ordered, special instructions, timestamps
- Device Information: Device type, browser, IP address (for fraud prevention)
- Location Data: Approximate location (if browser permissions granted)
For Kitchen Staff:
- Login Credentials: Work email and access credentials managed by restaurant admin
- Activity Logs: Order status updates and timestamp records
Automatic Data Collection:
- Cookies and similar technologies
- Server logs and analytics data
- Performance metrics and error tracking
How We Use Information
We use collected information for these legitimate purposes:
- Service Delivery: Operating the digital menu, processing orders, and managing accounts
- Billing & Payments: Charging subscription fees and processing refunds
- Customer Support: Responding to inquiries and troubleshooting issues
- Product Improvement: Analyzing usage patterns to enhance features
- Security & Fraud Prevention: Protecting against unauthorized access and abuse
- Legal Compliance: Meeting tax, regulatory, and legal obligations
- Marketing Communications: Sending product updates (you can opt-out anytime)
Data Isolation & Security
MenuNova operates a multi-tenant architecture where each restaurant's data is logically isolated. This means:
- Restaurant A cannot access Restaurant B's menu, orders, or customer data
- Customers see only the menu for the restaurant they're ordering from
- Kitchen staff can only view orders for their assigned restaurant
- Database queries are filtered by restaurant ID at every level
Encryption: Data in transit uses TLS 1.2+ encryption. Sensitive data like payment tokens are encrypted at rest.
Data Sharing
We do not sell your data. We share information only when necessary:
- Payment Processors: Stripe (PCI-DSS compliant) handles payment processing
- Service Providers: Cloud hosting (AWS), analytics, error tracking, email delivery
- Legal Requirements: Law enforcement, if required by court order or applicable law
- Business Transfers: In case of merger, acquisition, or bankruptcy (with notice)
All third-party vendors are contractually required to protect your data and use it only as needed.
Data Retention
- Active Accounts: Data is retained as long as your restaurant account is active
- After Deletion: We retain backup copies for 30 days, then permanently delete
- Order History: Historical order data can be downloaded before account deletion
- Legal Holds: We may retain data longer if required by law or legal disputes
Cookies & Tracking
MenuNova uses cookies for:
- Session Management: Keeping you logged in securely
- Preferences: Remembering your language and theme choices
- Analytics: Understanding how users interact with the platform (non-identifying)
- CSRF Protection: Preventing cross-site request forgery attacks
You can disable cookies in your browser settings, though some features may not work properly. We do not use third-party tracking pixels or behavioral analytics.
Children's Privacy
MenuNova is not directed toward children under 13. We do not knowingly collect personal information from children. If we learn that a child under 13 has provided us with personal information, we will delete such information immediately and terminate the child's account.
By using our service, you represent that you are at least 13 years old (or the age of digital consent in your jurisdiction).
Security Measures
We implement industry-standard security measures:
- HTTPS Only: All data transmitted via encrypted TLS connections
- firewalls & Intrusion Detection: Multiple layers of network protection
- Regular Security Audits: Third-party penetration testing annually
- Admin Access Controls: Role-based permissions and strict access logs
- Password Security: Passwords hashed using bcrypt with salting
- API Key Rotation: Regular regeneration of security tokens
- Data Backups: Daily encrypted backups stored separately
While no system is 100% secure, we continuously monitor and update our security practices to protect against emerging threats.
Your Rights
Depending on your location, you may have the right to:
- Access Your Data: Request a copy of personal information we hold about you
- Data Portability: Export your menu, orders, and settings in standard formats
- Correction: Update or correct inaccurate information
- Deletion: Request permanent removal of your account and data (right to be forgotten)
- Withdraw Consent: Opt out of marketing communications anytime
- Restrict Processing: Request limitation of how we use your data
To exercise these rights, contact us at privacy@menunova.me. We'll respond within 30 days.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, and other factors. When we make material changes, we'll notify you by:
- Updating the "Last Updated" date at the top of this policy
- Posting the updated policy on our website
- Sending an email notification to registered account holders (for material changes)
Continued use of MenuNova after such modifications constitutes your acceptance of the updated Privacy Policy.
Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
For general inquiries, you can also reach our CEO at ceo@menunova.me.
We take your privacy seriously. At MenuNova, we believe that great service and strong data protection go hand in hand. Thank you for trusting us with your restaurant and customer data.