Privacy Policy for OrderNest:
Last updated: November 24, 2025
OrderNest helps restaurants manage menus, tables, orders, bills, and staffing through our mobile and web applications (the “Service”). This Privacy Policy explains how we collect, use, share, and safeguard your personal information when you use the Service as a restaurant manager, staff member, chef, or customer.
1. Information We Collect
We collect the following types of data when you use our app:
- Account details: name, email, password (hashed), restaurant affiliation, and user role (manager, staff, chef, or customer).
- Restaurant configuration: menu items, table layouts, pricing, taxes, and custom settings created within the manager tools.
- Order and billing data: customer names, contact details provided at order time, order history, bill breakdowns, and payment preferences recorded in the Service.
- Operational records: staff invitations, onboarding status, shift notes, and audit logs that show who created, updated, or fulfilled orders.
- Device & usage data: app version, device type, operating system, crash logs, and in-app behavior collected through Expo/Firebase analytics to keep the Service reliable and secure.
- Support interactions: messages, attachments, or call notes when you contact us for help.
2. How We Use Information
We process personal information to:
- Authenticate users and enforce role-based access controls.
- Sync restaurant data across manager, staff, chef, and customer interfaces in real time.
- Generate bills, receipts, and operational reports for restaurant administrators.
- Send transactional notifications about orders, tables, or invites.
- Improve the Service via analytics, debugging, and product research.
- Protect against fraud, abuse, or security threats.
- Comply with legal obligations and enforce our agreements.
3. Legal Bases
Where required by law, we rely on the following legal bases: (i) performance of a contract (providing the Service), (ii) legitimate interests (security, analytics, product improvement), and (iii) consent (marketing communications, optional data you provide).
4. When we share Information
OrderNest does not sell personal information. We share data only with:
- Service providers: cloud hosting, database, and analytics vendors (e.g., Firebase, Expo) under strict data-processing agreements.
- Restaurant administrators: managers may view the activity of staff, chefs, and customers linked to their location.
- Law enforcement or regulators: when required by law or to protect rights, safety, or property.
- Business transfers: if we engage in a merger, acquisition, or asset sale, we will notify you before data is moved.
5. Data Retention
We retain account, order, and operational data for as long as your restaurant account remains active and for a reasonable period afterward to comply with legal, accounting, or audit requirements. You may request deletion of specific records, subject to applicable laws.
6. Security
We use industry-standard safeguards such as encrypted connections, role-based authorization, and audit logging. No method of transmission or storage is perfectly secure, so we encourage you to use strong passwords and keep devices up to date.
7. International Transfer
Because we rely on cloud infrastructure, your information may be processed in countries other than where you reside. We implement appropriate protections, such as Standard Contractual Clauses, when transferring personal data internationally.
8. Your Rights & Choices
- Access, correct, or update your profile within the app or by contacting us.
- Request data export or deletion, subject to legal limitations.
- Opt out of marketing emails by using unsubscribe links.
- Disable non-essential analytics via in-app settings (where available) or device controls
9. Children's Privacy
OrderNest is not directed to children under 16, and we do not knowingly collect personal data from them. If we become aware of such data, we will delete it promptly.
10. Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes to our practices or legal requirements. We will notify you via the app or email and revise the “Last updated” date above.
11. Contact Us
If you have any questions or concerns regarding this Privacy Policy, please contact us at:
Email: contact@brilworks.com