Legal
Privacy Policy
Last updated: 5 September 2026
DineoTech ("DineoTech", "we", "us" or "our") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and the choices you have. It is written with India's Digital Personal Data Protection Act (DPDP) in mind and applies to our restaurant-management platform, websites and related services.
1. Information we collect
Account and business information
- Restaurant or organization name and business details.
- Owner, manager and staff contact details (name, email, phone).
- Outlet address and location information.
- Login credentials and role assignments.
Operational data
- Menus, orders, tables, reservations, inventory and reporting data you enter.
- Guest details a restaurant chooses to capture (for example, for loyalty or feedback).
- How a guest paid (cash, card, UPI, wallet) recorded for reconciliation — we do not process card payments.
Technical information
- Device, browser and operating-system details.
- IP address and approximate location.
- Usage, diagnostics and error logs.
2. How we use it
- Provide, operate and maintain the Service.
- Process orders and support day-to-day restaurant operations.
- Provide customer support and respond to your requests.
- Improve, secure and develop new features.
- Detect, prevent and address fraud and abuse.
- Send service and, with your consent, marketing communications.
3. Legal bases
Depending on the applicable law, we process personal data on the basis of performance of a contract with you, your consent, our legitimate interests in operating and improving the Service, and compliance with legal obligations. Where we rely on consent, you may withdraw it at any time.
4. Sharing and processors
We do not sell your personal information. We share it only with trusted service providers (data processors) who help us run the Service — such as cloud hosting, communications and analytics providers — under appropriate confidentiality and data-protection commitments. We may also disclose information where required by law or to protect our rights and the safety of users.
5. Data retention
We retain personal data for as long as necessary to provide the Service and to meet legal, accounting or reporting requirements. When data is no longer needed, we delete or anonymize it. Restaurants control the retention of the guest data they collect through the Service.
6. Security
We use reasonable technical and organizational measures to protect personal data, including encryption in transit, access controls and monitoring. No method of transmission or storage is completely secure, but we work to protect your information and to notify affected parties and authorities of significant breaches as required by law.
7. Your rights
Subject to applicable law, you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request erasure of your personal data.
- Withdraw consent where processing is based on consent.
- Nominate a representative to exercise your rights (as provided under the DPDP Act).
- Raise a grievance with us and, if unresolved, with the relevant data-protection authority.
8. Cookies and analytics
The platform uses essential cookies and browser storage to keep you signed in and to run the Service. Our public website uses privacy-preserving, cookie-less analytics (self-hosted Umami): it counts page views and button clicks in aggregate, does not set cookies, does not fingerprint devices, honours the browser's Do Not Track setting, and never sends personal information to a third party. You can control cookies through your browser settings; disabling essential cookies may affect functionality.
9. Children
The Service is intended for businesses and is not directed to children. We do not knowingly collect personal data from children. If you believe a child has provided us personal data, please contact us so we can take appropriate action.
10. International transfers
We may process and store data in locations outside your country, including through our service providers. Where we transfer personal data across borders, we take steps to ensure it receives an appropriate level of protection consistent with applicable law.
11. Changes to this policy
We may update this Privacy Policy from time to time. If we make material changes, we will provide reasonable notice, for example by posting the updated policy and revising the "last updated" date.
12. Contact
For privacy questions or to exercise your rights, contact us at [email protected].