Last updated: September 9, 2026
When customers view a digital QR menu or place dining orders, we collect minimal operational information required to fulfill the table order (such as optional diner name, contact phone number for WhatsApp receipts, and table notes). We do NOT require customer registration or password creation.
For restaurant owners and staff, we collect authenticated account information (name, email address, restaurant location details, GSTIN) to manage multi-tenant dining operations.
Collected order data is transmitted solely to the respective restaurant's kitchen display system and billing counter. We do not sell or rent customer phone numbers or personal information to third parties.
All multi-tenant restaurant data is strictly partitioned using PostgreSQL Row Level Security (RLS). QR codes use opaque 256-bit cryptographically secure identifiers stored in hashed form to prevent enumeration and unauthorized access.
For questions regarding privacy or data handling, please contact support@qrmenu.app.