Privacy Policy
Last updated: March 20, 2026
1. Overview
OpenPOS Inc. ("we", "us", "our") respects your privacy. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use our platform, website, and related services (collectively, "the Service").
2. Information We Collect
Account Information
When you create an account, we collect your name, email address, and password. If you connect a Stripe account, Stripe provides us with limited account information as described in their privacy policy.
Restaurant Information
We collect information you provide about your restaurant, including business name, address, phone number, hours, menu items, pricing, and images. This information is used to operate your online presence.
Order & Transaction Data
We process and store order data including customer names, contact information, order details, and payment information (processed securely through Stripe — we do not store full card numbers).
Usage Data
We collect analytics on how you use the Service, including page views, feature usage, and device information, to improve our platform.
3. How We Use Your Information
- Operate the Service — generate your website, process orders, manage your restaurant
- AI Features — power AI-generated content, AI Manager insights, and automated operations
- Payments — process transactions and calculate revenue share
- Communications — send order notifications, account updates, and operational alerts
- Analytics — provide you with sales, performance, and business insights
- Improve the Service — analyze usage patterns and fix issues
4. Open API & Data Sharing
By default, your public restaurant information (name, menu, hours, location) is accessible via our open API. This enables AI agents, search engines, and third-party services to discover your restaurant and facilitate ordering.
You can opt out of public API access at any time from your dashboard settings. Private data (orders, customer details, financial data) is never shared publicly.
5. AI & Machine Learning
We use AI to generate website content, menu descriptions, and operational insights. Your restaurant data may be processed by third-party AI providers (such as Anthropic or OpenAI) to power these features. We do not use your data to train third-party AI models. AI-generated content should be reviewed for accuracy before publishing.
6. Third-Party Services
We use the following third-party services to operate the platform:
- Stripe — payment processing
- Twilio — SMS notifications
- Resend — email delivery
- Google Cloud — hosting and infrastructure
- Anthropic / OpenAI — AI content generation
Each service processes data according to their own privacy policies. We only share the minimum data necessary for each service to function.
7. Data Security
We implement industry-standard security measures including encrypted connections (TLS), secure password hashing, and access controls. Payment data is handled entirely by Stripe and never touches our servers in raw form.
8. Data Retention
We retain your data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or financial compliance (e.g., transaction records may be retained for up to 7 years).
9. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Export your data in a portable format
- Opt out of public API data sharing
- Opt out of marketing communications
To exercise these rights, contact us at privacy@openpos.ai.
10. Cookies
We use essential cookies for authentication and session management. We do not use third-party tracking cookies or sell data to advertisers.
11. Children's Privacy
The Service is not intended for individuals under 18. We do not knowingly collect personal information from children.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service. The "Last updated" date at the top reflects the most recent revision.
13. Contact
Questions about this Privacy Policy? Contact us at privacy@openpos.ai.