your data, handled with care
Privacy policy
Last updated 5 October 2026
What we collect
- Restaurant accounts: owner and staff names, email, phone number, business name and address, GSTIN and tax settings. Passwords and staff PINs are stored only in hashed form.
- Guests of a restaurant: what they order and, only if they give it, their name and phone number (for takeaway, feedback, rewards or offers). Guests can use the QR menu without signing up.
- Payments to TabFlat: processed by Razorpay. We receive the payment status and reference, never your full card number or UPI PIN.
- Technical data: a login cookie to keep you signed in, device push-notification tokens if you or a guest allow notifications, and basic server logs (such as IP address and time) for security.
We do not use advertising or third-party tracking cookies on the app.
Why we use it
- To run the service: send orders to the kitchen, produce bills and invoices, show reports.
- To create and verify accounts and take subscription payments (Razorpay sends the payment receipt).
- To show service notices in the app, such as billing and security messages.
- To send offers to guests only when the guest has opted in; they can turn it off at any time.
- To keep TabFlat secure and to meet legal and tax obligations.
Restaurants and their guests
Each restaurant decides what guest details it collects and how it uses them, and is responsible for that use. TabFlat processes guest data on the restaurant's behalf, keeps every restaurant's data separate, and never sells it or uses it to market to guests ourselves.
Who we share it with
- Razorpay, to process subscription payments.
- Our hosting provider, which stores the data on our behalf.
- Browser push services (such as Google or Apple), only to deliver notifications people have allowed.
- Authorities, when the law requires it.
We do not sell personal data.
How long we keep it
Account and order data is kept while the account is active and for as long as tax and accounting law requires afterwards. When an account is deleted, its personal data is removed except what we must keep by law.
Security
Data is encrypted in transit (HTTPS), passwords are hashed, access is limited by role, and every query is restricted to the signed-in restaurant's own data. Uploaded photos are cleaned of location and camera details.
Your rights
You can ask to see, correct, export or delete your personal data, withdraw consent for optional uses such as offers, and complain about how it is handled. Restaurant owners can export all their data from Settings at any time. Guests should first contact the restaurant they ordered from; we will help the restaurant act on the request.
Grievance officer
For privacy questions or complaints, contact us at support.tabflat@gmail.com, or see Contact us. We aim to reply within 7 days.
Changes
If we change this policy we will update the date above, and tell account holders of significant changes in the app.