Legal
Privacy Policy
Last updated: March 18, 2026
1. Introduction
MenuBuildr ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our digital menu management platform ("the Service").
By using the Service, you consent to the data practices described in this policy. If you do not agree, please discontinue use of the Service.
2. Information We Collect
2.1 Information You Provide
- Account information: name, email address, and password
- Restaurant details: restaurant name, location, and branding preferences
- Menu content: menu items, descriptions, prices, allergen information, and translations
- Billing information: payment method details processed through our third-party payment provider
- Communications: messages you send to us for support or feedback
2.2 Information Collected Automatically
- Device and browser information: type, operating system, and browser version
- Usage data: pages visited, features used, and interaction patterns
- Log data: IP address, access times, and referring URLs
- Cookies and similar technologies: session cookies for authentication and preferences
2.3 Information from Third Parties
If you sign in using a third-party service (e.g., Google), we may receive your name, email address, and profile information as permitted by your third-party account settings.
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process transactions and manage your subscription
- Generate and host your digital menus
- Send service-related communications (account verification, billing, updates)
- Respond to your support requests and inquiries
- Analyze usage patterns to improve user experience
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
4. Data Sharing and Disclosure
We do not sell your personal information. We may share your data with:
- Service providers: hosting, payment processing, analytics, and email delivery partners who assist in operating the Service
- Legal compliance: when required by law, regulation, legal process, or governmental request
- Business transfers: in connection with a merger, acquisition, or sale of assets, with notice to affected users
- With your consent: when you explicitly authorize sharing with a third party
Your published digital menus are publicly accessible by design. Menu content (item names, descriptions, prices, allergens) is visible to anyone with the menu link or QR code.
5. Data Retention
We retain your account data for as long as your account is active or as needed to provide the Service. If you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is required for legal, accounting, or legitimate business purposes.
Menu content and generated menus are deleted when you remove them or close your account.
6. Data Security
We implement industry-standard security measures to protect your data, including:
- Encryption of data in transit (TLS/SSL) and at rest
- Secure password hashing using bcrypt
- Regular security assessments and monitoring
- Access controls limiting employee access to personal data
No method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Cookies
We use essential cookies for authentication and session management. These are necessary for the Service to function and cannot be disabled.
We may use analytics cookies to understand how the Service is used. You can control cookie preferences through your browser settings.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict processing of your data
- Request data portability (receive your data in a structured format)
- Withdraw consent where processing is based on consent
To exercise these rights, contact us at [email protected]. We will respond within 30 days.
9. International Data Transfers
Your data may be processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including standard contractual clauses where applicable.
10. Children's Privacy
The Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of material changes via email and update the "Last updated" date. Continued use of the Service after changes constitutes acceptance of the revised policy.
12. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, contact us at [email protected].