Privacy Policy

Last updated: 2026-05-15 Effective date: 2026-05-15

Template — review with counsel before launch. This text reflects taamga’s current data flows; it does not constitute legal advice. Adjust the controller-of-record details, member-state references, and supervisory-authority pointer before publication.

1. Who we are

taamga is a software platform that helps restaurants run QR-menu ordering, pay-at-table, reservations, and loyalty under one customer identity.

When you (a restaurant operator) sign up for the platform, taamga is the data controller for your account and billing data (sections 3.1 and 3.2 below).

When a guest orders food, pays, or books a table at a restaurant that uses taamga, the restaurant is the data controller of the guest’s personal data. taamga acts as the data processor on the restaurant’s behalf. The processor relationship is governed by our Data Processing Agreement, which forms part of every operator’s contract.

Contact: privacy@taamga.com. We are happy to receive requests in English, German, French, Spanish, or Dutch.

2. Scope

This policy covers personal data we process when you:

3. What we collect, why, and for how long

3.1 Operator data

We collect this when you sign up for a taamga subscription.

Data Why Retention Legal basis
Email, name Authenticate you, send transactional emails (receipts, payment failures, churn confirmations) While your account exists + 30 days Contract (Art 6(1)(b) GDPR)
Tenant + venue metadata (name, timezone, address) Run the platform — render your menu, send guests to the right place While your account exists + 30 days Contract
user_venue_role assignments Authorise which operator can do what While your account exists Contract

3.2 Billing data

Data Why Retention Legal basis
Stripe customer ID, subscription state, plan, period bounds Charge you monthly / annually, gate features by plan While your account exists + 10 years (statutory bookkeeping) Contract + legal obligation
Invoice records Statutory bookkeeping 10 years Legal obligation (Art 6(1)(c))

We do not store card numbers. Card details are entered directly into Stripe’s iframe (the Stripe Elements PCI SAQ-A flow) and never reach our servers.

3.3 Guest data — processed for the restaurant

When a guest interacts with a taamga-powered restaurant we process the following data on behalf of that restaurant.

Data Why Retention Legal basis (controller’s basis)
Phone, name, email (when entered for receipt or booking) Send receipts / booking confirmations; build a returning-guest record Up to 3 years after last interaction, or as the restaurant configures Contract (with guest) + legitimate interest
Session, order, payment metadata Run the order and payment, send the funds to the restaurant 7 years (tax-record obligation in most EU jurisdictions) Contract + legal obligation
Booking, party details Manage the table reservation 3 years after the booking date Contract + legitimate interest
Loyalty points + ledger Track points balance for returning guests While the guest’s customer profile is active Contract
Allergen notes (where provided) Inform kitchen staff to handle the order safely Until the guest deletes them Vital interest (Art 6(1)(d))
Device tokens (staff app push) Notify staff of new orders Until the device is unregistered or stale (>180 days) Contract (with the operator)

3.4 Analytics

We use PostHog (EU-hosted) for product analytics to understand which features are used. Analytics is off by default — guest browsers only emit events after the user opts in via the cookie banner.

We never sell, rent, or trade your data.

4. Cookies and local storage

taamga stores the following in your browser:

Item Type Purpose Lifetime
taamga.theme localStorage + cookie Remember light/dark theme preference Indefinite (clear via browser tools)
Supabase auth session token localStorage Keep operator logged in Until logout or 60 days
taamga.consent localStorage Remember your cookie consent decision Indefinite (clear via banner)
PostHog distinct_id cookie Tie product-analytics events together (only after consent) 365 days

You can revoke consent at any time using the “Manage cookies” link in the footer.

5. Who else sees your data

We use the following processors. Each is bound by a written agreement equivalent to Article 28 GDPR.

Processor Purpose Hosting region
Supabase Postgres database + authentication EU (Frankfurt)
Stripe Payments (guest checkout) + Billing (operator subscription) US (with SCCs) — strictly necessary for payment processing
Resend Transactional email EU
Twilio SMS reminders (operator opt-in) US (with SCCs)
PostHog Product analytics (consent-gated) EU
Sentry Error monitoring EU
Contabo VPS hosting (Go API + Angular SSR + static SPAs) EU (Germany)
FCM / APNs Push notifications to operator devices US (with SCCs)

Where a processor is outside the EU/EEA we rely on the Commission’s Standard Contractual Clauses (2021/914).

6. Your rights

Under GDPR you have the right to:

For guest data held on behalf of a restaurant, address access / erasure requests to that restaurant. They can fulfil the request using the GDPR export endpoint built into the operator dashboard, or by contacting us at privacy@taamga.com to request it on their behalf.

7. Security

8. Children

taamga is not directed at children under 16. If you believe a child has provided personal data, contact privacy@taamga.com and we will delete it.

9. Changes

We notify operators of material changes by email at least 14 days in advance. The latest version is always at taamga.com/legal/privacy.

10. Contact