Privacy Policy
Last updated: January 4, 2026
1. Information We Collect
Information You Provide
- Account Information: Email address, password (encrypted), and restaurant details you choose to share (name, location, cuisine type)
- Restaurant Data: Your menu items and prices if you upload them
- Competitor Selections: Which restaurants you choose to track
- Communications: Messages you send us through contact forms or support
Information We Collect Automatically
- Usage Data: Pages visited, features used, time spent in the app
- Device Information: Browser type, operating system, screen size
- Log Data: IP address, access times, referring URLs
Information We Collect About Competitors
- Public Business Information: Restaurant names, addresses, hours, cuisine types from Google Places API
- Public Menu Data: Menu items and prices from publicly accessible websites
- Public Reviews: Reviews visible on Google, Yelp, and similar platforms
Important: We only collect publicly available information about competitor restaurants. We do not access private systems, POS data, or any information requiring authentication.
2. How We Use Your Information
- Provide the Service: Track competitors, analyze pricing, generate insights
- Improve MenuSpy: Understand usage patterns to build better features
- Communicate: Send account updates, feature announcements, and support responses
- Security: Detect and prevent fraud or abuse
3. Information Sharing
We Do NOT
- Sell your personal data to third parties
- Share your competitor selections with other users
- Share your menu or pricing data with competitors
- Use your data for advertising purposes
We May Share With
- Service Providers: Companies that help us operate (Firebase for hosting, Stripe for payments, email providers). These providers are contractually required to protect your data.
- Legal Requirements: If required by law, court order, or to protect rights and safety
- Business Transfers: In the event of a merger or acquisition, with appropriate protections
4. Data Security
- Encryption in Transit: All data transmitted over TLS/SSL (HTTPS)
- Encryption at Rest: Data stored encrypted in Google Firebase
- Password Security: Passwords are hashed, never stored in plain text
- Payment Security: Payment processing handled by Stripe (PCI-DSS compliant). We never see or store your full card number.
- Access Controls: Limited employee access to production data
5. Data Retention
- Active Accounts: Data retained while your account is active
- Deleted Accounts: Personal data deleted within 30 days of account deletion request
- Competitor Data: Publicly sourced competitor data may be retained for service improvement
- Legal Requirements: Some data may be retained longer if required by law
6. Your Rights
Depending on your location, you may have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your account and data
- Export: Request your data in a portable format
- Opt-out: Unsubscribe from marketing emails
To exercise these rights, contact us at the email below.
7. Cookies and Tracking
- Essential Cookies: Required for login and basic functionality
- Analytics: We may use analytics tools to understand usage (you can opt out)
- No Advertising Cookies: We do not use third-party advertising trackers
8. Third-Party Services
MenuSpy uses the following third-party services:
- Google Firebase: Authentication, database, hosting (Privacy Policy)
- Google Cloud / Gemini AI: Menu extraction and analysis (Privacy Notice)
- Google Places API: Restaurant discovery (Privacy Policy)
- Stripe: Payment processing (Privacy Policy)
- Vercel: Frontend hosting (Privacy Policy)
9. Children's Privacy
MenuSpy is not intended for use by children under 16. We do not knowingly collect data from children.
10. International Data Transfers
Your data may be processed in the United States where our service providers are located. We use providers that maintain appropriate safeguards for international data transfers.
11. Changes to This Policy
We may update this policy periodically. Significant changes will be communicated via email or in-app notification. Continued use after changes constitutes acceptance.
12. Contact Us
Questions about this privacy policy or your data?
- Email: Contact us through menuspy.ai
- Website: menuspy.ai