Privacy Policy
Effective 13 August 2026
RasoiKhata is a restaurant operations product. The restaurant is normally the controller of information entered by its staff; RasoiKhata processes that information to provide the service.
Information processed
We process account identifiers, staff roles, restaurant configuration, menu and table data, orders, bills, payment-method records, reports, optional customer contact and delivery information, device state, printer configuration, synchronization metadata, backups and sanitized diagnostic information.
Purposes
Information is used to authenticate users, isolate restaurant workspaces, operate orders and printing, synchronize authorized devices, calculate reports, maintain backups, prevent abuse, provide subscriptions and support, and meet documented legal obligations.
Service providers
Configured Firebase services provide authentication, databases, functions, hosting and storage. Payment services process subscription or restaurant-payment information under their own terms. RasoiKhata does not sell personal information or use it for cross-context behavioural advertising.
Local and offline data
Authorized devices may cache application assets, restaurant-scoped preferences and pending operational changes for speed and short offline periods. Restaurants should use protected device profiles and remove access before a device is transferred.
Sharing and international processing
Information is shared only with authorized restaurant users, processors required to provide the service, or authorities when legally required. Cloud processing location depends on the configured Firebase and payment-service regions.
Security
Controls include authenticated access, role checks, restaurant scoping, encrypted transport, audit records, versioned writes and backup verification. Restaurants remain responsible for staff permissions, devices, networks and lawful data entry.
Your choices and requests
Restaurant administrators can manage staff, correct operational data and export records. Account closure or data-access requests may be sent to [email protected]. Requests involving a restaurant customer should first be directed to that restaurant.
Children and sensitive information
The service is intended for business users and is not directed to children. Do not store payment-card credentials, government identifiers, medical information or passwords in free-text fields.
Changes
Material changes will be reflected by a new effective date and, where appropriate, an in-product notice.