Privacy Policy for Refinerack

Effective Date: September 9, 2026

1. Introduction

Welcome to Refinerack ("we," "our," or "us"). We provide a restaurant Software as a Service (SaaS) platform that facilitates menu digitization, table management, AI-powered service, and order tracking.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application, AI waiter services, and related platforms. This policy complies with applicable data protection laws, including the Digital Personal Data Protection (DPDP) Act, 2023 of India, and incorporates global privacy principles.

2. Information We Collect

We collect information depending on your interaction with the platform:

A. Restaurant Owners and Staff

B. Dine-In Customers

Note: Customers are primarily authenticated anonymously via QR code scans to reduce friction, linking session data to a temporary profile.

C. Automatically Collected Data

3. How We Use Your Information

We process your personal data for the following purposes:

4. How We Share Your Information

We do not sell your personal data. We share data only with:

5. Data Retention

6. Your Rights

Under the DPDP Act (India) and other applicable laws, you have the right to:

7. Security

We implement robust security measures, including Firebase security rules, anonymous authentication for customers, role-based access control (RBAC) for staff, and transaction-locked database writes, to protect your data from unauthorized access.

8. Contact & Grievance Officer

If you have questions or wish to exercise your rights, please contact our Grievance Officer: