RestoPlus — restaurant operating system
PlatformAppsConsolePricing
Get started
Privacy Policy

Your data, handled with care.

This policy explains what information the RestoPlus POS and Waiter apps and the RestoPlus platform collect, how we use it, who we share it with, and the choices you have.

Effective 23 June 2026RestoPlus POS · RestoPlus Waiter

On this page

  1. Overview
  2. Information we collect
  3. How we use information
  4. How we share information
  5. Data retention
  6. Security
  7. Your choices & rights
  8. Children
  9. Where data is processed
  10. Changes to this policy
  11. Contact us

01Overview

RestoPlus, a product of CodFather Logic LLP (“RestoPlus”, “we”, “us”), is a restaurant operating system: the RestoPlus POS and RestoPlus Waiter mobile apps, the QR ordering menu, and the web console used by restaurant operators. This Privacy Policy explains what information we handle, why, and the choices you have.

Most data in RestoPlus is created and controlled by the restaurant that operates it. When a restaurant uses RestoPlus to run its floor, kitchen and billing, that restaurant is the controller of its operational records and RestoPlus acts as its service provider (processor). For our own account, billing and product-improvement purposes, RestoPlus is the controller.

02Information we collect

Account & staff information

When a restaurant signs up or a staff member logs in, we process identifiers such as name, email address, role, restaurant/company assignment, and the staff PIN or credentials used to sign in to the POS and Waiter apps. Authentication is handled by our self-hosted Supabase backend; we do not see your raw password.

Restaurant operational data

The apps record the data needed to run service: tables and floor plans, menu items and modifiers, orders and kitchen tickets (KOT), bills, payments, discounts, voids, shifts and day-close figures, inventory and reports. This data belongs to the operating restaurant.

Customer & QR ordering data

When a guest places an order through the QR menu, we may process the name, table/chair, and order details they provide so the kitchen and billing can fulfil the order. We do not require guests to create an account, and we do not collect more than is needed to complete the order.

Payment information

Payments are taken in the restaurant. RestoPlus records the method and amount of a transaction (for example cash, card, or a delivery-provider settlement) so bills reconcile — it does not collect or store full card numbers or process card payments itself.

Device & technical data

To deliver and protect the apps we process technical data such as device and app version, a push-notification token, IP address, and diagnostic logs. Crash and error reports are captured through Sentry, and push notifications are delivered through OneSignal (see How we share information).

03How we use information

  • To provide the apps and platform — run service, route kitchen tickets, settle bills, and sync data across devices.
  • To authenticate users and apply role and company permissions so each user only sees their own restaurant’s data.
  • To send operational notifications (for example a new QR order arriving) via push.
  • To keep the service reliable and secure — diagnose crashes, prevent abuse, and back up data.
  • To provide support and respond to your requests.
  • To comply with legal, tax and accounting obligations.

We do not sell your personal information, and we do not use restaurant operational data to build advertising profiles.

04How we share information

We share information only with service providers that help us run RestoPlus, and only as needed:

  • Hosting — our backend and database run on self-hosted infrastructure (Amazon Web Services, Mumbai region).
  • Supabase — authentication, database and realtime sync (self-hosted by RestoPlus).
  • OneSignal — delivery of push notifications to the apps.
  • Sentry — crash and error diagnostics.
  • Delivery & payment providers — where a restaurant integrates a provider (for example a delivery aggregator), order and settlement details are exchanged to reconcile those orders.

We may also disclose information if required by law, to enforce our terms, or to protect the rights and safety of users. If RestoPlus is involved in a merger or acquisition, data may transfer subject to this policy.

05Data retention

We keep operational records for as long as the restaurant’s account is active and as needed for accounting, tax and legal requirements. When an account is closed, we delete or anonymise personal data within a reasonable period unless we are required to retain it. Diagnostic logs and crash reports are kept for a limited window and then rotated out.

06Security

We protect data with encryption in transit, access controls scoped by role and company, and regular backups. No system is perfectly secure, but we work to keep your information safe and to respond promptly to any incident.

07Your choices & rights

  • Access & correction — you can view and update most data directly in the app or console; contact us for anything else.
  • Deletion — you may request deletion of your account and associated personal data (see below).
  • Push notifications — you can turn these off in your device settings at any time.

Depending on where you live, you may have additional rights (for example under the GDPR or Indian data-protection law) to object to or restrict certain processing, or to data portability. To exercise any of these, email info@restoplus.in.

Account & data deletion. To request deletion of your account and personal data, email info@restoplus.in from the address on your account with the subject “Delete my account”. We will verify the request and action it, subject to records we are legally required to keep.

08Children

RestoPlus is a tool for restaurant businesses and is not directed to children. We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will remove it.

09Where data is processed

RestoPlus is operated from India and our infrastructure is hosted in the Mumbai (ap-south-1) region. If you access the apps from outside India, your information may be processed in India and other locations where our service providers operate, under safeguards appropriate to the transfer.

10Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes we will update the effective date above and, where appropriate, notify you in the app or by email. Continued use of RestoPlus after an update means you accept the revised policy.

11Contact us

For any privacy question or request, contact CodFather Logic LLP (RestoPlus) at info@restoplus.in.

Questions about this document? Write to info@restoplus.in. See also our Privacy Policy and Terms of Service.

RestoPlus — restaurant operating system

The complete restaurant operating system. Self-hosted, multi-tenant, built for service.

Product

PlatformPOS & WaiterQR MenuPricing

Legal

Privacy PolicyTerms of ServiceContact

Account

ConsoleAdminGet started