Privacy Policy
Last updated: 25 August 2026
1. Scope
This policy explains how NextDish operates nextdish.tech and its restaurant QR-menu service. It applies to restaurant administrators and visitors who use a restaurant menu or its AI assistant.
2. Information we process
Restaurant administrator accounts contain the access details needed to manage a restaurant workspace. Guest menu use does not require registration. We do not ask guests for names, email addresses, phone numbers, or payment details.
We process technical information required to secure and operate the service, such as session data, request logs, and device or browser information. Restaurants may choose whether to retain AI chat messages in their own workspace settings.
The menu records anonymous journey events such as menu and dish views, searches, tip interactions and potential-cart changes. A random per-menu visit id is kept in local storage for up to four hours. A random first-party HttpOnly device cookie may remain for up to 180 days to estimate return visits. The raw cookie value is not stored in the analytics database: it is converted to a different HMAC for each restaurant, preventing cross-restaurant matching. We do not use device fingerprinting for this purpose.
3. How information is used
We use information to provide the menu, maintain access controls, prevent abuse, support the AI assistant, and improve the reliability of the service. The international instance does not use third-party web analytics.
Guest analytics describes attention and potential cart intent. It does not confirm an order, payment, or completed sale. Browser privacy controls, private mode, iOS restrictions and blockers can reduce its coverage.
4. Service providers and storage
NextDish uses hosting, database, object-storage, and AI-infrastructure providers to operate the service. Information is shared with them only as needed to provide these functions. Restaurant media and backups are stored in the configured object storage for the instance.
5. Retention and controls
Guest analytics events, anonymous visits and derived device identifiers are retained for no more than 24 months from the event or the visit's last activity and are then deleted automatically. Ending the service relationship or a valid legal request may require earlier deletion. The original device cookie is never stored in the database. Guests can clear cookies and local storage in their browser; doing so resets anonymous visit continuity without preventing access to the public menu.
6. Contact and updates
For a privacy question, contact your NextDish representative. We may update this policy when the service changes; the current version is published at this address.