← SmartRestro

Privacy Notice

What SmartRestro collects and why.

Effective August 2, 2026.

In short: SmartRestro uses the information needed to create and host restaurant websites, secure the service, and learn whether the service is useful. We do not sell personal information, run behavioral advertising, or use third-party advertising trackers.

1. Scope

This notice explains how SmartRestro handles information on smartrestro.com, its hosted restaurant pages, and its restaurant editor. “SmartRestro,” “we,” and “us” refer to the team operating this service.

A published restaurant page may link to a restaurant or third-party service. Information you provide directly to that restaurant or outside service is governed by their privacy practices, not this notice.

2. Information we collect

  • Account and sign-in information: email address, available profile name, sign-in method, session information, and plan status.
  • Restaurant content: drafts and published versions of names, descriptions, addresses, hours, menus, prices, contact details, links, place identifiers, themes, and publication history.
  • Uploads and imports: menu images, PDFs, public menu URLs, and restaurant photographs you choose to provide.
  • Domain information: a connected hostname, its restaurant site identifier, and DNS, ownership-verification, and certificate status.
  • Support and reports: the details of an accuracy, ownership, privacy, abuse, or support request and an optional contact email.
  • Technical and security information: operational logs may contain IP addresses, user or account identifiers when a request is associated with an account, request identifiers, method, route, response status, timing, browser and device signals, session or guest-draft cookies, and identifiers used for rate limits.
  • Anonymous analytics: aggregate information about page views and feature usage that helps us understand and improve SmartRestro.
  • Subscription information: if you subscribe, we store the identifiers our billing provider assigns to your customer and subscription record, the subscription's status, and how many restaurants it covers. We do not store your card number, billing address, or payment history; those stay with the billing provider.

We receive information from you, the restaurant websites you ask us to fetch, Google Places, your chosen sign-in provider, and the systems that deliver and protect SmartRestro.

3. Menus, AI, and photographs

When you request menu extraction, SmartRestro sends the uploaded menu or fetched public menu content to our AI processing provider. We do not intentionally keep the original menu file as a SmartRestro record after the request finishes. We store the structured menu returned by the provider after you review or save it. Providers may process request data under their own service and privacy terms.

Restaurant photographs are re-encoded to remove embedded metadata such as GPS coordinates and timestamps, then stored for use on the draft and public website until you remove them or delete your SmartRestro data.

4. Google services

Restaurant search, place details, maps, selected place photographs, and optional Google sign-in use Google services. Search text and place requests are sent to Google. SmartRestro keeps the selected Google Place ID, but does not persist raw Places responses or Google photo resource names. Photo metadata may be cached for up to six hours and refreshed when needed. Public restaurant pages load an embedded map directly from Google when it approaches the visitor's viewport, so Google receives the normal request information associated with that map load.

Google handles information under the Google Privacy Policy, and Google Maps use is subject to the Google Maps additional terms.

5. How we use information

We use information to:

  • save drafts, authenticate owners, publish sites, and deliver requested features;
  • extract and structure menus and refresh owner-selected place information;
  • host images, connect domains, send sign-in messages, and answer support requests;
  • prevent abuse, enforce limits, investigate errors, and protect the service;
  • handle ownership, privacy, accuracy, and abuse reports; and
  • understand aggregate feature use and improve or evaluate the service without using advertising trackers.

Depending on where you live, these uses are based on providing the service you request, protecting our legitimate interests in running and securing the service, complying with legal obligations, and consent where the law requires it.

6. When information is shared

We share information only as needed with service providers that support hosting, content delivery, security and bot detection, databases, object storage, authentication, email, maps, AI processing, and domain setup. Current infrastructure includes services from Google, Cloudflare, OVHcloud, Backblaze, AWS, and our AI processing provider. They receive only the information needed for the relevant task and may process it in countries other than yours.

Paid subscriptions are handled by our billing provider, Chargebee. When you subscribe, we send them your account email address and how many restaurants your subscription covers, and they return the subscription's status so we know what your account is entitled to. Card details are entered directly on Chargebee's secure payment page: SmartRestro never receives or stores your card number, and no payment form is hosted on our own site. Chargebee keeps the billing records, including invoices and payment history, under their own privacy notice.

We may also disclose information when reasonably necessary to comply with law, protect people or the service, investigate misuse, or complete a future transfer of the service. If SmartRestro changes ownership, this notice will continue to apply until it is replaced with notice of a new policy.

7. What becomes public

When an owner publishes a website, the approved restaurant details, menu, photographs, social and external links, and any contact information entered for the restaurant become public. Search engines and other people may copy or retain public information. The account owner’s sign-in email is not published unless the owner separately adds it as the restaurant’s public contact address.

8. Cookies and similar storage

SmartRestro uses essential cookies for sign-in sessions and security. If you save a draft without signing in, a host-only, HTTP-only guest-draft cookie reconnects this browser to that draft for up to seven days. Cloudflare may use security technology and browser signals, including Turnstile on sign-in, to distinguish people from abusive automation.

SmartRestro does not currently use advertising cookies or third-party behavioral analytics. We collect anonymous analytics to understand how the service is used and improve its features. This analytics does not require cookies or browser storage and is not used to identify individual visitors. Blocking essential cookies may prevent drafts or sign-in from working.

9. Retention

  • Unsigned guest drafts expire seven days after their latest save.
  • Saved restaurant data remains while the account uses SmartRestro or until it is deleted.
  • Site revision history is limited to 100 revisions and a maximum of 180 days.
  • Ownership, privacy, accuracy, and abuse reports are retained for up to two years.
  • Rate-limit and request-retry records expire automatically after their short operational windows.
  • Operational logs used for security, troubleshooting, and log analysis may include IP addresses and user or account identifiers and are retained for up to 30 days.
  • Analytics events are retained for up to 13 months.

Provider systems and backups may take additional time to complete deletion. If domain or image cleanup fails, SmartRestro keeps the minimum records needed to retry and tells the account owner that cleanup is pending.

10. Your choices

The restaurant editor lets an authenticated owner edit or unpublish restaurant content, remove photographs, download a SmartRestro account export, and delete SmartRestro websites, drafts, domain records, revision history, and stored photographs.

Account deletion anonymizes your contact details in retained reports, but does not erase a report submitted by someone else or delete the shared sign-in identity used by other services operated through our authentication system. You can report an inaccurate, unauthorized, or privacy-sensitive restaurant page using its “Report this page” link.

Depending on your location, you may also have rights to access, correct, delete, restrict, or object to processing of your personal information, or to complain to your local privacy authority. Contact us to make a request; we may need to verify your identity.

11. Security and children

We use access controls, private storage, upload validation, limited logs, encryption in transit, and other technical safeguards appropriate for the service. No internet service can guarantee absolute security, so do not submit sensitive personal, financial, medical, or identity-document information.

SmartRestro is intended for restaurant owners and operators, not children. We do not knowingly ask children to create accounts or provide personal information.

12. Changes and contact

We will revise this notice as the service’s data practices change and update the effective date above. Material new uses of personal information will be explained before they begin when required.

For privacy questions or requests, contact [email protected].