Back to Home
Compliance & DPDP Ready
Data Protection & Privacy

Privacy Policy

Effective Date: September 18, 2026 • Version 2.4

At DinerOrbit ("we", "us", or "our"), we are committed to protecting the privacy, security, and integrity of diners, restaurant operators, and staff who use our tabletop ordering platform, POS systems, and digital payment features. This policy outlines how your data is collected, processed, and safeguarded.

1. Information We Collect

We collect only the minimum information necessary to provide seamless dining, order tracking, and receipt delivery:

  • Customer Contact Details: Mobile phone number (when voluntarily provided for WhatsApp/SMS digital tax invoices and order notifications).
  • Dining Session Information: Table number, ordered dishes, special dietary notes, split payment selections, and timestamps.
  • Payment Metadata: Transaction reference IDs, payment status, payment method (UPI / Card), and authorized gateway signatures. We never store credit/debit card numbers or bank account PINs on our servers.
  • Device & Technical Logs: IP address, browser type, and operating system for anti-fraud detection and session security.

2. How We Use Your Information

Your information is used strictly for the following operational purposes:

  • Relaying food orders in real-time to the restaurant kitchen display system (KDS).
  • Generating official GST tax invoices, digital bills, and WhatsApp e-receipts.
  • Facilitating split-table payments and UPI reconciliations with merchant banks.
  • Preventing unauthorized table orders and fraudulent transactions.
  • Allowing diners to review their past order history and utilize 1-tap reordering.

3. Payment Security & Gateway Compliance

All online payments, UPI QR transactions, and credit/debit card checkouts are processed through RBI-authorized, PCI-DSS Level 1 compliant payment aggregators (such as Razorpay). Payment verification utilizes SHA-256 HMAC cryptographic signatures to prevent any tampering or unauthorized balance alterations.

4. Cookies & Local Storage

We use lightweight, essential browser local storage (localStorage and secure session cookies) solely to remember your active table cart, theme preferences (Dark/Light mode), and sound settings. We do not sell tracking cookies or third-party behavioral profiling trackers to advertising networks.

5. Your Rights & Data Deletion

Under applicable data protection regulations (including the Digital Personal Data Protection Act and GDPR principles), you have the right to request access to your transaction records or request complete anonymization and erasure of your phone number from our logs.

To exercise these rights, please contact our Data Protection Officer at: support@dinerorbit.com.

© 2026 DinerOrbit Inc. All rights reserved.