Privacy Policy
How Tapstand collects, uses, stores and protects personal data, and the rights you have over it.
Last updated
This policy explains how Tapstand ("we", "us") handles personal data when you use the Tapstand website, the owner dashboard, the staff app and the venue pages that customers open by tapping or scanning a Tapstand code. It is published under rule 4 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 and the Digital Personal Data Protection Act, 2023 ("DPDP Act").
1. Who is responsible for your data
- Venue owners and their staff: Tapstand decides how your account data is used, so we are the data fiduciary.
- Customers of a venue (loyalty members, people who leave feedback): the café or restaurant you visit decides why your data is collected, so the venue is the data fiduciary and Tapstand processes the data on its behalf. You can contact the venue or us; we'll help either way.
2. What we collect
| Who | Data | Why |
|---|---|---|
| Venue owners | Name, email, phone number, password (stored only as a secure hash), venue details, menus, photos and settings | To create and run your account and your venue page, and to contact you about it |
| Staff members | Name, email, password hash, the venue and role they were invited to | To let staff sign in and use the staff app |
| Loyalty members | Name, email, optional birthday (day and month only), card code, stamps, rewards and offers claimed, with dates | To run the venue's loyalty card, verify the email with a one-time code and give birthday and other offers |
| Feedback and suggestions | Rating, tags, comments, optional email or phone for a reply, and photos added to the suggestion box | To pass feedback to the venue and let it reply. Suggestions are anonymous |
| Visitors | A random anonymous ID in a cookie. We store only a salted hash of it, never your IP address or device details | To count unique daily visitors for the venue's analytics |
| Website enquiries | Name, email, business name, size and message from the demo or support forms | To answer your enquiry |
We do not collect sensitive personal data such as financial information, passwords in plain text, health or biometric data. We do not sell personal data.
3. How we use it
- To provide the service: venue pages, menus, loyalty cards, feedback, analytics and team accounts.
- To send service emails: one-time codes, invitations, password resets, feedback alerts and replies.
- To keep the service secure: preventing abuse, fraud and spam, and rate-limiting.
- To improve the service using aggregated, non-identifying statistics.
- To comply with law and respond to lawful requests from authorities.
We rely on your consent (for example when you join a loyalty card) and on the legitimate uses allowed by section 7 of the DPDP Act, such as using data you provided voluntarily for the purpose you provided it.
4. Cookies
| Cookie | Purpose | Duration |
|---|---|---|
| ts_session | Keeps owners and staff signed in | 30 days |
| ts_venue | Remembers which venue is open in the dashboard | 1 year |
| ts_card_* | Keeps a loyalty member's card open on their phone (one per venue) | 1 year |
| ts_vid | Anonymous visitor ID for daily visitor counts | 1 year |
All are first-party cookies needed for the service to work. We don't use advertising or third-party tracking cookies.
5. Who we share it with
We share personal data only with the venue it belongs to and with service providers that help us run the service, under contracts that require them to protect it:
- Hosting and content delivery (for example Vercel and Cloudflare).
- Database hosting (for example Turso).
- Image storage (Cloudflare R2).
- Email delivery (our email provider).
- AI menu reading (Google's Gemini API), only for menu photos an owner chooses to import.
- Map tiles and address search in the owner's location picker (OpenStreetMap).
Some providers may store or process data outside India. We do this only where permitted under the DPDP Act and with appropriate safeguards.
6. How long we keep it
- Owner and staff accounts: while the account is active. Deleting your account from the dashboard deletes your venues and their data.
- Loyalty, feedback and visitor data: for as long as the venue uses the service, or until the venue or the person asks us to delete it.
- One-time codes and password reset links: minutes to hours, then deleted.
- Backups: up to 30 days after deletion, then overwritten.
7. Your rights
Under the DPDP Act you can:
- Ask what personal data we hold about you and how it's used.
- Ask us to correct, complete, update or erase it.
- Withdraw consent at any time, as easily as you gave it. Withdrawal doesn't affect processing already done.
- Nominate another person to exercise your rights if you die or become unable to.
- Raise a grievance with us, and then with the Data Protection Board of India if you're not satisfied.
To use these rights, email [email protected]. We may need to verify that the request comes from you.
8. Security
We use reasonable security practices: encrypted connections (HTTPS), passwords stored as salted hashes, sign-in tokens stored only as hashes, private image storage, access limited by role, and rate limits against abuse. If a breach affects your data, we will notify you and the Data Protection Board as the law requires.
9. Children
Tapstand is not meant for children under 18. We don't knowingly collect children's data without verifiable parental consent; if you believe we have, contact us and we will delete it.
10. Changes
We'll update the date at the top of this page when this policy changes, and tell account holders by email about significant changes.
Grievance Officer
In line with the Information Technology Act, 2000, the rules made under it, the Digital Personal Data Protection Act, 2023 and the Consumer Protection (E-Commerce) Rules, 2020, our Grievance Officer is:
- Name: [GRIEVANCE OFFICER NAME]
- Designation: Grievance Officer
- Email: [email protected]
- Phone: [+91 XXXXX XXXXX]
- Address: Tapstand, Kadubeesanahalli, Bengaluru, Karnataka 560103
We acknowledge complaints within 48 hours and resolve them within one month of receiving them.