Privacy Policy

Last updated · February 2026

What we collect

For restaurants: business name, contact, staff logins, menu content, orders, subscription/payment reference numbers. For diners: only what you enter at checkout — name, phone, table number, and any special instructions. We never collect card numbers, UPI PINs, or bank credentials.

How we use it

To run the ordering flow, show live status to you and the restaurant, deliver receipts, compute loyalty visits, and produce anonymized analytics for the restaurant owner. We do not sell personal data.

Cookies & storage

We use a login cookie/token for authenticated dashboard sessions and a lightweight local-storage entry for your language preference and chime toggle. No cross-site tracking cookies.

Third-party services

Image storage and AI menu photo generation are provided by Emergent's managed integrations. UPI payments are processed directly between diner and restaurant via the diner's UPI app — Zixxy is not a payment processor.

Data retention

Order records are retained for the restaurant's own reporting and GST needs. Restaurants can request deletion of their account and associated data at any time.

Security

Passwords are bcrypt-hashed. All traffic is HTTPS. Access to each restaurant's data is strictly role-guarded — no cross-tenant reads.

Contact

Questions or data requests: contact your restaurant directly (their contact info is on their menu page) or the platform owner via the Zixxy admin console.