Privacy Policy

Last updated: July 3, 2026

This Privacy Policy explains how Tiralio(“we”, “us”, or “our”) collects, uses, and protects information when you use our digital menu and QR ordering platform (the “Service”). It applies both to restaurant owners who hold an account and to diners who browse a menu or place an order.

1. Information we collect

Account information. When a restaurant owner registers, we collect a name, email address, and (if you sign up with Google) basic profile information from your Google account. We store a securely hashed password when you use email sign-up.

Restaurant & menu data. Content you add, such as restaurant details, menu items, images, prices, and table configurations.

Order data. When a diner places an order, we process the items ordered, table identifier, and any notes. We do not require diners to create an account.

Payment data. Subscription payments are handled by our third-party payment provider. We receive confirmation of payment and related metadata but do not store full payment card or mobile-money credentials on our servers.

Technical data. Log data such as IP address, browser type, and pages accessed, plus cookies used to keep you signed in and to remember your active restaurant.

2. How we use information

  • To provide, maintain, and improve the Service;
  • To authenticate you and secure your account;
  • To process subscriptions and send renewal payment requests;
  • To display menus and route orders to the correct restaurant;
  • To respond to support requests and communicate service updates;
  • To detect, prevent, and address fraud, abuse, or security issues.

3. Cookies

We use strictly necessary cookies to operate the Service — for example, to keep you signed in and to remember which restaurant you are managing. We do not use advertising cookies. You can control cookies through your browser, but disabling essential cookies may prevent parts of the Service from working.

4. AI menu import

If you use our menu import feature, files you upload (such as a photo or PDF of a menu) are sent to a third-party AI provider to extract menu items. These files are processed only to generate your menu and are not used by us to train models.

5. How we share information

We do not sell your personal information. We share it only with service providers who help us operate the Service — including hosting, database, file storage, payment processing, and AI processing providers — under agreements that limit their use of the data. We may also disclose information where required by law or to protect our rights and the safety of others.

6. Data retention

We retain account and restaurant data for as long as your account is active. If you delete your account or a restaurant, we delete or anonymize the associated data within a reasonable period, except where we must retain it to comply with legal, accounting, or security obligations.

7. Security

We use industry-standard measures to protect your information, including encryption in transit and access controls. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.

8. Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal information, or to object to certain processing. To exercise these rights, contact us at [email protected].

9. Children

The Service is not directed to children under 13, and we do not knowingly collect personal information from them.

10. Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the “Last updated” date and, where appropriate, notify you.

11. Contact

If you have questions about this Privacy Policy or how we handle your data, email us at [email protected].