Privacy Policy
Last updated: March 28, 2026
1. Information We Collect
Account Information
When you create an account, we collect your email address, display name, and profile photo (if you sign in with Google). This is used to identify you on the platform and display your profile.
Check-in Data
When you check in to a restaurant, we collect your approximate location (latitude and longitude) to verify you are near the restaurant. We also collect photos you upload, dish ratings, and review notes. Location data is only collected at the moment of check-in and is not continuously tracked.
Usage Data
We use PostHog and Vercel Analytics to collect anonymous usage data including pages visited, features used, and performance metrics. This helps us improve the Service. We do not track admin users.
Device Information
We collect standard technical information including browser type, IP address, and device type for security (rate limiting, bot detection) and analytics purposes.
2. How We Use Your Information
- To provide and improve the Service
- To display your check-ins and profile to other users
- To verify check-in authenticity via geolocation
- To prevent abuse and enforce our Terms of Service
- To send essential account-related communications
- To compute restaurant rankings and recommendations
3. Information Sharing
We do not sell your personal information. We may share data with:
- Supabase — our database and authentication provider
- Vercel — our hosting provider
- PostHog — our analytics provider (anonymous data only)
- Sentry — our error monitoring provider (error reports only)
- Google — for OAuth authentication (only the data you authorize)
We may also disclose information if required by law or to protect the rights and safety of our users.
4. Public Information
The following information is visible to other users: your display name, profile photo, check-in history (restaurants visited, photos, ratings, and notes), and shared collections. You can control collection visibility through sharing settings.
5. Data Retention
We retain your data for as long as your account is active. Draft check-ins that are not finalized within 24 hours may be automatically removed. If you delete your account, we will delete your personal data within 30 days, except where retention is required by law.
6. Your Rights
You have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and associated data
- Export your data in a portable format
- Opt out of analytics tracking (contact us or use browser privacy settings)
To exercise these rights, contact us at the email below.
7. Cookies and Local Storage
We use cookies for authentication (session management via Supabase). We use browser local storage to save your city preference and collection data for offline access. We do not use advertising cookies.
8. Security
We implement reasonable security measures including row-level security on our database, rate limiting, bot detection, and encrypted connections (HTTPS). However, no method of transmission over the Internet is 100% secure.
9. Children's Privacy
The Service is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by updating the “Last updated” date at the top of this page.
11. Contact
Questions about this policy? Contact us at rickyzhong@eatmorels.com.