Legal
Privacy Policy
Last updated: June 25, 2026
NoFee Commission-Free Restaurant Ordering Platform Privacy Policy
How NoFee collects, uses, shares, and protects personal information
This Privacy Policy explains how NoFee LLC collects, uses, discloses, and safeguards personal information when you use the NoFee platform as a customer, restaurant, or partner, and the choices and rights you have. It supplements, and is incorporated into, the Terms of Service.
Effective date: [[CONFIRM: insert date]]
Controller: NoFee LLC, [[CONFIRM: address & state of formation]]
1. SCOPE
1.1This Policy applies to personal information we process through the Platform. It does not apply to information processed by Restaurants for their own purposes, or by third parties such as Stripe, which act under their own privacy policies. Where a Restaurant uses your information for its own purposes, the Restaurant is an independent controller of that information.
2. INFORMATION WE COLLECT
2.1Information you provide. Depending on your role, we collect:
(a) Customers: name, email address, phone number, password, ZIP/postal code, and — where you save an address or place a delivery Order — street address; Order details and notes to the kitchen; communication preferences (email, SMS, WhatsApp); referral codes; and Rewards activity.
(b) Restaurants: business name, owner name, business email and phone, password, business address, website, cuisine types, business hours, menu content and photos, logo, delivery settings, order-receiving channel details, and the information needed to connect a Stripe account.
(c) Partners: organization name, contact name, email, business/organization address, website, referral codes, and the information needed to connect a Stripe account for payouts.
2.2Information collected automatically. Device and usage data such as IP address, browser type, pages viewed, referring pages, and interactions, collected through cookies and similar technologies as described in the Cookie Policy.
2.3Payment information. Card and bank details are collected and processed by Stripe (and by where a Restaurant offers it). We do not store full card numbers or bank-account credentials; the platform represents that no banking information is stored by NoFee. We receive limited transaction and status information from these processors.
2.4Information from third parties. We may receive information from Stripe (account and payout status), from mapping/Google Business Profile features where a Restaurant connects them, and from Partners who refer Restaurants.
3. HOW WE USE INFORMATION
3.1We use personal information to:
(a) create and manage Accounts and authenticate users;
(b) enable Restaurants to publish menus and receive Orders, and Customers to discover Restaurants and place Orders;
(c) process Subscriptions and Partner payouts through Stripe, and facilitate Order payments;
(d) operate the Rewards and referral programs, including fraud prevention and eligibility review;
(e) send transactional communications (Order, Account, billing, and security messages) and, with appropriate consent, marketing communications via your chosen channels;
(f) provide support, improve and secure the Platform, and develop new features;
(g) comply with law, enforce our Terms, and prevent fraud, abuse, and harm.
3.2[[CONFIRM: if relying on CCPA/CPRA framing, also state the "business purposes" and whether any "sale" or "sharing" occurs; default position should be that NoFee does not sell personal information]]
4. HOW WE SHARE INFORMATION
4.1We share personal information:
(a) With Restaurants when you place an Order or interact with them (for example, your name, contact details for the chosen channel, and Order details), so they can fulfill and communicate about the Order;
(b) With service providers and sub-processors that perform services for us, including Stripe (payments), messaging/SMS and email providers (communications), hosting and infrastructure providers, and analytics providers, under contracts that limit their use of the information;
(c) With Partners only as needed to administer the referral program (for example, that a referred Restaurant remains an active subscriber for payout purposes), and not the personal information of Customers;
(d) For legal and safety reasons, to comply with law, respond to lawful requests, enforce our Terms, and protect the rights, property, and safety of NoFee, our users, and the public; and
(e) In a business transfer, in connection with a merger, acquisition, financing, or sale of assets, subject to this Policy.
4.2We do not sell your personal information for money. [[CONFIRM: confirm no "sale" or "share" as defined by CCPA/CPRA; if any targeted-advertising sharing exists, disclose it and provide an opt-out]]
5. COOKIES AND TRACKING
5.1We use cookies and similar technologies as described in the Cookie Policy. Where required, we obtain consent through a cookie banner, and you can manage non-essential cookies through that banner and your browser settings.
6. YOUR CHOICES AND RIGHTS
6.1Communications. You can opt out of marketing emails via the unsubscribe link and of marketing texts by replying STOP. Transactional messages necessary to provide the Platform will continue. You can manage notification preferences in your settings.
6.2Account information. You can review and update most Account information in your settings. Note that certain fields, such as your login email, may not be self-editable; [[CONFIRM: provide a verified flow to change login email]].
6.3State privacy rights. Depending on your state of residence (for example, under the California Consumer Privacy Act as amended by the CPRA, and similar laws), you may have rights to know, access, correct, delete, and obtain a portable copy of your personal information, and to opt out of certain processing. We will not discriminate against you for exercising these rights. To exercise a right, contact us using Section 10; we will verify your request as required by law.
6.4[[CONFIRM: if subject to CCPA/CPRA, add the required categories table (categories collected, sources, purposes, categories disclosed), the "do not sell or share" link if applicable, and the retention disclosure]]
7. DATA RETENTION
7.1We retain personal information for as long as needed to provide the Platform, comply with legal, tax, and accounting obligations, resolve disputes, and enforce our agreements, after which we delete or de-identify it. [[CONFIRM: specify retention periods per data category]]
8. SECURITY
8.1We use reasonable administrative, technical, and physical safeguards designed to protect personal information. [[CONFIRM: describe actual measures, e.g., encryption in transit, access controls, and MFA availability]]. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
9. CHILDREN
9.1The Platform is not directed to children under 13, and we do not knowingly collect personal information from them. Users must meet the age requirement in the Terms of Service. If you believe a child has provided us personal information, contact us and we will delete it.
10. CONTACT AND UPDATES
10.1To exercise rights or ask questions about this Policy, contact us at [[CONFIRM: privacy contact email; consider privacy@nofee.restaurant]], or at the mailing address in the controller block above.
10.2We may update this Policy from time to time. Material changes will be indicated by updating the effective date and, where appropriate, by additional notice through the Platform.