Last updated: 29 June 2026
RestroInvoice ("we", "us") provides restaurant POS and hotel management software. This policy explains what we collect and how we handle it. Contact: [email protected].
Each business's data is kept separate from every other business's, and all data travels over encrypted connections. A current list of our infrastructure sub-processors is available on request at [email protected].
To provide and operate the service, process subscriptions and payments, send transactional email (e.g. login credentials, receipts), provide support, and keep the platform secure. We do not sell your data.
We share data only with the service providers described above - our cloud infrastructure, email delivery and payment processors - strictly to run the service, under appropriate data-protection obligations, and where required by law. We do not sell your data.
For your business account data, RestroInvoice is the Data Fiduciary. For the guest/customer data you enter into the platform, you (the business) are the Data Fiduciary and RestroInvoice acts as a Data Processor processing it on your instructions to run the service.
We keep personal data while your account is active and only as long as needed for the purposes above or as required by law (e.g. GST/tax records are retained for the statutory period). On account closure or an erasure request, personal data is deleted or anonymised; legally-required transactional records (amounts, dates) are retained without personal identifiers.
To exercise any right, email [email protected]. If you are a guest of a business using RestroInvoice, please contact that business; we will assist them as their processor.
As required by the DPDP Act and IT Rules, you may contact our Grievance Officer for data-protection concerns: [email protected]. We aim to acknowledge within 48 hours and resolve within the timelines prescribed by law.
In the event of a personal-data breach, we will take prompt remedial action and notify the Data Protection Board and affected users/businesses as required by the DPDP Act.
When you share a customer e-bill link, anyone with that link can view that single bill (items, total, and any customer name/phone on it). Links use long, unguessable identifiers.