FoodOrders.ai

Legal & privacy

This centre provides the current published documents that govern FoodOrders.ai services. A restaurant-specific policy or signed authorization may also apply and is linked from that restaurant's ordering page or dashboard.

Current public notice

Privacy Policy

How FoodOrders.ai handles merchant, diner, order, conversation, device and support information.

Open document

Merchant-specific

Merchant ordering authorization

Each participating restaurant receives a merchant-specific, versioned authorization after its owner signs in the dashboard.

Open document

Available now

Support and privacy requests

Open a support ticket or contact the privacy team. Restaurant staff can use the same support system without exposing private owner settings.

Open document

About document updates

A transaction is governed by the version presented for that transaction. Material changes are not applied retroactively. When a new version requires fresh agreement, FoodOrders.ai presents it again rather than treating continued use as a hidden signature.

Legal questions: support@foodorders.ai · Privacy requests: privacy@foodorders.ai

Security, Privacy & Responsible AI

Our application is built on a backend platform that maintains SOC 2 Type II compliance and ISO 27001:2022 certification. We combine this security-focused infrastructure with privacy-conscious data practices, GDPR-supporting safeguards, and responsible AI governance informed by ISO/IEC 42001 principles. Payments are processed by Stripe, so card details never touch our servers. Our source code is maintained under branch protection, required peer reviews, and signed commits.

Platform certifications apply to our backend hosting provider and its defined systems and controls. They do not constitute independent SOC 2 or ISO certification of our company or this application. Compliance responsibilities are shared across our platform providers, application controls, connected services, internal operating practices, and our transparent, review-based development workflow.

  • SOC 2 Type II

    Built using a platform subject to independent security-control assessment.

  • ISO 27001:2022

    Supported by an information-security management framework certified at the platform level.

  • GDPR

    Designed with privacy, transparency, data minimization and user rights in mind.

  • Responsible AI

    AI practices informed by ISO/IEC 42001 principles for accountable AI management.