Privacy Policy

Effective Date: January 27, 2025 | Last Updated: March 19, 2026

1. Introduction

Simple Host App ("Simple Host," "we," "us," or "our") respects your privacy and is committed to protecting personal data.

This Privacy Policy explains how we collect, use, and safeguard information when you use our Service.

2. Information We Collect

2.1 Information You Provide

  • Account information (name, email, phone)
  • Restaurant/business details
  • Guest data entered into the system

2.2 Automatically Collected Data

  • Device information
  • IP address
  • Usage data and analytics

2.3 Guest Data (Processor Role)

  • Names, phone numbers, emails
  • Reservation and waitlist data

We process this data on behalf of our customers.

3. How We Use Information

We use data to:

  • Provide and operate the Service
  • Send transactional communications
  • Improve performance and features
  • Ensure security and prevent fraud

4. Legal Basis (GDPR)

Where applicable, we process data based on:

  • Contractual necessity
  • Legitimate interests
  • Legal obligations

5. Data Sharing

We may share data with:

  • Stripe (payments)
  • Twilio (SMS)
  • RevenueCat (subscriptions)
  • Cloud providers (hosting)

We do not sell personal data.

6. Data Retention

We retain data as long as necessary to provide the Service and comply with legal obligations.

7. Data Security

We implement industry-standard safeguards including:

  • Encryption in transit
  • Secure cloud infrastructure

8. Your Rights

Depending on jurisdiction, you may have rights to:

  • Access
  • Correct
  • Delete
  • Restrict processing

Requests may be submitted via email.

9. Customer Responsibilities

Customers are responsible for:

  • Obtaining guest consent
  • Complying with privacy laws
  • Managing data within the platform

10. International Transfers

Data may be transferred and processed in the United States.

11. Children's Privacy

The Service is not intended for individuals under 13.

12. Changes

We may update this policy at any time.

13. Contact

Data Processing Addendum (DPA)

1. Scope

This DPA applies where Simple Host processes personal data on behalf of the customer.

2. Roles

  • Customer = Data Controller
  • Simple Host = Data Processor

3. Processing Details

Subject Matter: Restaurant guest and operational data

Duration: For the term of the agreement

Nature: Collection, storage, transmission

Purpose: Providing the Service

Data Types:

  • Names
  • Phone numbers
  • Emails
  • Reservation details

Data Subjects:

  • Restaurant guests
  • Staff

4. Processor Obligations

We will:

  • Process data only on instructions
  • Ensure confidentiality
  • Implement security measures
  • Assist with data subject requests

5. Subprocessors

We may use subprocessors including:

  • AWS / Firebase
  • Twilio
  • Stripe
  • RevenueCat

We ensure appropriate safeguards are in place.

6. Security Measures

We implement:

  • Encryption in transit
  • Access controls
  • Monitoring systems

7. Data Breach

We will notify customers without undue delay upon becoming aware of a breach.

8. Data Subject Requests

We will assist customers in responding to requests.

9. Data Deletion

Upon termination, data will be deleted or returned upon request.

10. Audits

We may provide reasonable information to demonstrate compliance.

11. International Transfers

We rely on standard contractual safeguards where required.

12. Governing Law

Aligned with Terms of Service.

© 2026 Simple Host. All rights reserved.