Back to Home

Privacy Policy

Last updated: March 12, 2026

At xTide, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our restaurant management platform. Please read this policy carefully to understand our practices regarding your data.

1. Information We Collect

1.1 Information You Provide

  • Account Information: Name, email address, password, organization name
  • Business Data: Staff information, inventory data, sales records, tip distributions
  • Payment Information: Billing details (processed securely through Stripe)
  • Communication Data: Messages sent through our support system

1.2 Automatically Collected Information

  • Usage Data: Features used, time spent, actions performed
  • Device Information: Browser type, operating system, IP address
  • Log Data: Access times, pages viewed, errors encountered
  • Cookies: Session management and preference storage

2. How We Use Your Information

We use the information we collect to:

  • Provide the Service: Process your data, manage accounts, enable features
  • Improve the Service: Analyze usage patterns, fix bugs, develop new features
  • Communicate: Send service updates, security alerts, and support responses
  • Billing: Process payments, send invoices, manage subscriptions
  • Security: Detect fraud, prevent abuse, protect user accounts
  • Legal Compliance: Comply with laws, regulations, and legal processes

3. Information Sharing and Disclosure

3.1 We Do NOT Sell Your Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

3.2 Service Providers

We share data with trusted service providers who help us operate:

  • Firebase/Google Cloud: Database and authentication services
  • Vercel: Hosting and deployment infrastructure
  • SendGrid: Email delivery services
  • Stripe: Payment processing (when implemented)

3.3 Legal Requirements

We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety.

3.4 Business Transfers

If xTide is acquired or merged, your information may be transferred to the new entity. We will notify you of any such change.

4. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: Data encrypted in transit (HTTPS/TLS) and at rest
  • Authentication: Secure password hashing and Firebase Authentication
  • Access Controls: Role-based access and multi-tenant isolation
  • Monitoring: Continuous security monitoring and logging
  • Backups: Regular automated backups of your data

Note: While we implement strong security measures, no system is 100% secure. During our beta phase, we recommend maintaining your own backups of critical data.

5. Data Retention

Active Accounts: We retain your data for as long as your account is active and for a reasonable period thereafter.

Closed Accounts: After account closure, we may retain certain data for legal, tax, or regulatory purposes.

Deletion Requests: You may request deletion of your data by contacting support@xtide.io.

6. Your Privacy Rights

You have the following rights regarding your data:

  • Access: Request a copy of the data we hold about you
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your data (subject to legal requirements)
  • Export: Download your data in a portable format
  • Opt-Out: Unsubscribe from marketing communications
  • Object: Object to certain processing of your data

To exercise these rights, contact us at support@xtide.io.

7. Cookies and Tracking

We use cookies and similar technologies to:

  • Maintain your login session
  • Remember your preferences
  • Analyze usage patterns
  • Improve Service performance

You can control cookies through your browser settings. Note that disabling cookies may limit certain features of the Service.

8. Third-Party Links

The Service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. Please review their privacy policies before providing any information.

9. Children's Privacy

xTide is not intended for children under 13 years of age. We do not knowingly collect personal information from children. If we become aware of such collection, we will delete the information promptly.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers in compliance with applicable laws.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service. The "Last updated" date at the top will reflect the most recent revision.

12. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us:

By using xTide, you acknowledge that you have read and understood this Privacy Policy.