Privacy Policy
Last updated: 9 September 2026
This policy describes what the MySmarterMenu app and this website do with your personal data. It was written from the software itself rather than from a template, so that what you read here is what the code actually does.
Who is responsible
MySmarterMenu is operated by DSX Advisory, Geneva, Switzerland, which acts as the data controller for the accounts created in the app.
The restaurant you order from is a separate controller for the orders you place with it. Both of us are bound by this policy for what we each hold.
What we collect
Only what a shared table order needs, plus what you choose to add.
- Your account: first and last name, a username, e-mail address, phone number, profile picture and preferred language. Your password is never stored — only a bcrypt hash of it, which cannot be reversed.
- Optional, and never required: gender, date of birth and postal address. No feature of the app depends on these. Leaving them empty changes nothing about what you can do.
- Allergens and diet: health data under Article 9 GDPR. Collected only if you give a separate explicit consent, which you can withdraw on its own without deleting your account. Withdrawing it erases the data immediately — we do not keep it "just in case".
- Your activity: the orders you place, the items and amounts, who ordered what within a shared table, your reviews and ratings, your favourites and loyalty points.
- Technical: a notification token, your device type and name, the date of your last activity and of your sign-ins. If you sign in with Google or Apple, the identifier those services return.
What we never collect
This section matters as much as the previous one, and it is verifiable in the software.
- No card or bank details. There is no card payment in the app. You pay at the restaurant, on its own terminal. All the app records is an amount and a method — never a card number, and never anything that could identify one.
- No advertising. No advertising identifier, no advertising SDK, no ad network.
- No third-party analytics or tracking. No measurement SDK is embedded in the app.
- Your location is never stored. It is used at the instant you look for restaurants nearby, to compute that list, and it is not written to our servers.
The permissions the app asks for
- Location — to show restaurants near you. Used at that moment only, never retained.
- Camera — to read the QR code on your table. The image is processed on your phone; no photograph is transmitted or kept.
- Notifications — announcements from restaurants you follow, and the progress of your order.
- Biometrics — to unlock the app. Your fingerprint or face never leaves your device and never reaches us; the operating system only tells the app whether the check succeeded.
Why, and on what legal basis
- Performance of a contract — creating your account, placing and following your orders.
- Your consent — allergens and diet, and push notifications. Both are withdrawable at any time, separately.
- Legitimate interests — keeping the service running and secure, and preventing abuse.
- Legal obligation — retaining order records where accounting law requires it.
Who receives your data
We do not sell personal data, and we never will. It is shared only with those who need it to make the service work.
- The restaurant you order from sees your order and the name on your account.
- Microsoft Azure — hosting, database and file storage, in Switzerland. One image-generation service runs in Sweden, in the European Union, and processes restaurant menus rather than your data.
- Google — delivery of push notifications, and sign-in if you choose that method.
- Apple — delivery of push notifications, and sign-in if you choose that method.
- Resend — sending service e-mails, such as a password reset.
Where your data lives
Your account, orders and files are stored in Switzerland.
Notification delivery necessarily transits through Google's and Apple's infrastructure, which may lie outside Switzerland and the European Union. What transits is the text of the notification and a device token — not your account.
How long we keep it, and how to erase it
Your data is kept for as long as your account exists. You can delete it yourself, from the app, without asking us.
When you do, immediately: your name, e-mail, phone, address, date of birth, gender, profile picture, allergens and diet are erased; your reviews are deleted; every open session is revoked.
Your past order lines remain, because accounting law requires them, but they no longer identify you: they are attached to an account that carries no personal data. Withdrawing your health-data consent alone erases the allergens and diet without touching the rest.
Your rights
Under the Swiss Federal Act on Data Protection and, where it applies to you, the GDPR, you may:
- obtain a copy of the data we hold about you;
- have it corrected if it is wrong;
- have it erased — which the app lets you do directly;
- restrict or object to certain processing;
- receive your data in a portable format;
- withdraw a consent at any time, without that affecting what was lawful before.
You may also lodge a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC), or with the supervisory authority of your country of residence.
Children
The service is not intended for children under 16, and we do not knowingly create accounts for them. If you believe such an account exists, write to us and we will erase it.
Changes to this policy
Any substantive change will be published on this page, with its date. If the change concerns a processing based on your consent, we will ask you again rather than assume it.
Contact
For any question about your data, or to exercise the rights above: contact@mysmartermenu.com.