Privacy Policy
Last updated: February 27, 2026
1. Introduction
RestoRank ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our competitive intelligence platform for restaurants ("the Service").
2. Information We Collect
2.1 Information You Provide
- Account Information: When you sign in via Google authentication, we receive your name, email address, and profile picture.
- Restaurant Data: The restaurant name and location you submit for analysis.
- Payment Information: Billing details processed securely by Stripe. We do not store your full credit card information on our servers.
2.2 Information Collected Automatically
- Usage Data: Pages visited, features used, time spent on the platform, and interaction patterns.
- Device Information: Browser type, operating system, device type, and screen resolution.
- Cookies: We use essential cookies for authentication and session management.
3. How We Use Your Information
- To provide and maintain the Service, including generating competitive analysis reports.
- To process transactions and manage your subscription.
- To authenticate your identity and secure your account.
- To communicate with you about updates, features, and support.
- To improve and optimize the Service based on usage patterns.
- To comply with legal obligations and enforce our Terms of Service.
4. Data Sources
Our reports are generated using publicly available data from sources including:
- Google Maps and Google Places API (reviews, ratings, business information).
- Other publicly accessible restaurant data and review platforms.
We analyze up to 2 years of historic data to provide competitive intelligence insights.
5. Data Sharing and Disclosure
We do not sell your personal information. We may share your information with:
- Service Providers: Third-party services that help us operate the platform (e.g., Stripe for payments, Google for authentication, hosting providers).
- Legal Requirements: When required by law, regulation, or legal process.
- Business Transfers: In connection with a merger, acquisition, or sale of assets.
6. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- Encrypted data transmission (HTTPS/TLS).
- Secure authentication via NextAuth.js and Google OAuth.
- Regular security reviews and updates.
- Access controls limiting data access to authorized personnel only.
7. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. Generated reports are stored for your continued access. You may request deletion of your account and associated data at any time by contacting us.
8. Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data.
- Portability: Request your data in a structured, machine-readable format.
- Objection: Object to certain processing of your personal data.
To exercise any of these rights, please contact us through our Contact Page.
9. Cookies
We use the following types of cookies:
- Essential Cookies: Required for authentication and core platform functionality.
- Analytics Cookies: Help us understand how users interact with the Service to improve it.
You can control cookie preferences through your browser settings. Disabling essential cookies may affect the functionality of the Service.
10. Third-Party Services
The Service integrates with third-party services that have their own privacy policies:
- Google: For authentication and Maps/Places API data.
- Stripe: For payment processing.
- Vercel: For hosting and infrastructure.
We encourage you to review the privacy policies of these third-party services.
11. Children's Privacy
The Service is not intended for users under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected data from a child, we will take steps to delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last updated" date and, where appropriate, providing additional notice. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.
13. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at: