← Back to Home

Privacy Policy

TownTap - Discover Local Dining

Effective Date: January 1, 2025
Last Updated: December 31, 2024
Version: 1.0

1. Introduction

Welcome to TownTap! This Privacy Policy explains how Town Tap LLC ("TownTap," "we," "us," or "our") collects, uses, discloses, and protects your personal information when you use our mobile application and related services (collectively, the "Service").

By using TownTap, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with this policy, please do not use our Service.

⚑ Key Points:

  • We share anonymized behavioral data with businesses you visit
  • Your personal identity (name, email, address) is protected by default
  • You can opt-out of data sharing at any time
  • You earn bonus points for optionally sharing your identity

2. Information We Collect

We collect several types of information to provide and improve our Service.

2.1 Information You Provide Directly

Account Information

  • Email address (required for account creation)
  • Name (optional, but required for personalized features)
  • Profile photo (optional)
  • Date of birth (for age verification)
  • Phone number (optional, for notifications)

User-Generated Content

  • Restaurant reviews and ratings
  • Photos of food and dining experiences
  • Comments and responses
  • Profile preferences (cuisine types, dietary restrictions)

Payment Information

  • Note: We do not store credit card numbers or banking information
  • Payment processing is handled by third-party providers (Stripe, Apple Pay, Google Pay)
  • We receive transaction confirmations and subscription status

2.2 Information Collected Automatically

Location Data

  • Precise location (GPS coordinates) when you check in at restaurants
  • Approximate location (city/region) for showing nearby restaurants
  • Location services can be disabled, but some features will be limited

Device Information

  • Device type and model (iPhone 15, Samsung Galaxy S24, etc.)
  • Operating system and version (iOS 18, Android 14, etc.)
  • Unique device identifiers (IDFA, Advertising ID)
  • IP address
  • Browser type and version (for web access)

Usage Data

  • Features you use and pages you view
  • Time spent on different sections of the app
  • Search queries and filters
  • Restaurants viewed and visited
  • Points earned and redeemed
  • App crashes and errors (for debugging)

2.3 Information from Third Parties

  • Social Media: If you sign in with Apple, Google, or Facebook, we receive basic profile information
  • Business Partners: Restaurants may provide transaction data for points calculation
  • Analytics Providers: We use Firebase Analytics and Google Analytics for app performance

3. How We Use Your Information

We use your information for the following purposes:

3.1 Core Service Delivery

  • βœ… Create and manage your account
  • βœ… Process check-ins and award points
  • βœ… Show nearby restaurants based on your location
  • βœ… Enable restaurant reviews and social features
  • βœ… Process payments and manage subscriptions
  • βœ… Send transactional emails (account confirmation, password resets)

3.2 Personalization & Recommendations

  • 🎯 Recommend restaurants based on your preferences and history
  • 🎯 Suggest menu items you might like
  • 🎯 Show relevant offers and promotions
  • 🎯 Customize your app experience

3.3 Analytics & Improvement

  • πŸ“Š Analyze app usage to improve features
  • πŸ“Š Monitor performance and fix bugs
  • πŸ“Š Conduct A/B testing for new features
  • πŸ“Š Understand user engagement and retention

3.4 Communication

  • πŸ“§ Send promotional emails (with your consent)
  • πŸ“§ Notify you of new offers from restaurants you follow
  • πŸ“§ Send important service updates
  • πŸ“§ Respond to your inquiries and support requests

3.5 Legal & Safety

  • βš–οΈ Prevent fraud and abuse
  • βš–οΈ Enforce our Terms of Service
  • βš–οΈ Comply with legal obligations
  • βš–οΈ Protect user safety and rights

4. Data Sharing with Businesses

This is the most important section of our Privacy Policy. Please read carefully.

πŸ”” Important Notice: By using TownTap, you agree that we may share anonymized behavioral data with businesses you visit. This is a core part of our service that helps businesses improve and helps you earn rewards.

4.1 What Data IS Shared (Anonymized)

We share the following data WITH BUSINESSES, but WITHOUT your personal identity:

Data Type What Businesses See Purpose
Visit Frequency Number of visits, dates, times Identify regular customers
Spending Patterns Total spent, average order value Customer value analysis
Menu Preferences Items ordered, frequency Menu optimization
Engagement Reviews, photos, check-ins Customer engagement metrics
Loyalty Tier New, Regular, VIP customer status Reward program targeting
πŸ“Š Example: What a Business Sees Customer ID: #TT-428971 (Anonymous) ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━ Tier: Regular Customer First Visit: 3 months ago Total Visits: 12 Last Visit: 2 days ago Lifetime Value: $427.50 Average Order: $35.62 Visit Pattern: β€’ Most Common Day: Wednesday (4 visits) β€’ Preferred Time: Lunch (67% of visits) β€’ Peak Hour: 12:30 PM Menu Preferences: 1. Classic Burger (ordered 8 times) 2. French Fries (ordered 10 times) 3. Iced Tea (ordered 7 times) Last Order (Dec 29, 2024): β€’ Classic Burger with Cheese β€’ Sweet Potato Fries β€’ Lemonade Total: $28.50 βœ… Notice: NO name, email, phone, or address!

4.2 What Data is NEVER Shared

The following information is ALWAYS protected unless you explicitly opt-in:

πŸ”’ Personal Identity

  • Full name
  • Email address
  • Phone number
  • Profile photo

πŸ”’ Location Data

  • Home address
  • Work address
  • Precise GPS coordinates
  • Travel patterns

πŸ”’ Financial Data

  • Credit card numbers
  • Bank account info
  • Payment methods
  • Billing address

πŸ”’ Sensitive Info

  • Medical conditions
  • Dietary restrictions (medical)
  • Social Security Number
  • Private messages

4.3 Optional Identity Sharing (Earn Rewards!)

You can choose to share your identity with specific businesses to receive:

  • 🎁 Personalized service - Staff can greet you by name
  • 🎁 Exclusive offers - Targeted promotions via email
  • 🎁 Birthday rewards - Special treats on your birthday
  • 🎁 Bonus points - 200 points for name, 200 for email (400 total!)

✨ Earn Bonus Points:

  • Share your name β†’ Get 200 bonus points (one-time)
  • Share your email β†’ Get 200 bonus points (one-time)
  • Total possible bonus: 400 points!

Enable in Settings β†’ Privacy β†’ Share My Identity

4.4 How Businesses Access Data

  • πŸ“Š Businesses with paid subscriptions can view aggregated analytics
  • πŸ“Š Each business can only see data from their own customers
  • πŸ“Š Cross-business data sharing is strictly prohibited
  • πŸ“Š Raw data is never downloadable - only through secure dashboards

5. Your Privacy Rights

You have full control over your data. Here are your rights:

5.1 Access & Portability

  • View Your Data: See all data we have about you in Settings β†’ Privacy β†’ My Data
  • Download Your Data: Export all your data in JSON format (machine-readable)
  • Transfer Your Data: Move your data to another service (data portability)

5.2 Correction & Deletion

  • Update Information: Edit your profile, preferences, and settings anytime
  • Delete Your Account: Request permanent deletion in Settings β†’ Privacy β†’ Delete Account
  • Deletion Timeline: Account deleted within 30 days (some data retained for legal compliance)

5.3 Consent & Control

  • Opt-Out of Analytics: Turn off "Anonymous Analytics" in Settings β†’ Privacy
  • Opt-Out of Marketing: Unsubscribe from promotional emails via email links or app settings
  • Disable Location: Turn off location services (some features will be limited)
  • Revoke Permissions: Withdraw consent for camera, contacts, notifications in device settings

5.4 Specific Regional Rights

πŸ‡ͺπŸ‡Ί GDPR Rights (European Union)

  • Right to access your personal data
  • Right to rectification (correction)
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights related to automated decision-making

πŸ‡ΊπŸ‡Έ CCPA Rights (California Residents)

  • Right to know what personal information is collected
  • Right to know if personal information is sold or shared
  • Right to opt-out of the sale of personal information
  • Right to deletion
  • Right to non-discrimination for exercising CCPA rights

πŸ‡¨πŸ‡¦ PIPEDA Rights (Canada)

  • Right to access personal information
  • Right to challenge accuracy
  • Right to withdraw consent

πŸ“§ Exercise Your Rights: Contact privacy@towntap.com to exercise any of these rights. We will respond within 30 days (GDPR) or 45 days (CCPA).

6. Data Protection & Security

We take data security seriously and implement industry-standard measures to protect your information.

6.1 Technical Security Measures

  • πŸ” Encryption in Transit: All data encrypted with TLS 1.3 (HTTPS)
  • πŸ” Encryption at Rest: All databases encrypted using AES-256
  • πŸ” Secure Cloud Infrastructure: Hosted on Google Cloud Platform / Firebase with enterprise security
  • πŸ” Password Security: Passwords hashed with bcrypt (industry standard)
  • πŸ” Access Controls: Role-based access control (RBAC) for internal staff
  • πŸ” Regular Security Audits: Quarterly penetration testing and vulnerability scans

6.2 Organizational Measures

  • πŸ‘₯ Limited Staff Access: Only authorized personnel can access user data
  • πŸ‘₯ Confidentiality Agreements: All employees sign NDAs
  • πŸ‘₯ Security Training: Regular security awareness training for staff
  • πŸ‘₯ Incident Response Plan: Procedures for data breach notification

6.3 Data Retention

Data Type Retention Period Reason
Account Information Until account deletion Service delivery
Transaction History 7 years Tax & accounting compliance
Check-in History 1 year after last activity Analytics & rewards
Reviews & Photos Until deleted by user Public content
Usage Analytics 26 months Google Analytics default
Support Tickets 3 years Quality assurance

6.4 Data Breach Notification

In the unlikely event of a data breach, we will:

  • πŸ“§ Notify affected users within 72 hours (GDPR requirement)
  • πŸ“§ Notify relevant authorities as required by law
  • πŸ“§ Provide details on what data was affected
  • πŸ“§ Offer guidance on protective measures you can take

7. Third-Party Services

We use trusted third-party services to deliver our Service. These partners have access to limited data as necessary to perform their functions.

7.1 Service Providers

Provider Purpose Data Shared Privacy Policy
Google Firebase Backend, database, hosting All app data Link
Stripe Payment processing Payment info Link
Sentry Error tracking Device info, errors Link
Google Analytics Usage analytics Usage data Link
Apple Push Notifications iOS notifications Device token Link
Google Cloud Messaging Android notifications Device token Link

7.2 Advertising & Analytics

We do NOT currently use third-party advertising networks. If this changes in the future, we will update this policy and notify you.

7.3 Social Media Integration

If you connect your social media accounts:

  • We receive basic profile information (name, email, profile picture)
  • You can disconnect social accounts at any time
  • Social media platforms have their own privacy policies

8. Children's Privacy

TownTap is NOT intended for children under 13 years of age. We comply with the Children's Online Privacy Protection Act (COPPA).

  • 🚫 We do not knowingly collect personal information from children under 13
  • 🚫 If we discover we have collected data from a child under 13, we will delete it immediately
  • 🚫 Parents can contact us at privacy@towntap.com if they believe their child's data was collected
  • βœ… Age verification is required during account creation

Parents & Guardians: If you believe your child (under 13) has created an account, please contact us immediately at privacy@towntap.com and we will delete the account within 72 hours.

9. International Users

TownTap is operated in the United States. If you are accessing our Service from outside the United States, please be aware that your information may be transferred to, stored in, and processed in the United States.

9.1 Data Transfers

  • 🌍 EU/EEA Users: Data transfers comply with GDPR using Standard Contractual Clauses (SCCs)
  • 🌍 UK Users: Data transfers comply with UK GDPR and UK Addendum to SCCs
  • 🌍 Swiss Users: Data transfers comply with Swiss Federal Data Protection Act (FADP)
  • 🌍 All Users: We use cloud providers with global data center networks for optimal performance

9.2 Your Data Protection Rights

Regardless of your location, you have the rights outlined in Section 5 of this Privacy Policy.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements.

How We Notify You of Changes

  • πŸ“§ Material Changes: We will email you at least 30 days before changes take effect
  • πŸ“± In-App Notification: A banner will appear when you open the app
  • πŸ“… Update Date: The "Last Updated" date at the top will be changed
  • πŸ”’ Version Number: The version number will increment

Your Acceptance

Continued use of TownTap after changes constitutes your acceptance of the updated Privacy Policy. If you do not agree with changes, you may delete your account.

11. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your data:

πŸ“§ Email Support

General Privacy Questions:
privacy@towntap.com

Data Deletion Requests:
privacy@towntap.com

Legal Inquiries:
legal@towntap.com

πŸ“ž Phone Support

Phone:
(440) 477-0747

Hours:
Monday - Friday
9:00 AM - 5:00 PM EST

βœ‰οΈ Postal Mail

Privacy Team
Town Tap LLC
690 Glen Eden Court
Aurora, OH 44202
United States

⏱️ Response Time

We aim to respond to all privacy inquiries within:

  • Email: 24-48 hours
  • Phone: Immediate
  • Mail: 7-10 business days

Data Protection Officer (DPO)

For EU/EEA users, our Data Protection Officer can be reached at:
Email: dpo@towntap.com

Supervisory Authority

EU/EEA users have the right to lodge a complaint with their local data protection authority. A list of EU data protection authorities can be found here.

βœ… Summary - What You Need to Know

  • πŸ“Š We share anonymous visit data (patterns, spending, orders) with businesses
  • πŸ”’ Your personal identity (name, email, address) stays private by default
  • 🎁 Optional: Share your identity to earn 400 bonus points and get personalized service
  • πŸŽ›οΈ Full control: Opt-out of analytics anytime in Settings
  • πŸ—‘οΈ Delete anytime: Request account deletion with 30-day processing
  • πŸ” Secure: Military-grade encryption and industry-standard security
  • βš–οΈ Compliant: GDPR, CCPA, COPPA, and PIPEDA compliant

Questions? Contact us at privacy@towntap.com