This Privacy Policy explains what information Coursed (“we”, “us”) collects, how we use it, and your choices. It applies to the Coursed service and website. It does not cover the separate privacy practices of your point-of-sale provider or other third parties.
Account information — the name, email address, restaurant name, and password you provide when signing up.
Billing information — processed by our payment processor, Stripe. We receive limited billing status and identifiers from Stripe; we do not store full payment-card numbers on our systems.
Operational data from your POS — to produce scoreboards we ingest order, check, item, table, timing, and employee data from your connected point-of-sale provider (such as Toast). This can include staff names and performance-related information.
Usage and log data — basic technical information such as IP address and request logs, used for security, rate-limiting, and reliability.
We use information to provide, secure, and improve the Service; to calculate and display scores, timing flags, and leaderboards; to process subscriptions and billing; to provide support; and to comply with legal obligations. We do not sell your information, and we do not use it to serve third-party advertising.
We share information with service providers who help us run the Service, including Stripe (payments), Cloudflare (hosting, delivery, and storage), and your POS provider (data integration). These providers process data on our behalf under their own terms. We may disclose information if required by law or to protect the rights, safety, and security of Coursed, our users, or others.
The Service displays staff names and service-performance information that the restaurant chooses to connect. For that data, the restaurant is responsible as the controller, including for providing any notices to staff and having a lawful basis to use the information. We process it on the restaurant’s behalf to provide the Service.
We retain account and operational data for as long as your account is active and as needed to provide the Service, then for a reasonable period afterward unless a longer period is required by law. You can request an export or deletion of your data by contacting us.
We use measures designed to protect information, including encryption in transit, salted password hashing, signed session tokens, and access controls. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
Depending on your location, you may have rights to access, correct, export, or delete personal information, and to object to or restrict certain processing. To exercise these rights, contact us at support@getcoursed.com; we may need to verify your identity. Where a restaurant controls staff data, we will refer requests to that restaurant as appropriate.
We use a small number of strictly necessary cookies to keep you signed in and to operate the board (for example, a signed session cookie). We do not use advertising or cross-site tracking cookies.
The Service is intended for businesses and is not directed to children. We do not knowingly collect personal information from children.
We may update this Privacy Policy from time to time. We will revise the “last updated” date above and, for material changes, provide notice where appropriate.
Questions or requests: support@getcoursed.com.