Privacy Policy
Last Updated: May 24, 2026
1. Introduction & Scope
Welcome to Meneus. This Privacy Policy governs the processing practices executed by Meneus Technologies Pvt. Ltd. ("Company", "we", "us", or "our"), a registered technology provider operating under the prevailing laws of Nepal.
This policy outlines the architectures, transmission mechanisms, and protocols governing how we handle information gathered when restaurant owners, managers, staff ("Merchants"), and dining patrons ("End-Customers") interface with our digital QR ordering platform, dashboards, and associated software layers.
2. Information We Collect
To deliver a resilient, high-speed digital menu and kitchen workflow engine, we process the following vectors of information:
- Account Identification Details: Legal name, verified business email channels, physical restaurant operating addresses, corporate phone numbers, and operational credentials.
- Operational Restaurant Data: Structural menu items, pricing indices, inventory metrics, culinary item logs, and operational access profiles assigned to kitchen or waitstaff teams.
- Platform Usage Analytics: Intent metadata, feature interaction logs, specific page viewing rates, dashboard session lengths, and technical device browser properties.
- Transactional Payment Data: Financial interactions are safely executed via authorized third-party mobile payment providers or local digital wallets. Meneus never captures, mirrors, or archives raw card tracks, secure tokens, or banking passwords on its physical infrastructure.
- End-Customer Checkout Trails: Anonymized timestamp variables, distinct table tracking numbers, specific item choices, total billing values, and explicit order statuses necessary to execute localized order routing.
3. How We Use Information
The information captured by our servers is strictly applied toward the following operational dependencies:
- Provisioning, maintaining, and scaling the core digital QR configuration arrays.
- Transmitting urgent administrative notices, subscription tier events, system security alerts, and version patch updates.
- Fulfilling direct technical troubleshooting requests and system performance operations via our helpdesk.
- Generating aggregated, completely non-identifiable system analytics aimed at decreasing order roundtrip latencies across slower cellular bands.
4. Data Sharing & Third-Party Integrations
Absolute Core Principle:
We do not sell, rent, trade, or monetize your restaurant data or your customers’ transactional histories to third-party ad brokers—ever.
Data transmission occurs solely with verified cloud operational infrastructure providers necessary to maintain live services:
| Partner Category | Purpose Statement | Data Exchanged |
|---|---|---|
| Cloud Infrastructure Provider | Secure server hosting and platform database preservation. | Encrypted database states, system logs. |
| Email Gateway Service | Dispatching automated onboarding receipts and system updates. | Merchant email addresses, transaction receipts. |
| Payment API Providers | Direct digital payment verification at the table. | Aggregated billing totals, secure handshake tokens. |
5. Data Security Infrastructure
All data payloads moving across our ecosystem leverage TLS 1.3 encryption mechanisms during transit and AES-256 standard cryptographic structures at rest.
Access to storage systems remains tightly bounded via hardware-enforced Multi-Factor Authentication (MFA), restricted to essential infrastructure engineers who undergo consistent data governance coaching routines.
In the rare event of a physical data threat or infrastructure compromise, we commit to notifying affected operations teams via registered email channels within 72 hours of verification, complete with diagnostic impact breakdowns.
6. Merchant & User Rights
Regardless of operational scale, you retain absolute ownership over your business data profile:
- Access Rights: Securely extract full logs of your operational records at any stage.
- Correction Rights: Modify or update inaccurate, dated menu pricing sheets or billing markers instantly inside the dashboard.
- Deletion Rights: Command the complete erasure of your operational data profile from all active runtime systems.
- Data Export: Retrieve your full catalog files, menu descriptions, and historical analytics sheets in cleanly structured CSV or JSON formats.
7. Data Retention Parameters
We store active profiles for the duration of your subscription term. Upon formal processing of an account deletion request, the targeted records enter an isolated, secure 30-day recovery cooling period.
During this 30-day window, you can fully reverse the deletion if your team undergoes an operational restructuring. Once that timeline expires, all data elements are purged permanently from our primary operational databases and standard historical backups.
9. Contact & Data Operations Team
For direct clarification regarding data transmission safety, server rules, or to formally execute data deletion workflows, please contact our privacy compliance group:
Email Address: support@odraqr.com
Physical Office: Legal Ops, Level 3, Lazimpat Road, Kathmandu, Nepal
Response Protocol Commitment: Our data handling officers review and resolve all formal processing requests within 7 working business days.