This Privacy Policy explains what personal information HadarGo (legal entity to be confirmed) ("HadarGo", "we", "us") collects when you use the HadarGo website, apps and services (the "Platform"), why we use it, who we share it with, and the choices and rights you have. It covers customers, people who run or work in a shop on the Platform, and couriers.
We collect what the Platform needs to work and try hard not to collect more. We do not sell personal information, and we do not share it for cross-context behavioural advertising.
1. Information we collect
If you are a customer:
- Contact details: your name, email address and phone number, whether you order as a guest or with an account.
- Order details: what you ordered, from which shop, when, pickup or delivery, special instructions, offer codes, tips, and the status history of each order.
- Delivery details: your delivery address and the map location we look up for it, and any saved addresses.
- Payment details: handled by Stripe. We receive a reference to your payment and, if you save a card, its brand, last four digits and expiry date. We never receive your full card number or security code.
- Content you give us: reviews and ratings, reports, support messages, dispute messages and catering enquiries.
- Account details: your password (stored only as a secure hash), language choice, notification preferences, favourite shops and two-factor authentication settings.
- What you type into AI features, such as menu search or "Help me order".
If you run or work in a shop:
- Your name, email, phone number, role in the shop and sign-in details.
- Business details: the shop's name, legal name, address, phone, hours, menu, prices, photos and links.
- Payout and identity details that Stripe collects when you set up your shop's own Stripe account: Stripe (under its own privacy policy) collects and holds your identity documents, business details and bank account. We receive only the account's status from Stripe - whether it can take payments and receive payouts, and what Stripe still needs - plus records of the payments, refunds and payouts made through it.
- Records of what you do in the console, such as accepting orders, issuing refunds, changing prices and accepting agreements (with the time and IP address).
- If a shop was prepared as a preview before its owner signed up, the public information it was built from (such as a published menu, address and phone number), and the phone number a claim code is sent to.
If you are a courier:
- Your name, email, phone number, city, vehicle type, description and plate.
- Documents you upload: driver's licence (front and back), proof of insurance and a photo of yourself, their review status and expiry dates.
- Background check status (for example, not started, in progress, clear or flagged).
- Location: while you are online or carrying a delivery, your device's location, sent regularly.
- Delivery records: jobs offered, accepted and completed, times, distances, pay, and ratings from customers.
- Your acceptance of the Driver Agreement, with the time and IP address.
- Payout details: when you set up payouts, Stripe collects and holds your identity details and bank account under its own privacy policy. We receive your Stripe account's status (whether payouts are enabled and what Stripe still needs) and records of the transfers we send you.
From everyone, automatically: IP address, browser and device type, the pages and features used, and security and error logs. We record the IP address and browser for sign-in sessions and important account actions, to keep accounts secure.
2. Where it comes from
- From you, when you order, sign up, fill in forms or contact us.
- From shops, about the orders they handle and refunds they give.
- From couriers, about the deliveries they carry out.
- From Stripe, about payments, refunds, chargebacks and a shop's payout account.
- From public sources, for preview pages: information a business already publishes about itself.
- From our own systems, such as order history and security logs.
3. How we use it, and our legal reasons
We use personal information to:
- take, pay for, prepare, deliver and support orders (needed to provide the service you asked for);
- run accounts, sign-in and two-factor authentication (needed to provide the service);
- review and approve shops and couriers, including checking documents (needed to provide the service, and for safety);
- pay shops and couriers, keep accurate financial records and meet tax and accounting duties (legal obligation);
- send order updates, account messages, and, if you have not turned them off, weekly shop insights and promotions (service, and your choices);
- prevent fraud, abuse and security incidents, handle disputes and enforce our terms (our legitimate interests in a safe, trustworthy marketplace);
- respond to reports of food safety problems (legitimate interests, and public health);
- improve the Platform, using usage information and aggregated figures (legitimate interests);
- comply with the law and respond to lawful requests (legal obligation).
Where a law requires consent for something, we ask for it, and you can withdraw it at any time.
4. AI features and our AI provider
Some features use artificial intelligence from Anthropic, PBC, which processes content on our behalf as a service provider. We send only what a feature needs, and we keep a record of each AI request that holds its size and outcome, not its content.
- Menu search and "Help me order" (customers): the words you type and the shop's menu. Not your name, contact details, address or payment details.
- Menu import, translations, descriptions and label suggestions (shops): the menu photos, PDF, web page or menu text the owner provides.
- Weekly insights and pricing ideas (shops): figures about the shop's own sales and menu. Market price ranges are aggregated across at least five other shops and never identify a shop or a customer.
- Review summaries and reply drafts (shops): the text and rating of reviews, without the customer's name or contact details. Reviews that describe possible harm are handled without AI.
- Dispute summaries (our staff): the order's records and the case messages, with names, email addresses, phone numbers and street addresses removed first.
- Courier document reading (our staff): images of a courier's licence or insurance, sent only when a reviewer asks for a document to be read, or when the platform's automatic reading setting is on. The AI reads fields such as name, date of birth and expiry date to help a person check them; it never approves or rejects anyone. Only the last four characters of a licence number are kept from that reading, and what was read is cleared when the document is replaced.
AI suggestions to a shop (descriptions, labels, prices, replies) are drafts that the owner decides whether to use. AI is never used to make decisions about you that have legal or similarly significant effects.
6. Shops' own use of your information
A shop that receives your order details uses them for its own business too, for example to keep its sales records. For that use, the shop is responsible for your information under its own privacy practices. Shops agree in the Business Agreement to use customer information only to fulfil and support orders and as the law allows, and not to use it for unrelated marketing without your permission.
7. How long we keep it
- Account information: while your account is open. When you delete your account, your name, email, phone number and saved addresses are removed, and your account can no longer be used.
- Orders, payments, refunds and payouts: kept for as long as tax, accounting and payment rules require, including after an account is deleted, but in a form that no longer carries your name or contact details.
- Baskets that were never ordered are deleted automatically after they expire.
- Courier documents and location records: while the courier account is active and for as long as needed afterwards to handle safety concerns, disputes and legal claims.
- Security and audit logs: for as long as needed to protect accounts and investigate incidents.
- AI request records: sizes and outcomes only, kept to manage costs and reliability.
8. How we protect it
We use technical and organisational measures to protect personal information, including encrypted connections, hashed passwords, encrypted two-factor secrets, separation of each shop's data at the database level, role-based staff access, redaction of contact details for staff, and audit logs of sensitive actions. No system is completely secure, so please use a strong password and turn on two-factor authentication. If a breach affects you, we will tell you as the law requires.
10. Your choices and rights
Everyone can:
- see and update account details in the account page;
- download a copy of their data with "Download my data" on the account page;
- delete their account from the account page (a shop's only owner must add another owner or close the shop first);
- choose which notifications to receive;
- remove a saved card;
- ask us any question about their information through Support.
Depending on where you live, you may have more rights. California residents (under the CCPA, as amended by the CPRA), Virginia residents (under the Virginia Consumer Data Protection Act), Maryland residents (under the Maryland Online Data Privacy Act) and residents of other states with similar laws may have the right to know what personal information we hold and how we use it, to get a copy, to correct it, to delete it, and to opt out of its sale, targeted advertising and certain profiling. We do none of those three. You may appeal if we decline a request, and we will not treat you differently for using your rights.
To make a request, use the account page or Support. We may need to confirm your identity first. You may use an authorised agent where the law allows.
Notice at collection (California): the categories of personal information we collect are listed in Section 1, the purposes in Section 3, and how long we keep them in Section 7. We do not sell or share personal information as those terms are defined in California law, and we do not use sensitive personal information (such as courier licence details or precise location) except to provide the service and as the law allows.
11. Children
The Platform is not directed at children under 13, and we do not knowingly collect their personal information. If you believe a child has given us personal information, contact us and we will delete it. Customers must be at least 18 to create an account. Couriers must meet the minimum age set by the platform, which is at least 18.
12. Where information is processed
We operate in the United States, and personal information is stored and processed in the United States. Some service providers may process it in other countries, under safeguards required by law.
13. Changes to this policy
We will update this policy when our practices change. The date and version at the top show when it last changed. If a change is significant, we will tell you in advance through the Platform or by email.
14. Contact
HadarGo (legal entity to be confirmed), registered address to be confirmed. For privacy questions and requests, write to us through Support and say it is a privacy request, or use the tools on your account page.