Back to Cevor Business

Legal · Cevor Business

Business Privacy Policy

How professional users and restaurant analytics data are handled.

Last updated · 9 September 2026 · Version 3.0

This policy complements the general Privacy Policy for restaurant representatives, staff and prospects.

1. Professional and authorization data

  • Name, professional email, phone where supplied, role and restaurant relationship.
  • Evidence used to review authority and the assigned restaurant role.
  • Team invitations, access changes and relevant audit or support records.

2. Restaurant and content data

  • Restaurant identity, descriptions, links, logo, cover, gallery and featured dishes.
  • Publication status and content-management actions.
  • Assisted menu content only if a secondary scan or translation workflow is activated.

3. Billing and support

When paid plans are active, Cevor may process plan, billing contact, invoice and payment-status data. Stripe may process card payments; Billit may support invoicing when active. Cevor does not claim Odoo as a current processor. Support communications and issue history are retained as needed.

4. Analytics

Cevor may produce aggregate profile views, discovery interactions, external reservation-link clicks and aggregate engagement, including featured-dish interest when available. Restaurants do not receive an individual's identity, precise location, favorites or raw behavioral history through these reports.

5. Roles and legal bases

Cevor is generally controller for Business account, contract, billing, security and platform analytics administration. A restaurant is responsible for its own staff instructions and content. Bases include contract, legitimate interests, legal obligation and consent where a genuine optional choice is required.

6. Providers and transfers

Cevor uses Lovable Cloud infrastructure for backend, authentication, database and storage, hosting/content-delivery infrastructure, and Resend for email. Stripe and Billit apply only when the corresponding payment or invoicing workflow is active. International safeguards follow the general Privacy Policy.

7. Retention and rights

Professional data is retained for the relationship and proportionate legal, security, billing and dispute periods. Removing a person’s access does not automatically delete restaurant content. Individuals retain GDPR rights; restaurant deletion follows its separate procedure.

Contact

For questions about this document, write to hello@cevor.app

See also