Privacy Policy
Last updated 7 July 2026
This Privacy Policy explains how Emonge Ltd (“Emonge”, “we”, “us”) handles personal information when you use our website, platform, and related services (the “Service”).
We provide software to independent hospitality venues. We act as a service provider to venue operators and may also process information about their staff and guests on their behalf.
1. Who this policy applies to
- Venue operators and staff who create accounts or use the Emonge admin, kitchen, and platform tools.
- Guests and customers who book, order, leave reviews, join loyalty programmes, or purchase gift cards through a venue's Emonge-powered storefront or links.
- Website visitors who browse emonge.com or contact us.
2. Information we collect
Depending on how you use the Service, we may collect:
- Account and identity data — name, username, email address, phone number, role, and authentication credentials (stored in hashed form).
- Venue and business data — business name, locations, settings, menus, floor plans, and operational configuration you enter.
- Transaction and booking data — reservations, orders, payments metadata, gift-card and loyalty activity, and related operational records.
- Guest contact data — information guests provide when booking, ordering, or communicating with a venue (for example name, email, phone, delivery address, and special requests).
- Technical and usage data — IP address, browser type, device information, logs, and security events needed to operate and protect the Service.
3. How we use information
We use personal information to:
- Provide, maintain, and improve the Service;
- Authenticate users and enforce access controls;
- Process bookings, orders, notifications, and payments on behalf of venues;
- Send operational messages such as confirmations, reminders, and account notices;
- Monitor performance, prevent fraud and abuse, and maintain security;
- Comply with legal obligations and respond to lawful requests.
Venue operators are responsible for ensuring they have a lawful basis to collect guest information and for providing their own customer-facing privacy notices where required.
4. How we share information
We do not sell personal information. We may share information with:
- Service providers that help us run the Service — for example hosting, email delivery, SMS, payment processing, and object storage — under contracts that require appropriate safeguards.
- Venue operators, who control guest data collected through their storefronts and admin tools.
- Professional advisers, regulators, or law enforcement when required by law or to protect rights, safety, and security.
- Successors in connection with a merger, acquisition, or asset sale, subject to this policy.
5. International transfers
We aim to host production data in Australia where practicable. Some subprocessors may process data in other countries. Where we transfer personal information overseas, we take reasonable steps to ensure it receives comparable protection.
6. Retention
We retain personal information for as long as needed to provide the Service, meet legal and accounting requirements, resolve disputes, and enforce agreements. Venue operators may export or request deletion of certain data subject to applicable law and backup cycles.
7. Security
We use administrative, technical, and organisational measures designed to protect personal information, including access controls, encryption in transit, tenant isolation, and audit logging. No method of transmission or storage is completely secure.
8. Your rights and choices
Depending on your location and role, you may have rights to access, correct, delete, or restrict certain processing of your personal information, or to object to direct marketing.
- Guests should contact the venue they interacted with for booking or order-related requests.
- Staff and operators can contact [email protected] for account-related requests, or [email protected] for privacy-specific enquiries.
If you are in Australia and believe we have breached the Australian Privacy Principles, you may lodge a complaint with us. If unresolved, you may contact the Office of the Australian Information Commissioner (OAIC).
9. Cookies and similar technologies
We use cookies and similar technologies that are necessary for authentication, security, and core functionality. We do not use third-party advertising cookies on the Service.
10. Children
The Service is not directed at children under 16. We do not knowingly collect personal information from children without appropriate consent.
11. Changes to this policy
We may update this Privacy Policy from time to time. We will post the revised version on this page and update the “Last updated” date. Material changes may be notified through the Service or by email where appropriate.
12. Contact us
For privacy questions or requests, contact [email protected].
See also our Terms of Service.
