Privacy Policy — Restaurants
Português·English
1. Data controller
The controller is Pedro Castro e Diogo Resende, Limitada ("Bitte"), with registered office at Alameda da Música 21, 1750-044 Lisbon, Portugal. For privacy matters contact us at hello@joinbitte.com.
2. Data collected
- Account data: name, email, phone, hashed password.
- Establishment data: legal name, trading name, tax ID (NIF), fiscal address, economic activity code (CAE).
- Financial data: IBAN and Stripe Connect / KYC data processed by Stripe.
- Operational data: orders, reservations, invoices, usage analytics.
- Technical data: IP address, session identifiers, access logs.
3. Purposes and legal bases
- Performance of a contract (Art. 6(1)(b) GDPR): providing the service, billing, support.
- Legal obligation (Art. 6(1)(c)): issuing fiscal documents, Portuguese Tax Authority (AT) retention.
- Legitimate interests (Art. 6(1)(f)): security, fraud prevention, product improvement.
- Consent (Art. 6(1)(a)): marketing communications, where applicable.
4. Sub-processors
Bitte uses the following sub-processors, bound by data processing agreements:
- Supabase / Lovable Cloud (EU) — database, authentication, storage.
- Stripe (Ireland / US) — payment processing and Stripe Connect.
- Resend (US) — transactional email delivery.
- Google Maps Platform — address geocoding and maps.
- Portuguese Tax Authority (AT) — invoice reporting and SAF-T.
- AI providers (OpenAI, Google) — descriptions, translations and images, under no-training / retention arrangements where applicable.
- Delivery and digital marketplace partners — only when you enable an integration made available on the Platform. Data needed to operate orders (e.g. menu, availability, order information) may be processed by the partner as controller or processor under your agreement with that partner and its privacy notice; this Policy does not replace the partner's documentation, and Bitte does not control how the partner processes data outside the flows we operate. Illustrative, non-exhaustive examples include operators such as "Uber Eats" where such an integration is offered. For transfers outside the EEA, rely on your contract and the partner's terms; where Bitte participates in a transfer in delivering the service, the safeguards in Section 6 apply to our role in that transfer.
5. Tax data and statutory retention
Fiscal documents (invoices, receipts, SAF-T) are retained for the statutory period of 10 years under Portuguese law, even after your subscription ends. Other account and operational data are deleted or anonymised within 90 days of an erasure request, unless a longer retention is required by law.
6. International transfers
Where data is transferred outside the EEA (e.g. Stripe, Resend, OpenAI, or certain marketplace partners when Bitte is involved in the transfer), we rely on EU Commission standard contractual clauses and supplementary measures (encryption in transit and at rest). Processing arranged solely between you and a third-party partner is governed by your agreement with that partner.
7. Security
We apply AES-256 encryption at rest, TLS in transit, role-based access controls (including RLS), daily backups, and auditing of sensitive events. The private key used to sign fiscal documents is stored in an encrypted vault and is never exposed in the browser.
8. Your rights (GDPR)
You have the right of access, rectification, erasure, restriction, portability and objection, as well as the right to withdraw consent and to lodge a complaint with the Portuguese supervisory authority (www.cnpd.pt). To exercise these rights, contact hello@joinbitte.com.
10. Changes
This Policy may be updated. We will notify you of material changes at least 30 days in advance by email or through the Platform.
11. Contact and DPO
Pedro Castro e Diogo Resende, Limitada
Alameda da Música 21, 1750-044 Lisbon, Portugal
Email / Data Protection contact: hello@joinbitte.com