How Detecto LLP collects, uses, and protects your information.
We collect information that you provide directly, information generated through your use of the Service, and information from third-party sign-in providers.
If you sign in with Google or use phone-number (OTP) authentication, we receive basic profile information (such as your name, email, profile photo, or phone number) from that provider to create and secure your account.
Location. Food Detecto uses your device location to find restaurants near you and to calculate distances. We request location permission only when needed, and you can choose to select your city or pincode manually instead. You can disable location access at any time in your device settings; some discovery features may then be limited. Location is used only while you use the app and is not continuously tracked in the background.
Camera. Camera access is used solely to scan restaurant QR codes in real time so we can open the right restaurant for you. We do not record, store, or upload camera images during scanning.
Photos. Photo-library access is used only when you choose to upload an image (for example, a restaurant logo or dish photo). We access only the images you select; we do not scan your photo library.
All of these permissions are optional and can be granted or revoked at any time in your device settings.
We do not sell your personal information. We share information only as needed to operate the Service:
We rely on the following trusted providers, each with their own privacy policies:
Your information is stored on Google's secure cloud infrastructure (Google Cloud Platform and Firebase), which we use for authentication, database, file storage, and hosting. Our primary database and storage are hosted in the Mumbai, India region (asia-south1).
International transfers. Some of our service providers (such as Google, Expo, and Razorpay) may process limited data on infrastructure located outside India. Where data is transferred across borders, we rely on these providers' contractual and technical safeguards to protect it in line with this policy and applicable law. Payment-card data is processed by Razorpay on its own PCI-DSS-compliant systems and is never stored on our servers.
We retain your information for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements. When data is no longer required, we delete or anonymise it. Some records, such as transaction history, may be retained longer where required by law (for example, tax and accounting rules).
We implement technical and organisational measures to protect your information, including secure authentication, encrypted connections (HTTPS/TLS), server-side verification of all claim and payment logic, rate limiting, and restricted access controls. No method of transmission or storage is completely secure, but we work continuously to safeguard your data.
You can request deletion of your Food Detecto account and the personal data associated with it at any time, free of charge:
What is deleted: your profile (name, phone, email, date of birth, gender), your push tokens, your claim history, and — for restaurant owners — your restaurant listing, dishes, and uploaded images.
What may be retained: we may retain a limited set of records (such as transaction and payment records) for as long as required by law, and anonymised or aggregated data that no longer identifies you. We complete verified deletion requests within 30 days.
Depending on your location, you may also have rights under applicable data-protection laws (such as India's Digital Personal Data Protection Act, 2023). To exercise any of these rights, email us at sujith@detecto.in.
Food Detecto is not directed to children under the age of 13 (or the minimum age required in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us personal information, please contact us and we will take steps to remove it.
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date above and, where appropriate, notify you through the app. Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.
If you have any questions, concerns, or grievances about this Privacy Policy or your data, contact us at:
We aim to acknowledge grievances within 48 hours and resolve them within a reasonable timeframe in accordance with applicable law.