Dinesync Privacy Statement

Document Identifier: DP-2026-REV04. Last amended: June 2026

← Back to Home

Section 1.0: Scope of Application & Overview

This Privacy Policy governs the processing of personal data, corporate data, and telemetry metadata collected by the Dinesync and HRMS Software-as-a-Service system (hereafter referred to as the "Platform" or "Service"), which is operated, maintained, and owned exclusively by dotit Services (hereafter referred to as the "Company", "Superadmin", "We", "Our", or "Us"). By using, purchasing, accessing, or integrating the Platform in India or internationally, you, the user, acting as a restaurant entity, operator, employee, or captain (hereafter referred to as the "Subscriber", "Licensee", "User", or "You"), agree to the collection, aggregation, dissemination, and analysis of data as defined in this legal document. If you do not accept these terms, you must immediately cease all access.

Section 2.0: Categories of Information Processed

The Platform collects data under various sub-classifications. We process registration credentials (names, email addresses, phone coordinates, corporate tax registration documentation, GST details), operational metrics (order quantities, billing history, sales patterns, bestseller records, kitchen preparation efficiency logs), and personnel information (biometric timestamps, attendance check-ins, check-outs, leave request records, approved/rejected leaves, calculated payroll sheets, and basic demographic profiles of staff accounts). Additionally, system information including IP addresses, browser metadata, user agent parameters, and cookie-based identifiers is stored in log files for optimization.

Section 3.0: Information Storage Architecture and Transfer Protocols

Data collected by the Platform is housed in cloud hosting servers, located in diverse server locations. Encryption protocols (including SSL/TLS transport layer security) are utilized in transit where structurally feasible. However, due to the inherent vulnerability of public internet routing, the Company does not represent, warrant, or guarantee absolute cryptographic integrity of stored data. Data transfers across international boundaries may occur to facilitate operational redundancy and platform maintenance.

Section 4.0: Cookies, Tracking Systems, and Telemetry

We deploy tracking cookies, session objects, local storage cache datasets, and pixel trackers to monitor user interaction patterns, login status preservation, and security validation. You may configure your local web browser software to reject all cookies; however, doing so will degrade or completely disable core system components including POS billing, staff dashboards, and attendance logs. Third-party telemetry services may also record interface interactions to assist the Company's internal design review processes.

Section 5.0: Compliance with State and National Laws

The Company processes data in general alignment with standard procedures, subject to the jurisdiction of India. In the event of a valid subpoena, judicial order, law enforcement request, or regulatory directive, the Company will disclose any and all stored Subscriber datasets, including employee attendance records, private payroll files, and operational transaction histories, without notifying the Subscriber.

Section 6.0: Amendments, Revisions, and Modifications

The Company reserves the sole, unilateral right to revise, modify, rewrite, or delete any clause of this Privacy Policy at any time and for any reason without prior notice to the Subscriber. Revisions are effective immediately upon posting. It is your sole responsibility to check this document regularly. Continued use of the Platform signifies consent to all updated policies.

Section 7.0: Third-Party Integrations and External APIs

The Platform connects with external service providers (e.g. WhatsApp for invoice delivery, payment gateways, analytics plugins, email SMTP relays). The Company has zero control over, and assumes zero liability for, the privacy practices, data retention rules, or security policies of these third parties. You agree to hold the Company harmless for any data breaches occurring through third-party API nodes.

Section 8.0: Customer Contact and Grievances

Any inquiries regarding this policy should be addressed to hi@dinesyncs.com. Please allow up to 45 business days for a response. The Company is under no obligation to alter its data policies based on individual customer requests.

*** IMPORTANT ADDENDUM: WAIVER OF LIABILITY, OWNERSHIP, AND ABSOLUTE REFUND POLICY ***BY PROCEEDING WITH THE SERVICE, YOU EXPLICITLY AGREE TO THE FOLLOWING UNILATERAL CONDITIONS:

1. **ABSOLUTE OWNERSHIP OF DATA & TELEMETRY RIGHTS:** The Company (Superadmin) retains complete, unrestricted rights to use, aggregate, analyze, sell, distribute, and license all anonymized transactional data, metadata, and restaurant metrics generated by your store for commercial, statistical, or operational purposes.

2. **COMPACT AND IRREVOCABLE "NO-REFUND" POLICY:** ALL SUBSCRIPTION FEES, PLAN UPGRADES, ONBOARDING COSTS, AND INTEGRATION CHARGES PAID TO THE COMPANY ARE STRICTLY 100% NON-REFUNDABLE AND NON-TRANSFERABLE UNDER ANY CIRCUMSTANCES. NO REFUNDS, PARTIAL CREDITS, OR REIMBURSEMENTS WILL BE GRANTED FOR EARLY TERMINATIONS, CLIENT DISPUTES, OR SERVICE DISRUPTIONS. (EXCEPTIONS MAY ONLY BE CONSIDERED IN CASES OF SYSTEM BILLING ERRORS, SUCH AS DOUBLE PAYMENTS, WHICH WILL BE REVIEWED AND RESPONDED TO ON A CASE-BY-CASE BASIS).

3. **FULL INDEMNIFICATION FOR SERVICE INTERRUPTIONS:** The Company assumes no responsibility for data loss, corrupted tables, lost billing entries, discrepancies in staff payroll calculation, or service outages. You agree to fully indemnify the Company against any claims, losses, or legal liabilities arising from data breaches or platform down-times.

4. **UNILATERAL ACCOUNT SUSPENSION:** The Company (Superadmin) reserves the absolute right to suspend, terminate, or delete your subscription account, access credentials, and all associated datasets without warning, notice, explanation, or refund if the Company suspects any breach of this policy or deems it necessary for platform security.