Privacy Policy
Effective date: 13 August 2026
Scope: This policy applies to the SitSoon Android staff application and its waitlist service. It does not describe or rename any separately distributed iOS application.
What SitSoon Does
SitSoon is used by authorised venue staff to manage a live waitlist, send transactional SMS updates, and keep short-term operational history. It is not a public customer account or booking application.
Data We Process
For guests, the service may process a first name, phone number, party size, seating preference, staff-entered operational notes, SMS message content and delivery status, waitlist timestamps and status, attention items, and queue history. Staff authentication also processes a staff username or identifier, organisation membership, role, and authentication or session data.
How We Use Data
We use data to authenticate authorised staff, enforce business and role access, operate the shared waitlist, send waitlist and table-ready SMS messages, process cancellation and other guest replies, surface persistent delivery or service issues, provide operational statistics, diagnose faults, protect the service, and support data requests.
Service Providers
SitSoon uses Clerk for staff authentication and organisation membership, Supabase for backend storage and Edge Functions, MobileMessage as the current transactional SMS provider, and Google Play services for Android distribution and updates. These services process only the data needed for their operational, security, or delivery roles.
The Android build accepts a Sentry configuration value reserved for diagnostics, but the current Android source does not include or initialise a Sentry SDK and does not intentionally submit crash reports to Sentry. This policy and the Google Play Data Safety declaration must be reviewed before Sentry or another diagnostics processor is enabled.
Security and Staff Access
Staff accounts are provisioned by the business; SitSoon does not offer public account creation. Access requires authentication and an active authorised business membership. The Android release configuration requires encrypted HTTPS connections, disables app-data backup and device transfer, and protects sensitive app screens from screenshots and recent-task snapshots. Staff should not enter unnecessary sensitive information in operational notes.
Advertising, Tracking, and Sale
SitSoon does not use advertising, cross-app tracking, tracking domains, marketing SMS, loyalty capture, or contact-list importing. Personal data is not sold.
Retention
Identifiable completed waitlist records are retained for up to 30 days for operational history and support. After that period, names, phone numbers, notes, SMS bodies, SMS error messages, attention details, and identifying event metadata are deleted or de-identified; anonymous operational facts may be retained. Active waitlist records remain available while needed to provide the service. Infrastructure, authentication, diagnostics (if enabled), and messaging providers may retain security or delivery records under their own obligations.
Access, Deletion, and Staff Offboarding
Guests may request access to or deletion of their waitlist data. Authorised staff may request account offboarding through their manager or support. Contact nickd3464+sitsoon@gmail.com. We may need to verify a request and may retain limited information where required for lawful security, fraud-prevention, or record-keeping purposes.
Questions
For privacy questions or support, visit the SitSoon support page.