Privacy Policy

Effective date: 13 August 2026

Scope: This policy applies to the SitSoon Android staff application and its waitlist service. It does not describe or rename any separately distributed iOS application.

What SitSoon Does

SitSoon is used by authorised venue staff to manage a live waitlist, send transactional SMS updates, and keep short-term operational history. It is not a public customer account or booking application.

Data We Process

For guests, the service may process a first name, phone number, party size, seating preference, staff-entered operational notes, SMS message content and delivery status, waitlist timestamps and status, attention items, and queue history. Staff authentication also processes a staff username or identifier, organisation membership, role, and authentication or session data.

How We Use Data

We use data to authenticate authorised staff, enforce business and role access, operate the shared waitlist, send waitlist and table-ready SMS messages, process cancellation and other guest replies, surface persistent delivery or service issues, provide operational statistics, diagnose faults, protect the service, and support data requests.

Service Providers

SitSoon uses Clerk for staff authentication and organisation membership, Supabase for backend storage and Edge Functions, MobileMessage as the current transactional SMS provider, and Google Play services for Android distribution and updates. These services process only the data needed for their operational, security, or delivery roles.

The Android build accepts a Sentry configuration value reserved for diagnostics, but the current Android source does not include or initialise a Sentry SDK and does not intentionally submit crash reports to Sentry. This policy and the Google Play Data Safety declaration must be reviewed before Sentry or another diagnostics processor is enabled.

Security and Staff Access

Staff accounts are provisioned by the business; SitSoon does not offer public account creation. Access requires authentication and an active authorised business membership. The Android release configuration requires encrypted HTTPS connections, disables app-data backup and device transfer, and protects sensitive app screens from screenshots and recent-task snapshots. Staff should not enter unnecessary sensitive information in operational notes.

Advertising, Tracking, and Sale

SitSoon does not use advertising, cross-app tracking, tracking domains, marketing SMS, loyalty capture, or contact-list importing. Personal data is not sold.

Retention

Identifiable completed waitlist records are retained for up to 30 days for operational history and support. After that period, names, phone numbers, notes, SMS bodies, SMS error messages, attention details, and identifying event metadata are deleted or de-identified; anonymous operational facts may be retained. Active waitlist records remain available while needed to provide the service. Infrastructure, authentication, diagnostics (if enabled), and messaging providers may retain security or delivery records under their own obligations.

Access, Deletion, and Staff Offboarding

Guests may request access to or deletion of their waitlist data. Authorised staff may request account offboarding through their manager or support. Contact nickd3464+sitsoon@gmail.com. We may need to verify a request and may retain limited information where required for lawful security, fraud-prevention, or record-keeping purposes.

Questions

For privacy questions or support, visit the SitSoon support page.