Privacy Policy

Last updated: June 29, 2026

This Privacy Policy explains how BluePlate ("BluePlate", "we", "us") handles information when diners browse daily specials and when restaurant partners manage their accounts. This page is maintained by BluePlate to answer common privacy questions about the service.

1. Who this policy covers

Two groups of people use BluePlate: diners, who browse the public feed without an account, and restaurant partners, who create an account to post specials. We collect different information from each group, described below.

2. Information we collect from diners

Diners do not create an account. If you grant the browser location permission, your approximate coordinates are used only in your device to filter nearby specials and to sort by distance — they are not transmitted to our servers or stored. We collect standard request metadata (IP address, browser type, pages viewed) that any web service receives, and we record an anonymous click count when a special is opened so restaurants can see how their post is performing.

3. Information we collect from restaurant partners

When you register a restaurant account we collect your business name, contact name, email address, phone number, business address, and any photos or descriptions you upload for your specials. If you subscribe, payment details are collected and processed directly by our payment processor (Stripe) — BluePlate does not see or store your full card number.

4. How we use information

We use the information above to operate the service: showing specials to nearby diners, displaying restaurant profiles, sending account and password-reset emails, processing subscription payments, and providing customer support. We do not sell personal information.

5. Service providers

BluePlate relies on third-party providers to run the service. These include our hosting and database provider (Lovable Cloud / Supabase), our payment processor (Stripe), our email delivery provider, and a reverse-geocoding service used to convert postal codes or coordinates into city names. Each provider only receives the data needed to perform its function.

6. Translations

If you choose a language other than English, on-screen text is sent to an AI translation service to be translated. Restaurant names, special titles, descriptions, and photos are user-generated content and may also be sent for translation. Do not upload anything you would not want processed by a translation provider.

7. Cookies and local storage

We use browser local storage to remember your language choice and sort preference, and to keep restaurant partners signed in to their dashboard. We do not use third-party advertising cookies.

8. Data retention and deletion

Restaurant account data and uploaded special images are retained while the account is active. To delete your account or request a copy of the data we hold, email support@blueplate.world from the address on file and we will action the request within a reasonable period.

9. Children

BluePlate is not directed to children under 13 and we do not knowingly collect information from them. Restaurant accounts must be created by an authorized adult representative of the business.

10. Security

Passwords are hashed by our authentication provider and never stored in plain text. Access to restaurant data is restricted by row-level security policies so that one restaurant cannot read or modify another's data. New passwords are checked against the Have I Been Pwned breach database before being accepted. No online service can guarantee absolute security; restaurants are responsible for keeping their login credentials confidential.

11. Changes to this policy

We may update this policy from time to time. The "Last updated" date at the top of the page will change when we do. Material changes affecting restaurant partners will also be communicated by email to the address on file.

12. Contact

Privacy questions, data access requests, and deletion requests can be sent to support@blueplate.world.