Privacy
Last updated 11 September 2026
The short version. If you order from a table, we do not collect anything about you — not your name, not your email, not your phone number, not your location. If you run or work at a café, we hold your email address, your name, and the record of what you did in the product.
If you are a café customer
Scanning a QR code opens your café’s menu. It does not create an account and does not ask you for anything about yourself, because the ordering flow has no fields for personal details at all.
What we store when you place an order:
- the items, quantities and options you chose, and the total;
- which table you ordered from, and when;
- a short-lived random token in your browser that lets you see your own order status. It identifies the order, not you, and expires by itself.
We do not know who you are, we cannot contact you, and we cannot link today’s order to one you placed last week. That is a deliberate limit on how much damage any breach of Pixercise could ever do.
We do not use advertising trackers, analytics pixels or third-party cookies on the ordering screens.
If you run or work at a café
You have an account, so we hold:
- your email address, used to sign you in, invite you and reset your password;
- your display name, so that records of actions can say who took them rather than showing an anonymous identifier;
- which cafés you belong to and your role at each;
- a log of significant actions — price changes, voided lines, staff changes, settings changes — with who and when.
Passwords are handled by our authentication provider and are stored hashed. Nobody at Pixercise can see your password, and neither can your café’s owner.
If you send us an enquiry
The form on our homepage stores what you type — your name, your café’s name, your email, optionally your city and your message — plus the IP address and browser it arrived from, which we keep only to recognise spam. We use it to reply to you. We do not send marketing email and we do not share it.
Who can see a café’s data
- Your café’s own team, limited by role. Kitchen staff see orders; prices, staff management and voids need an owner or manager.
- Not other cafés. Separation is enforced by the database itself, not by application code remembering to filter.
- Pixercise operators, for support and to keep the platform running. Anything an operator does to a café is recorded in that café’s log, attributed to them by name.
Payments
Pixercise does not process payments and never sees card details. Your café takes payment on its own till. We hold no financial instrument belonging to you or your customers.
Where it lives, and for how long
Data is stored with our hosting and database providers and is backed up daily. Café data is retained for as long as the café uses Pixercise. If you stop using it, contact us and we will remove your café’s data; we will tell you what is removed and what has to be retained.
Your requests
If you have a Pixercise account you can ask us for a copy of what we hold about you, ask us to correct it, or ask us to delete it. Write to us via the contact page and a person will answer.
For café customers there is usually nothing to request, because there is nothing linked to you.
What we are not claiming
We hold no security certifications and are not claiming compliance with any particular standard or audit regime. We have described above exactly how the system is built so you can judge it on that.
Changes
If this changes materially we will update the date at the top and tell café owners by email.