Privacy Policy
How Cipta handles your data
Effective: June 15, 2026
Cipta is a per-dish restaurant feedback platform. Customers rate the dishes they had at a restaurant, and the restaurant operator sees the ratings privately in their dashboard. This page explains what data we collect, how we use it, and the rights you have over it. We tried to keep it short and in plain English.
Who we are
Cipta is operated by Hermann Nike, a sole proprietor based in Texas, United States. Our service is currently available in the Dallas-Fort Worth region as part of a pilot program. Reach us at privacy@getcipta.com for any privacy question, request, or concern.
What we collect
When you rate a meal through Cipta, we collect:
- The star rating you give each dish (1 to 5 stars).
- Any written comment you choose to leave on a dish.
- Your contact information (email or phone number) only if you explicitly tap "Ask management to follow up" and enter it.
- Receipt metadata when present: order number, check number, table number, server name, and timestamp. We read these from the photo you snap if you use the snap-receipt feature.
- A SHA-256 hash of your receipt photo. We use this for duplicate detection. We do not store the photo itself.
- Basic anonymous usage signals (which page you reached, the device type, the restaurant slug you scanned). Standard for any web application; no advertising tracking.
What we do not collect:
- Your name or identity (unless you provide it for a callback).
- Your payment information. We never touch your credit card.
- Your receipt photo. After we extract the dishes and metadata, the image is discarded. We keep only its hash.
- POS data from the restaurant. Cipta does not integrate with the restaurant's point-of-sale system.
- Anything from social media accounts, advertising IDs, or trackers.
Who sees your data
By default, only the restaurant operator sees your ratings. Specifically:
- The restaurant operator (the business owner or their general manager) sees your ratings, comments, and any callback contact info you provided. This is the primary purpose of the product.
- Cipta engineers may view aggregated and individual ratings to debug issues, monitor service health, and improve the product. We treat your data with discretion and never publish or share it externally.
- OpenAI, only when you use the snap-receipt feature. We send your receipt photo to OpenAI's GPT-4o vision API to read the dishes. OpenAI's data policy applies for that processing. OpenAI states it does not train on data sent through the API.
- Resend, our email provider, when an operator notification is sent. They handle the email delivery and do not retain your data beyond standard email logs.
- Supabase, our database host, stores the ratings and account data we collect. Their infrastructure is hosted in the US East region.
- Vercel, our application host, processes web requests. They do not store your ratings; they run the app.
- Public sharing only with your opt-in. Your review is never posted publicly (on Cipta's site, on Google, etc.) unless you tap one of the explicit "Share" buttons on the Confirmation page. Even then, we only share what you composed; we do not add your contact information or identify you by name.
How long we keep it
- Ratings and comments: kept indefinitely for the restaurant operator's analysis, until you ask us to delete them.
- Callback contact info: kept until the callback is resolved by the operator, then deleted within 90 days.
- Receipt OCR logs (hash + dish counts + cost tracking): kept for 90 days for service health monitoring, then deleted.
- Operator account data: kept as long as the account is active. If the operator closes their account, their restaurant data is deleted within 30 days unless they ask us to preserve it.
Your rights
You can ask us to:
- Show you a copy of the data we have about you.
- Delete your ratings, comments, and contact info.
- Take a publicly-shared review off Cipta's pages (Google and external sites are governed by their own rules).
- Stop processing your data while you decide.
Email privacy@getcipta.com and we'll respond within 14 days. Because our service is small and mostly anonymous, identifying your data may require you to provide additional context (such as the restaurant you reviewed and the approximate date).
Text messages (SMS)
Cipta sends text messages in two situations, and only after the recipient opts in:
- Restaurant managers who turn on "SMS alerts" in their Cipta settings receive a text when a dish gets a low (1 or 2 star) rating, so they can respond quickly.
- Guests who tap "Ask management to follow up" and enter a phone number may receive a reply by SMS from the restaurant's manager about the feedback they left.
Message frequency varies. Message and data rates may apply. Reply STOP to any message to opt out, or HELP for help. Opting out of SMS does not affect your ability to use the rest of Cipta.
Mobile phone numbers and SMS opt-in consent are never shared with or sold to third parties for marketing. They are used only to deliver the messages described above.
Cookies and sign-in
Customers leaving ratings do not need an account and do not set cookies beyond what's required for the page to load. Restaurant operators sign in to manage their dashboard; we use a standard authentication cookie from our database provider (Supabase) to keep them signed in. We do not run advertising cookies, third-party trackers, or analytics tools that share data with marketers.
Children
Cipta is not directed to children under 13. We do not knowingly collect data from anyone under 13. If you believe we have, contact privacy@getcipta.com and we will delete it.
Changes to this policy
When we materially change how we collect or use your data, we update this page and bump the effective date at the top. Operators are notified by email. Continued use of Cipta after a change means you accept the updated policy.
Contact
Questions, requests, or concerns about this policy or your data: privacy@getcipta.com. We aim to respond within 14 days.
Cipta · The receipt is the review
← Back to home