Back to home
Legal Last updated: July 2026

Privacy Policy

How CartaDigitalizada processes your data: account, digital menu, time clock, bookings, community, Stripe payments, cookies and GDPR rights.

1. Data controller

The controller of personal data processed through the CartaDigitalizada platform (website, dashboard, public menus, time-clock module and community) is the service operator. To exercise rights or for privacy queries: cartadigitalizada@gmail.com.

When a restaurant or company uses the platform to collect diner data (e.g. bookings) or employee data (time clock), that customer acts as controller of those data and CartaDigitalizada as processor to provide the technical service.

2. Scope

This policy applies to: the site and landings; registration and sign-in (menu and time clock); the management dashboard; public digital menus (QR menu); the time-clock module; the venue community; the resources blog; support; and related payment processes.

3. Data we process

Depending on how you use the service, we may process:

  • Account: name, email address, password (stored encrypted), signup product (menu or time clock), plan, trial/expiry dates, referral code and access history relevant to security.
  • Business / menu: venue name, description, opening hours, address, phone, social networks, images (logo, backgrounds, dishes), template settings, menu languages and optional Google Analytics ID for the venue itself.
  • Menu: categories, dishes, prices, allergens, tags, photos and texts you publish.
  • Bookings (Premium plan or options that enable them): name, email, phone, number of diners, date/time, notes and language of the diner's request.
  • Reviews and community: scores/comments on the menu; posts, likes, comments and follows between venues.
  • Time clock / attendance: site data (location and geofence radius), employees and clock-in/out/break records needed for the module.
  • Usage and statistics: menu visits (e.g. IP, user-agent and approximate geolocation derived from the IP), dish views and aggregated dashboard/admin metrics.
  • Support: content of tickets and messages you send us.
  • Payments: billing and subscription status via Stripe. We do not store full card numbers on our servers.
  • Anti-spam security: Google reCAPTCHA tokens on sign-in/registration forms.
  • Operational marketing: emails related to the service; you may unsubscribe from non-essential communications when that option is available.

4. Purposes

  • Create and maintain your account and provide digital menu, time clock, community and contracted features.
  • Process bookings, email notifications and related confirmations.
  • Charge plans and products (Basic, Premium, annual time clock, Enterprise or others) through Stripe.
  • Show menu usage statistics and improve the product.
  • Handle support, security, abuse prevention and legal compliance.
  • Measure platform audience with analytics in production environments, when active.
  • Show non-personalized Google AdSense ads on public content pages and on Free or Basic plan menus, when active.

5. Legal bases (GDPR)

  • Performance of a contract: registration, SaaS delivery, payments and features you request.
  • Legitimate interest: security, fraud prevention, service improvement and aggregated usage statistics.
  • Legal obligation: when tax or retention rules require it (e.g. invoicing).
  • Consent: where applicable (e.g. certain non-essential cookies or optional communications).

6. Recipients and processors

We do not sell your data. We may share it with providers needed to operate the service, under contract or appropriate terms:

  • Stripe: payments, subscriptions, billing portal and fraud prevention.
  • Google: reCAPTCHA (auth security), Google Analytics 4 in production (platform audience measurement and, if you configure it, your menu) and, when enabled, Google AdSense (non-personalized ads on content pages).
  • Email provider / hosting and storage infrastructure needed to send notifications and store files (menu images, community, etc.).
  • Maps / geolocation services (e.g. OpenStreetMap, Leaflet or geo-IP APIs) for time-clock geofence, visit maps or business lead capture depending on the feature used.
  • Competent authorities when there is a legal obligation.

7. Cookies and local storage

We use cookies and similar technologies essential for the authenticated session and site operation.

In production we may load Google Analytics 4 (Google measurement cookies/identifiers) on landings, dashboard and public menus according to the current configuration.

If AdSense is enabled, we may show non-personalized Google AdSense ads on /recursos articles, commercial SEO pages and /funcion pages. They may also appear on the public menu of venues on the Free or Basic plan. They are not shown on Premium menus (including trial), the dashboard or the home page.

In the browser we may also store preferences in localStorage (e.g. landing intro, PWA banner) and register a service worker for the installable experience (PWA), without replacing session cookies.

Google reCAPTCHA may set Google's own cookies when using login/registration.

8. Retention and account deletion

We retain data while the account is active and for the time needed for the purposes described. When the account is deleted, the system cancels Stripe billing where applicable and effectively deletes associated local data (menus, menu items, visits, bookings, user community, tickets, linked time-clock records, etc.), leaving only what is essential for legal obligation or a minimal deletion audit trail.

Technical backups may take additional time to rotate. Diner or employee data that the customer exported outside the platform remain their responsibility.

9. Your rights

You may exercise access, rectification, erasure, objection, restriction and portability, and withdraw consent when the basis is consent, by writing to cartadigitalizada@gmail.com. You may also lodge a complaint with the Spanish Data Protection Agency (AEPD) or an equivalent authority.

If you are a diner or employee and your data are processed by one of our customer venues, please address your request to that venue first; we will assist as processor when appropriate.

10. Minors

The service is aimed at professionals and businesses. It is not intended for children under 14. If we detect an account of a minor without an adequate basis, we will delete it.

11. International transfers

Some providers (e.g. Stripe or Google) may process data outside the European Economic Area. In those cases, standard contractual clauses or other safeguards recognised by the GDPR are used where applicable.

12. Changes

We may update this policy to reflect product or legal changes. The «Last updated» date indicates the current version. If a change is material, we will try to notify you by reasonable means (e.g. email or a notice in the dashboard).