Privacy Policy

Last updated: March 2026

1. Introduction

MISE is a professional kitchen management system designed for commercial restaurants. We take your privacy seriously and are committed to protecting the personal and business data you share with us. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data.

If you have any questions about this policy, contact us at support@miserun.com.

2. Information We Collect

We collect only the information necessary to provide and improve the service:

  • Account data — your name, email address, and restaurant information provided during registration.
  • Usage data — features used and actions taken within the application (e.g., which pages you visit, buttons clicked), collected in anonymized, aggregated form.
  • Kitchen data — inventory items, recipes, staff schedules, and sales data you enter into MISE. This data is stored privately and is never shared with third parties.
  • Authentication data — credentials managed via Google OAuth or email/password. Passwords are hashed and never stored in plain text.

3. How We Use Your Information

We use the information we collect solely for the following purposes:

  • To provide and operate the MISE service.
  • To improve the service based on anonymized usage patterns.
  • To send important service updates (e.g., maintenance windows, policy changes).
  • To respond to support requests you initiate.

We do not use your data for advertising, and we never sell it to third parties.

4. Data Storage & Security

  • All data is stored in Supabase, encrypted at rest and in transit using TLS.
  • Infrastructure is hosted on ISO 27001 compliant data centers.
  • Regular automated backups are performed.
  • We never sell your data to third parties under any circumstances.

5. Third-Party Services

We use the following third-party services to operate MISE. All are contractually bound to protect your data and may not use it for any other purpose:

  • Supabase — database and authentication infrastructure.
  • Vercel — application hosting and content delivery.
  • Google OAuth — optional authentication provider.
  • Stripe / Mercado Pago — payment processing (when applicable). Payment card details are handled entirely by these processors and never stored on our servers.

6. Data Retention

  • Active accounts — data is retained indefinitely while your subscription is active.
  • Account deletion — all personal data is permanently deleted within 30 days of account closure.
  • Backup copies — purged within 90 days of deletion.

7. Your Rights

You have the following rights regarding your data:

  • Access your data at any time through the application.
  • Export a full copy of all your data.
  • Delete your account and all associated data.
  • Opt out of non-essential email communications.

To exercise any of these rights, contact support@miserun.com.

8. Cookies

We use session cookies solely for authentication — to keep you logged in between page visits. We do not use tracking cookies, analytics cookies, or any advertising cookies.

9. Children's Privacy

MISE is intended exclusively for professional kitchen and business use. We do not knowingly collect personal data from individuals under the age of 16. If we become aware that such data was collected inadvertently, we will delete it immediately. Contact us at support@miserun.com if you believe this has occurred.

10. Changes to This Policy

We will notify all users by email at least 14 days before any material changes to this Privacy Policy take effect. Continued use of MISE after the effective date of a change constitutes your acceptance of the updated policy.

11. Contact

For any privacy-related questions, data access requests, or concerns, please contact us at support@miserun.com. We aim to respond to all privacy inquiries within 5 business days.