Privacy Policy

Last updated: 1 July 2026

This Privacy Policy explains how MenuPost ("we", "us") collects, uses, holds and discloses personal information. We handle personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

Collection notice (summary)

This short notice summarises how we collect your personal information, in line with APP 5. Full detail is in the sections below.

  • What & why: we collect your account, restaurant, social/Google authorisation and usage data to provide MenuPost's services (caption generation, scheduling, publishing, review management and performance analysis) — see sections 1–2
  • If you don't provide it: some or all features may not be available to you
  • Who we disclose to: service providers needed to run the service — Google (Gemini, Business Profile), Meta, Cloudflare and, for paid plans, a payment processor (section 3). We do not sell your personal information
  • Overseas disclosure: your information may be stored or processed outside Australia (e.g. Singapore, and the United States via Google/Meta/Cloudflare) — see section 8 and APP 8
  • Access, correction & complaints: you can access or correct your information, or make a complaint, as set out in section 10 (including the OAIC)
  • Collection source: we collect information directly from you, and — only with your authorisation — from Google and Meta on your behalf

1. Information we collect

When you use MenuPost, we collect:

  • Account details: email and name (via Google sign-in or email sign-up)
  • Restaurant details: venue name, cuisine, menu, brand voice, address, phone, average spend and other settings you choose to enter
  • Social platform authorisation: OAuth access tokens for Facebook / Instagram / Threads (stored encrypted)
  • Google Business Profile authorisation: OAuth access token (scope business.manage, stored encrypted), and — once you authorise it — your Google reviews, ratings, reviewer display names and reply status
  • Business performance data: once authorised, performance metrics from your Google Business Profile (direction requests, calls, website clicks, bookings, online orders, business impressions, etc.); and (where you authorise Meta insights) reach, engagement and saves from Instagram / Facebook
  • Customer search keywords: once authorised, the aggregated keywords customers used to find your business on Google
  • Existing social content: when you use "AI style learning", we read recent post text from your connected social accounts to analyse and learn your brand voice
  • Usage records: AI generation counts, published and scheduled posts, review replies, referral codes and referral rewards, and similar activity
  • Billing information: subscription status and any billing details you provide. During paid plans, card payments are handled by our third-party payment processor — we do not store your card number

2. How we use your information

We use your information to:

  • Provide core services such as AI caption generation, design, scheduling and publishing, and review management
  • Performance analysis (Marketing Brain): combine your posts with your business / social performance to provide attribution, monthly reports and rough estimates of customers / revenue (estimates only, not a guarantee)
  • Performance-based suggestions: where real performance data exists, highlight the content types, dishes and posting times that perform better so you can write more of them (see section 7)
  • Seasonal and review loops: recommend timely content around holidays and occasions; analyse your reviews to surface signature dishes and areas to improve
  • Calculate plan usage and enforce plan limits
  • Improve our product and compute peer comparisons using de-identified, aggregated data (see section 6)
  • Show service status notices in the app (e.g. payment failure, plan expiry)

3. Disclosure of information

We do not sell your personal information. We disclose information to third-party service providers only as needed to provide the service, and only the minimum required:

  • Gemini AI (Google): when generating AI captions, your post topic, menu and restaurant settings are sent to the Google Gemini API; when generating review-reply suggestions and "review insights", the relevant review content is also processed by Gemini
  • Meta Graph API: when publishing, your captions and images are published to the accounts you authorise via the Meta API
  • Payment processor: for paid plans, subscription payments are handled by our third-party payment processor
  • Cloudflare R2: uploaded images are stored in Cloudflare R2 object storage

4. Google user data and Google Business Profile

When you connect your Google Business Profile via Google authorisation, we access and process your Google data within the scope you expressly authorise:

  • Scope: via the Google Business Profile API and Business Profile Performance API (OAuth scope business.manage), accessing your business profile, reviews and performance data after your consent
  • Data obtained: (a) review content, ratings, reviewer display names, review times and reply status; (b) performance metrics (direction requests, calls, website clicks, bookings, online orders, impressions, etc.); (c) aggregated customer search keywords
  • Purpose: to display and manage reviews, generate review insights, provide attribution and reports in "Marketing Brain", suggest what to post based on performance, and optimise captions using search keywords. All review replies are sent only after you confirm them — we never auto-post replies on your behalf without your confirmation
  • Storage: review and performance data is cached in our database (Neon / PostgreSQL); Google OAuth access tokens are stored encrypted with AES-256-GCM
  • Disclosure: we do not sell your Google data; we send relevant review content to the Google Gemini API only to generate reply suggestions or review insights for you
  • Revocation and deletion: you can revoke Google authorisation at any time on the "Platform settings" page, after which we stop accessing your Google data; you can also email us to request deletion of synced review and performance data

MenuPost's access to and use of Google user data (including reviews, performance and search keywords) complies with the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we do not use Google user data for serving advertisements, do not sell or transfer it to third parties, and do not use it to train general-purpose or third-party AI models; humans may review it only to provide a feature you requested, with your explicit consent, or where required by law.

5. Facebook / Instagram / Threads (Meta platforms) data

When you connect a Meta account, we access and process your data within the scope you consent to, via the Meta Graph API:

  • Scope: the Facebook Pages and Instagram business accounts you manage (scopes including pages_show_list, pages_manage_posts, pages_read_engagement, instagram_basic, instagram_content_publish; if you separately authorise insights, also read_insights, instagram_manage_insights)
  • Purpose: to publish captions and images to the accounts you authorise; to read your Page / IG public profile and recent posts for "auto-fill restaurant settings" and "AI style learning"; and, once you authorise insights, to read reach, engagement and saves for "Marketing Brain"
  • Storage: Page / IG access tokens are stored encrypted with AES-256-GCM; publishing and performance records are stored in our database
  • Disclosure: we do not sell your Meta data; content is only sent to your accounts via the Meta API
  • Revocation and deletion: you can revoke Meta authorisation at any time on the "Platform settings" page; you can also delete your account to remove all related data

MenuPost's access to and use of Meta platform data complies with the Meta Platform Terms and Developer Policies.

6. De-identified and aggregated data

To provide peer benchmarks and continually improve the service, we use parts of different restaurants' operational and performance data in a de-identified, aggregated form:

  • Aggregated data is only shown as "the average for similar venues" and never reveals any single venue's figures, name or identifiable information
  • Averages are only calculated once enough venues are in the set (a threshold), to prevent re-identification of any individual venue
  • Use is limited to: showing you "you vs similar-venue average" comparisons, providing suggestions for new-venue cold starts, and improving our product algorithms
  • This aggregated data is de-identified and is no longer personal information that identifies a specific individual

7. Automated processing

  • Most captions, image text and suggestions are generated automatically by AI (Google Gemini) and are for reference only; you review and publish everything yourself
  • Where real performance data exists, the system highlights the more effective content types, dishes and posting times as suggestions; before any real performance data exists, related analysis is shown using sample data and is not used for automated decisions
  • You can turn off seasonal triggers and other automation at any time

8. Data retention and storage location

  • Account and restaurant data is retained while you use the service; after you delete your account, related data is deleted (records we are legally required to keep are retained as required by law)
  • Cached data such as reviews, performance and search keywords is refreshed periodically; once you revoke the relevant authorisation or email a request, we stop accessing and delete that cache
  • Data is primarily stored in Neon (PostgreSQL, in the Singapore ap-southeast-1 region). Some third-party providers (Google, Meta, Cloudflare, etc.) operate servers outside Australia. Consistent with APP 8, by using the service you acknowledge and consent to the cross-border disclosure of your information to these providers as necessary to provide the service

9. Data security

We take the following measures to protect your data:

  • Social platform and Google access tokens are stored encrypted with AES-256-GCM
  • All connections use HTTPS encrypted transport
  • Our database is hosted on Neon (PostgreSQL) with encryption and backups

10. Your rights

Under the Privacy Act 1988 (Cth) and the Australian Privacy Principles, you may:

  • Request access to the personal information we hold about you
  • Request correction of that information
  • Ask us to stop collecting, processing or using it
  • Request deletion

You can exercise these rights by:

  • Updating your details on the "Restaurant settings" page
  • Revoking social platform and Google authorisation on the "Platform settings" page
  • Permanently deleting your account and all related data yourself on the "Restaurant settings" page (this cannot be undone; any active subscription is also cancelled)
  • Emailing support@menupost.net for any other request or assistance

Please note: if you ask us to stop processing or delete core data, some or all features may no longer be available.

If you have a privacy complaint, please contact us first at support@menupost.net and we will respond. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

11. Cookies and similar technologies

We keep cookies to the minimum needed to run the service:

  • Essential cookies: used to sign you in and keep your session secure. The service cannot function without these
  • Functional cookies: used to remember short-lived state during flows such as onboarding and accepting a team invite
  • No advertising or third-party tracking cookies: we do not use cookies to serve ads or track you across other websites, and we do not currently run third-party analytics such as Google Analytics

You can block or delete cookies in your browser settings, but essential cookies are required to log in and use MenuPost. If we add analytics in future, we will update this policy.

12. Contact us

For any privacy questions, contact: support@menupost.net