Privacy Policy

Last updated: May 2026

1. Who We Are

Tayim is a trading name of Thrive Haven Ltd ("we", "our", "us"), a company registered in England and Wales (company number 16319387). Our registered office is 22 Waltham Road, Newton Abbot, Devon, TQ12 1LH, United Kingdom.

We operate the tayim.shop platform, which provides white-label restaurant management software. When you use a restaurant powered by Tayim, the restaurant owner is the data controller for the order data they collect from their customers, and Thrive Haven Ltd (Tayim) acts as the data processor on their behalf. For your account data and any data you submit directly to tayim.shop, Thrive Haven Ltd is the data controller.

For any privacy-related question, contact us at hello@tayim.shop.

2. Applicable Law

We process personal data in accordance with the UK GDPR and the Data Protection Act 2018. For visitors and customers in the European Union, the EU GDPR also applies. We rely on the UK Government's adequacy decision and standard data-transfer safeguards where personal data moves between the UK and EU.

2. What Data We Collect

Restaurant owners (account holders): Name, email address, password (hashed), restaurant details (name, address, phone, logo), and usage data.

Customers (ordering food): Name, phone number, email (if provided), delivery address (for delivery orders), order history, and payment method selection.

Automatically collected: IP address, browser type, device information, and pages visited (via standard web server logs).

3. How We Use Your Data

  • To process and deliver your orders
  • To send order confirmations and status updates (email/SMS)
  • To provide restaurant owners with their admin dashboard and analytics
  • To improve our platform and fix technical issues
  • To communicate about account and service updates

We do not sell your personal data to third parties.

4. Data Storage & Security

Data is stored in Google Cloud (Firebase) servers located in the European Union (eur3 region). We use encryption in transit (TLS) and at rest. Authentication is handled by Firebase Authentication with industry-standard security practices.

5. Data Sharing

We share data only with:

  • The restaurant you ordered from - they see your order details to fulfill it
  • Service providers - Firebase (hosting/database), SendGrid/Twilio (email notifications), Vercel (web hosting)

All service providers are GDPR-compliant and process data only on our instructions.

6. Your Rights (UK GDPR / EU GDPR)

You have the right to:

  • Access - request a copy of your personal data
  • Rectification - correct inaccurate data
  • Erasure - request deletion of your data ("right to be forgotten")
  • Portability - receive your data in a machine-readable format
  • Object - object to processing of your data

To exercise any of these rights, email us at hello@tayim.shop. UK residents can also complain to the Information Commissioner's Office (ICO) at ico.org.uk; EU residents may complain to their local data-protection authority.

7. Data Retention

We retain account data for as long as your account is active. Order data is retained for up to 2 years for analytics purposes. You can request earlier deletion at any time.

8. Cookies

We use essential cookies only (authentication session, language preference). We do not use tracking cookies or third-party advertising cookies.

9. Contact

For privacy-related questions, contact us at hello@tayim.shop.