Privacy Policy

Last updated: January 2026

Caterbase, Inc. ("Caterbase," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our catering business management platform and related services (collectively, the "Service"). Caterbase is headquartered in California, United States.

By using our Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, please do not use our Service.

1. Information We Collect

Account Information

When you create an account with Caterbase, we collect:

  • Name and contact information (email address, phone number)
  • Business name and business contact details
  • Login credentials (password is encrypted and stored securely)
  • Account preferences and settings

Business Data

To provide our catering management services, we store the business data you input into the platform:

  • Customer information (names, contact details, event preferences)
  • Event details (dates, venues, guest counts, special requirements)
  • Menu items, recipes, and pricing information
  • Invoices, quotes, and payment records
  • Staff schedules and assignment data

Usage Data

We automatically collect certain information about how you interact with our Service:

  • Pages viewed and features used within the platform
  • Time spent on different sections of the application
  • Device information (browser type, operating system, device type)
  • IP address and general location data
  • Error logs and performance data

Payment Information

Payment processing is handled by our third-party payment processor, Stripe. We do not directly store your complete credit card numbers or banking information. Stripe collects and processes:

  • Credit/debit card details (processed securely by Stripe)
  • Billing address
  • Transaction history and payment status

2. How We Use Your Information

Providing the Service

We use your information to operate, maintain, and provide the features of our catering management platform, including:

  • Managing your catering events, customers, and menus
  • Processing invoices and facilitating payments
  • Generating reports and analytics for your business
  • Enabling collaboration with your team members

Communications and Notifications

We send notifications to help you manage your catering business:

  • SMS and email reminders about upcoming events
  • Payment confirmations and invoice notifications
  • Service updates and important announcements
  • Customer communication facilitation (when enabled)

Product Improvement

We analyze usage patterns to improve our Service:

  • Understanding which features are most valuable
  • Identifying and fixing bugs and performance issues
  • Developing new features based on user needs
  • Optimizing the user experience

Customer Support

We use your information to respond to your inquiries, troubleshoot issues, and provide technical support to help you get the most out of our platform.

3. Third-Party Services

We work with trusted third-party service providers to deliver our Service. These providers have access to your information only to perform specific tasks on our behalf and are obligated to protect your information.

Payment Processing (Stripe)

We use Stripe for payment processing. When you make a payment, your payment information is sent directly to Stripe and processed according to their Privacy Policy. Stripe is PCI-DSS compliant, ensuring your payment data is handled securely.

Email and SMS Providers

We use email and SMS service providers to send notifications about your events, invoices, and important updates. These providers process your contact information solely for the purpose of delivering messages on our behalf.

Analytics Services

We use analytics tools to understand how users interact with our Service. These tools collect anonymized and aggregated data to help us improve the platform. We do not share personally identifiable information with analytics providers.

4. Your California Privacy Rights (CCPA)

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with specific rights regarding your personal information. This section describes your CCPA rights and how to exercise them.

Right to Know

You have the right to request that we disclose what personal information we have collected about you, the categories of sources from which we collected it, the business purpose for collecting it, and the categories of third parties with whom we share it.

Right to Delete

You have the right to request that we delete the personal information we have collected from you, subject to certain exceptions. Once we receive and verify your request, we will delete your personal information from our records unless an exception applies.

Right to Opt-Out of Sale

We do not sell your personal information. Caterbase does not sell, rent, or trade your personal information to third parties for monetary or other valuable consideration. Because we do not sell personal information, there is no need to opt out of the sale of your data.

Right to Non-Discrimination

We will not discriminate against you for exercising any of your CCPA rights. We will not:

  • Deny you goods or services
  • Charge you different prices or rates for goods or services
  • Provide you a different level or quality of goods or services
  • Suggest that you may receive a different price or rate or different level of quality

How to Exercise Your Rights

To exercise your CCPA rights, you may submit a request by:

  • Emailing us at privacy@caterbase.io
  • Using the privacy request form in your account settings
  • Contacting us at the address provided in the Contact section below

We will verify your identity before processing your request. You may designate an authorized agent to make a request on your behalf. We will respond to verifiable requests within 45 days. If we need more time, we will notify you of the reason and extension period in writing.

5. Data Retention

We retain your personal information for as long as necessary to provide you with our Service and fulfill the purposes described in this Privacy Policy. Specifically:

  • Account Data: We retain your account information for as long as your account is active. If you close your account, we will delete your personal information within 90 days, except where we need to retain certain information for legal or business purposes.
  • Business Data: Your business data (events, customers, invoices) is retained while your account is active and for a reasonable period afterward to allow for data export.
  • Usage Data: Anonymized usage data may be retained indefinitely for analytics and product improvement purposes.
  • Legal Requirements: We may retain certain information as required by law, such as for tax, legal reporting, and auditing obligations.

6. Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. Our security measures include:

  • Encryption of data in transit (TLS/SSL) and at rest
  • Regular security assessments and vulnerability testing
  • Access controls and authentication mechanisms
  • Employee training on data protection and security practices
  • Secure cloud infrastructure with industry-leading providers
  • Regular backups and disaster recovery procedures

While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we continuously work to protect your information using commercially reasonable measures.

7. Contact Information

If you have questions about this Privacy Policy, want to exercise your privacy rights, or have concerns about how we handle your personal information, please contact us:

Caterbase, Inc.

Privacy Inquiries

Email: privacy@caterbase.io

For urgent privacy matters, please include "URGENT" in your email subject line.

8. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make changes:

  • We will update the "Last updated" date at the top of this page
  • For material changes, we will notify you via email or through a notice in the Service
  • We encourage you to review this Privacy Policy periodically

Your continued use of the Service after any changes to this Privacy Policy constitutes your acceptance of the updated policy.

This Privacy Policy is effective as of January 2026. If you have any questions or concerns about this policy or our data practices, please do not hesitate to contact us at privacy@caterbase.io.