Privacy Policy
1. Information We Collect
When you interact with our website or create an account, we may collect the following details:
- Personal Identifiers: Name, student/faculty email address, and 10-digit mobile phone number.
- Authentication Credentials: Securely hashed passwords (via bcrypt) or basic Google profile tokens if you authenticate using Google OAuth (name and email).
- Order & Transaction Details: Items purchased, total billing amount, transaction timestamps, digital QR token identifiers, and payment reference numbers.
- Technical & Log Data: Internet Protocol (IP) address, browser user-agent, device type, and login timestamps to detect suspicious activity and ensure network security.
2. Financial Information & Payment Gateways
3. How We Use Your Information
Your information is used strictly for legitimate canteen operations:
- To process, cook, and fulfill your meal orders efficiently without queue delays.
- To generate unique, secure digital QR tokens for verified food pickup at the canteen counter.
- To verify phone numbers via OTP and send critical order status or refund notifications.
- To coordinate department bulk catering requests for college events and symposiums.
- To prevent automated bot abuse, spam, and duplicate submissions using Google reCAPTCHA.
- To comply with regulatory standards and accounting audits required for catering concessionaires.
4. Cart Storage & Session Privacy
In accordance with our user privacy enhancements:
- In-Memory Cart: Your active meal selections in the cart are kept strictly in temporary session memory during your visit and are not persistently written to permanent tracking storage or shared with third parties.
- Session Authentication: We utilize local storage strictly to keep your secure session JWT token active while you are logged in, ensuring you do not have to re-enter your password on every page click.
- Immediate Logout Clean-up: When you log out, your authentication token, user information, and temporary cart keys are immediately cleared from your browser.
5. Data Security & Protection Safeguards
We deploy robust technical and organizational measures to safeguard your personal data:
- All web communications are encrypted in transit over HTTPS with SSL/TLS certificates.
- Passphrases are hashed with industry-standard cryptographic algorithms before being committed to our database.
- Database records are protected by strict role-based access controls, ensuring only authorized canteen staff and administrators can access order fulfillment data.
6. Third-Party Service Providers
We work only with vetted, reputable technology providers necessary to run our service:
- Zoho Payments: Payment gateway partner for processing UPI, card, and net banking transactions.
- Google Identity & reCAPTCHA: For optional one-click sign-in and bot/spam prevention.
- Firebase / Google Cloud: For reliable phone authentication and SMS OTP delivery.
These partners only receive the minimal data required to execute their specific service under strict confidentiality commitments.
7. Your Data Rights & Control
As a valued member of the campus community, you have the right to:
- Review and update your profile details and contact number in your account settings.
- Review your complete past order and transaction history anytime under My Orders.
- Request the closure or deletion of your account and associated personal data by contacting our administrator.
8. Updates to This Privacy Policy
We may update this Privacy Policy periodically to reflect technological improvements or regulatory adjustments. Any revisions will be posted directly to this page with an updated effective date.
9. Contacting Our Privacy Officer
For questions or concerns regarding our privacy practices or your data, please contact us:
Email: kitcbecanteen@gmail.com
Helpline: +91 9843017724
Address: Central Food Court, Kalaignar Karunanidhi Institute of Technology (KIT), Kannampalayam Post, Coimbatore, Tamil Nadu – 641402.