Privacy Policy

Last updated: 2026. MenuHus (“we”, “us”) operates the SaaS platform at menuhus.com.

Overview

MenuHus is a multi-restaurant software platform. We process personal and business data only to provide the service, improve security, and—when you connect integrations—sync data you authorize (such as Google Ads reporting).

Data we collect

  • Account data: name, email, role, restaurant affiliation, authentication logs.
  • Restaurant operations: menus, tables, reservations, orders, customer messages you choose to store, staff permissions.
  • Usage and diagnostics: aggregated usage, error logs (without secrets), device/browser type for security.
  • Payment-related metadata: subscription status via our billing provider; we do not store full payment card numbers on MenuHus servers.

Google OAuth and Google Ads

If you connect Google Ads, you use Google OAuth. We receive OAuth tokens scoped to what you approve on Google's consent screen. For our current reporting integration we use those tokens to read campaign performance metrics (spend, clicks, impressions, conversions, and related reporting fields)—not to run ads on your behalf without your action in the dashboard.

  • Tokens are stored encrypted using server-side secrets.
  • We do not display OAuth tokens, refresh tokens, or developer tokens on public pages.
  • You select which Google Ads customer account to link.

Why we use this data

  • Provide and secure the MenuHus application.
  • Show your team operational and marketing reporting in one place.
  • Support, fraud prevention, and compliance with applicable law.

Storage and protection

Data is hosted on reputable cloud infrastructure with access controls, encryption in transit (HTTPS), and encryption for sensitive integration tokens at rest. Access is limited to authorized personnel on a need-to-know basis for support and operations.

No sale of personal data

We do not sell your personal information or your Google Ads metrics to third parties. We do not share integration data with advertisers or data brokers.

Retention and deletion

  • When you disconnect Google Ads (or Google Business Profile), we deactivate the connection and stop syncing; tokens can be cleared as part of disconnect.
  • You may request deletion of your account or integration data by contacting us. We will delete or anonymize data unless we must retain it for legal obligations.

Contact

Privacy questions or deletion requests: hus707002h@gmail.com

See also Google Ads API — Reporting Use and Terms of Service.