Privacy
How Dohos separates a restaurant's own account data from a caller's personal data, and where to find the specific policy that governs each.
Two kinds of interaction produce data that Dohos touches: a restaurant configuring its account, menu, and policies, and a person calling that restaurant's number to place an order or ask a question. This wing is about both, but they're governed differently, and the pages below are organized around that difference rather than around a single undifferentiated "data policy."
For the data that exists to receive, route, confirm, and fulfill a specific restaurant's orders, the restaurant is the one who decides why that channel exists and how the resulting customer relationship is used — Dohos processes it on the restaurant's documented instructions, not on its own judgment. Separately, and narrowly, Dohos is directly responsible for a smaller set of its own purposes: administering restaurant accounts and logins, billing for the service itself, preventing fraud and abuse, keeping the service secure and running, and responding to support, legal, and privacy requests. Those two categories don't blend into each other.
A short list of things are disabled unless a specific, separately reviewed exception turns them on:
- identifying a caller from their voice — a Voiceprint, or any biometric use of speech
- inferring health, emotion, or another protected trait from what someone says or how they say it
- training a general model on a restaurant's or a caller's content
- using order or account data to build advertising profiles, or selling it
- combining one restaurant's data with another restaurant's for any purpose
None of these is a feature waiting on a launch date. Each one is a category that stays closed unless it goes through its own legal and product review first — a decision made deliberately, not a gap left open by omission.
Each page below answers one specific question rather than trying to cover everything at once — the contract, the vendors, the locations, the schedules, the request process, the caller's record, and the training question, each on its own plate.
AI training
What is and is not trained on — owner-controlled.
OPEN →PLATE Nº 085Caller data
What a call leaves behind, and who can see it.
OPEN →PLATE Nº 086Data residency
Where transcripts and configuration live.
OPEN →PLATE Nº 087DPA
The data processing agreement.
OPEN →PLATE Nº 088Retention
Owner-set retention, defaults, and deletion.
OPEN →PLATE Nº 089Rights requests
Access and deletion requests, handled.
OPEN →PLATE Nº 090Subprocessors
The approved-subprocessor register — honest about its current state.
OPEN →This wing describes Dohos's own processing. It doesn't describe a specific restaurant's independent policies — its own privacy notice, its loyalty program, its marketing — which that restaurant controls and is responsible for on its own. It also isn't the place for the legally binding version of any of this: the Privacy Notice is that version — the same facts, written and structured as the notice a person actually agrees to, once one is in effect. A question about how Dohos itself handles account, billing, or security data starts at /contact/legal.