Privacy Policy

Buzz for Business · Last updated 28 August 2026

Buzz ("we", "us") provides point-of-sale and operations software for food & beverage businesses, available on the web and through the Buzz for Business iOS and Android apps. This policy explains what we collect, why, and the choices you have. Buzz is operated by Occam Technologies (Singapore); contact us at support@getbuzzin.app.

Information we collect

  • Account information — name, work email address, and role, provided when a business owner or manager creates staff accounts. Accounts are provisioned on the web; the mobile apps are sign-in only.
  • Business records — products, sales transactions, schedules, shift and attendance records, chat messages, and photos your team uploads (for example product images or standard-operating-procedure photos). These belong to the business you work for.
  • Mobile app location — after you clock in and grant location permission, the native iOS or Android app records periodic precise or approximate location readings until you clock out, including while the app is in the background. Authorized owners and administrators in your business can review this shift trail for attendance and dispute evidence. If you deny permission, attendance still works but the shift is shown as untracked. When an authorized owner or manager starts Tap to Pay setup, the app may separately request foreground location permission because Android and Stripe require it to discover and connect the payment reader; Buzz does not store a location coordinate from that setup.
  • Mobile app technical data — the iOS and Android apps collect an app installation identifier, push notification token, device type, crash and diagnostic logs, and the app screen involved when an error occurs. We use this data to deliver notifications, keep the apps secure, and fix problems. The native apps do not run browser fingerprinting.
  • Web security data — when you use Buzz in a web browser, we collect pseudonymous device, browser, and IP address signals to protect accounts and prevent abuse. After suspicious events, such as repeated failed sign-ins, we may collect more detailed browser fingerprint and mouse or keyboard behaviour signals, and location if you grant permission.

How we use it

  • To operate the service: process sales, build schedules, record attendance, deliver notifications, and show your business its own analytics.
  • To keep accounts secure: authentication, rate limiting, and fraud/abuse detection.
  • We do not sell personal data, use it for third-party advertising, or track you across other companies' apps and websites.

Payment information

Card payments are processed by Stripe. Card numbers are handled by Stripe's certified systems and never touch Buzz servers. Stripe's privacy policy is at stripe.com/privacy.

Sharing

We share data only with the service providers that run Buzz — hosting (Vercel), database and storage (Supabase), payments (Stripe), and email delivery (Resend) — each acting under contract as a processor. Your business data is visible to authorized members of your own business, according to the roles its owner sets. We disclose information if required by law.

Retention & deletion

Business records are retained while the business account is active, and sales records as required by accounting and tax law. Staff accounts are deactivated by the business owner. Web security signals used for abuse prevention are retained for up to 365 days. Shift location readings and their derived trail flags are retained for up to 12 months. To request deletion of your personal data, email support@getbuzzin.app and we will respond within 30 days.

Security

Data is encrypted in transit, access is role-based and tenant-isolated, and public endpoints are rate-limited and monitored.

Changes

We will post any changes to this policy on this page and update the date above.