Privacy Policy
MiseCentral LLC ("MiseCentral," "we," "us," or "our") respects your privacy. This Privacy Policy describes how we collect, use, disclose, and protect Personal Data when you visit our Website, interact with our marketing and sales channels, or use the Services as a Customer or Authorized User.
This Privacy Policy does not apply to third-party websites, Connected Services, or partner platforms that we do not control. Those services are governed by their own privacy policies.
1. Scope and Roles
1.1. Website and Business Contacts. When MiseCentral determines the purposes and means of processing Personal Data for the Website, marketing, events, recruiting, and pre-contractual communications, MiseCentral acts as a controller (or equivalent under applicable Data Protection Laws).
1.2. Services. When a Customer uses the Services, MiseCentral generally processes Personal Data contained in Customer Data on the Customer's instructions as a processor or service provider, as further described in the Data Processing Addendum ("DPA") executed with that Customer. Customer is responsible for providing any required notices to its Authorized Users and other data subjects and for establishing lawful bases for processing Customer Personal Data in the Services.
1.3. Defined Terms. Capitalized terms not defined in this Privacy Policy have the meanings given in the MiseCentral Legal Drafting Canon and applicable Agreement. "Personal Data" means personal data or personal information as defined under applicable Data Protection Laws. "Customer Personal Data" means Personal Data processed by MiseCentral on behalf of a Customer in connection with the Services.
2. Personal Data We Collect
2.1. Information You Provide. We may collect name, business contact details, job title, company name, account credentials, communications with us, demo or trial requests, support inquiries, billing contacts, and other information you choose to submit through the Website, Agreement process, or Services administration.
2.2. Customer Data and Operational Context. In the Services, we process Customer Data submitted by or on behalf of Customers and Authorized Users, which may include workforce-related records, operational assignments, quality and food-safety documentation, traceability records, timestamps, attachments, audit logs, Connected Device identifiers, integration metadata, and Operational Evidence. The categories of Customer Data depend on Customer configuration and hospitality workflows.
2.3. Automatically Collected Information. We and our service providers may automatically collect device and usage information, such as IP address, browser type, operating system, pages viewed, referring URLs, session identifiers, crash logs, and similar diagnostic data through cookies, pixels, and comparable technologies as described in our Cookie Policy.
2.4. Support Mode and Partner Support Mode. When enabled by Customer, MiseCentral or an authorized Partner may access Customer environments through ticket-bound, audited Support Mode or Partner Support Mode sessions to provide assistance. Such access is logged, time-limited, and governed by Customer permissions and the Agreement.
2.5. Sources. We collect Personal Data directly from you, from Customers (for Authorized Users), from Connected Services integrated at Customer direction, from service providers assisting our operations, and from publicly available business sources where permitted by law.
3. How We Use Personal Data
3.1. We use Personal Data to:
(a) provide, operate, maintain, secure, and improve the Website and Services; (b) create and administer accounts, process subscriptions, and fulfill Agreements; (c) provide customer support, training, and Professional Services; (d) send transactional, security, and administrative communications; (e) send marketing communications where permitted by law and subject to opt-out rights; (f) analyze usage to improve functionality, reliability, and user experience; (g) detect, prevent, and respond to fraud, abuse, and security incidents; (h) comply with legal obligations and enforce our agreements and policies; and (i) generate Aggregated Data that does not reasonably identify Customer or individuals.
3.2. Operational Intelligence. We use Customer Data to provide Operational Intelligence, Company Brain, Work Intelligence, and related capabilities that produce insights, alerts, and Operational Recommendations for Customer. Operational Recommendations are advisory; Customer remains responsible for operational and compliance decisions.
3.3. No Unauthorized Model Training. MiseCentral does not use Customer Data to train foundation models for unrelated customers unless Customer provides documented authorization or the data has been aggregated or de-identified such that it cannot reasonably identify Customer or individuals.
3.4. Legal Bases (EEA, UK, and Similar Jurisdictions). Where required, we rely on one or more of the following legal bases: performance of a contract; legitimate interests in operating and improving our business, securing systems, and communicating with business contacts, balanced against data subject rights; consent where required (for example, certain cookies or marketing); and compliance with legal obligations.
3.5. Service Provider Restrictions (U.S. State Privacy Laws). When processing Customer Personal Data on behalf of a Customer, we process such data only for the business purposes specified in our Agreement and DPA, do not sell or share Customer Personal Data as those terms are defined under applicable U.S. state privacy laws, and do not retain, use, or disclose Customer Personal Data for purposes other than providing the Services except as permitted by applicable law and our DPA.
4. How We Disclose Personal Data
4.1. We may disclose Personal Data to:
(a) Service Providers and Subprocessors that assist with hosting, infrastructure, analytics, communications, payment processing, customer support, and security, subject to contractual confidentiality and data protection obligations; (b) Partners implementing or supporting the Services where authorized by Customer and governed by Partner agreements; (c) Customers regarding their Authorized Users and account administration; (d) Affiliates for internal operations consistent with this Privacy Policy; (e) Professional Advisors under confidentiality obligations; (f) Business Transfers in connection with a merger, acquisition, financing, or sale of assets, subject to continued protection; and (g) Legal and Safety recipients when required by law, legal process, or to protect rights, safety, and security.
4.2. A current list of Subprocessors for the Services is available to Customers as described in the DPA.
4.3. We do not sell Personal Data for monetary consideration. We do not share Personal Data for cross-context behavioral advertising in connection with the Services.
5. International Transfers
5.1. MiseCentral is based in the United States. Personal Data may be processed in the United States and other countries where we or our service providers operate.
5.2. Where required, we implement appropriate safeguards for international transfers, including Standard Contractual Clauses and related transfer mechanisms incorporated in our DPA for Customer Personal Data.
6. Retention
6.1. We retain Personal Data for as long as necessary to fulfill the purposes described in this Privacy Policy, provide the Services, comply with legal obligations, resolve disputes, and enforce agreements.
6.2. Customer Data retention in the Services is governed by the Agreement, Customer configuration, and applicable law. Upon termination, Customer Data is handled as set forth in the Agreement and DPA, including export windows and deletion schedules where applicable.
7. Security
7.1. We implement administrative, technical, and organizational measures designed to protect Personal Data against unauthorized access, loss, misuse, alteration, or destruction. Details are summarized in our Security Overview.
7.2. No method of transmission or storage is completely secure. Customer is responsible for securing its accounts, credentials, Connected Devices, integrations, and internal access controls.
8. Your Privacy Rights
8.1. Depending on your location and role, you may have rights to access, correct, delete, restrict or object to processing, data portability, withdraw consent, and lodge a complaint with a supervisory authority.
8.2. Website and Controller Data. Individuals may submit privacy requests regarding Personal Data for which MiseCentral acts as controller by contacting us at privacy@misecentral.com. We will verify requests as required by law and respond within applicable timeframes.
8.3. Customer Personal Data. Authorized Users and other individuals whose Personal Data is processed in the Services should direct requests to the relevant Customer, which administers the account. MiseCentral will assist Customers with such requests as required by the DPA and applicable law.
8.4. U.S. State Privacy Rights. Where applicable, residents of certain U.S. states may have additional rights regarding access, deletion, correction, and opt-out of certain processing. We honor applicable opt-out preference signals where legally required for Website processing we control.
8.5. Marketing Opt-Out. You may opt out of marketing emails using the unsubscribe link in our messages or by contacting privacy@misecentral.com.
9. Cookies and Similar Technologies
9.1. We use cookies and similar technologies on the Website as described in our Cookie Policy. Where required, we obtain consent before placing non-essential cookies.
10. Children's Privacy
10.1. The Website and Services are directed to businesses and are not intended for children under sixteen (16) years of age. We do not knowingly collect Personal Data from children. If you believe a child has provided Personal Data, contact privacy@misecentral.com.
11. Changes to This Privacy Policy
11.1. We may update this Privacy Policy from time to time. We will post the updated policy on the Website with a revised "Last Updated" date and, where required by law, provide additional notice or obtain consent.
12. Contact Us
MiseCentral LLC Attn: Privacy 8 The Green, Suite A Dover, DE 19901 United States privacy@misecentral.com
For Customer Personal Data processing inquiries under an active Agreement, Customers may also use the contact methods specified in the DPA.
Version history
| Version | Effective | Summary |
|---|---|---|
| 1.0 | August 1, 2026 | Initial publication of the Legal Library (LEGAL-01). |
Previous versions remain available for reference and are never overwritten.