Privacy Policy

Effective date: May 28, 2026

1. Who We Are

Preshift (“we”, “us”, “our”) operates preshift.me, a shift operations platform for restaurants. Our contact email is info@preshift.me.

2. What We Collect

Information you provide:

  • Email address (for account creation and authentication)
  • Restaurant/location name
  • Shift notes, task descriptions, and handoff content you enter into the Service
  • Messages you send through the contact form

Information collected automatically:

  • IP address and browser type (via Vercel infrastructure logs)
  • Error reports and stack traces (via Sentry)
  • Usage events such as page views and feature interactions

Payment information: We use Stripe to process payments. We never store your full card number, CVV, or banking details. Stripe’s privacy policy governs how your payment data is handled.

3. How We Use Your Data

  • To provide and operate the Service
  • To authenticate your identity and maintain your session
  • To process AI structuring of your shift notes (via Anthropic’s Claude API)
  • To send transactional emails: magic links, invites, and escalation alerts
  • To detect and fix bugs and errors
  • To process your subscription and communicate billing changes

We do not use your shift note content to train AI models. Content is processed by Anthropic’s API subject to their privacy policy.

4. How We Share Your Data

We do not sell your personal data. We share data only with the following service providers, and only as necessary to operate the Service:

  • Supabase — database and authentication (US-based)
  • Vercel — hosting and edge infrastructure (US-based)
  • Anthropic — AI processing of shift notes
  • Stripe — payment processing
  • Resend — transactional email delivery
  • Sentry — error monitoring

We may disclose your information if required by law, court order, or to protect the rights and safety of Preshift or others.

5. Data Retention

We retain your account data and shift history for as long as your account is active. If you cancel your account, data is retained for 30 days and then permanently deleted unless we are legally required to retain it longer.

6. Security

We use industry-standard measures to protect your data: encrypted connections (TLS), row-level security in our database, and access controls that prevent one restaurant from viewing another’s data. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

7. Your Rights

Depending on your location, you may have the right to:

  • Access a copy of the personal data we hold about you
  • Correct inaccurate data
  • Request deletion of your account and associated data
  • Object to certain processing activities

To exercise any of these rights, email info@preshift.me. We will respond within 30 days.

8. Cookies

We use strictly necessary cookies to maintain your authenticated session. We do not use advertising cookies or third-party tracking cookies.

9. Children

The Service is not directed at individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.

10. Changes to This Policy

We may update this Privacy Policy. We will notify you of material changes by email or by a notice in the Service. The date at the top of this page reflects the most recent revision.

11. Contact

Questions about this Privacy Policy? Email info@preshift.me.