Privacy Policy
This document is a draft pending review by an Australian commercial lawyer and completion of company registration. It is provided in this form during the early-access program and will be finalised before general availability.
Who we are
Quick Host is an AI phone host for restaurants, operated by [COMPANY] Pty Ltd (ABN [ABN]) trading as Quick Host ("Quick Host", "we", "us"). We answer a restaurant's phone calls, take booking requests against the restaurant's real availability, answer common questions, and give restaurant managers a portal to run it all.
You can contact us about anything in this policy at hello@quickhost.tech.
Who this policy covers
This policy explains how we handle personal information about three groups of people:
- Callers — people who ring a restaurant whose phone is answered by Quick Host.
- Restaurant users — owners, managers and staff who use the Quick Host manager portal.
- Website visitors — people who browse our website or request early access.
What we collect
From callers, when you ring a restaurant answered by Quick Host:
- Your phone number (as presented by your carrier).
- The name you give for a booking, your party size, and your requested date and time.
- Any special requests or other details you choose to say during the call.
- A written transcript of the conversation. We do not keep audio recordings — the call audio is processed in real time to run the conversation and produce the transcript, and the retained record is text.
- Booking outcome details, including confirmations we send you by SMS.
What we collect from restaurant users and visitors
- Restaurant users: your name, email address, role, password (stored as a secure hash by our authentication provider), the venue details you configure, and actions you take in the portal.
- Website visitors: the details you submit when requesting early access (restaurant name, your name, email, and optionally phone, location and notes).
How we collect it
Every call answered by Quick Host opens with a spoken notice that the caller is speaking with an AI assistant and that the call is recorded. This notice is fixed in the product: restaurants cannot remove or alter it. Continuing the call after the notice is how callers are informed of, and consent to, the handling described in this policy.
Portal and website information is collected directly from the forms you submit.
Why we use it
- To run the phone conversation and take your booking — the core service.
- To show the restaurant your booking request, transcript, and history so they can honour it (the restaurant decides on bookings; managers can also view calls in progress and take a call over to speak with you directly).
- To send you booking-outcome SMS messages (confirmations, declines, proposed times).
- To support, secure, and improve the service, including quality review as stated in the call notice.
- To respond to early-access requests and operate customer accounts and billing.
Who we share it withFor lawyer review
We do not sell personal information. We share it only with the restaurant you called (your booking, transcript and history belong to your relationship with that venue) and with the service providers that run the platform:
- Twilio Inc. (United States) — carries the phone calls and sends SMS messages.
- OpenAI (United States) — processes call audio in real time to power the AI conversation and produce transcripts.
- Supabase — our database, hosted in Sydney, Australia. Booking records, transcripts and account data live here.
- Vercel and Fly.io — application hosting.
Overseas disclosure (APP 8)For lawyer review
Call carriage (Twilio) and real-time AI processing (OpenAI) involve processing in the United States. Our stored records — bookings, transcripts, and account data — reside in Australia (Sydney). We take reasonable steps to ensure overseas providers handle personal information consistently with the Australian Privacy Principles.
RetentionFor lawyer review
Booking records and call transcripts are retained while the restaurant remains a Quick Host customer, and for [90 days] after their account closes, after which they are deleted. Early-access requests are kept for [12 months]. We will confirm final retention periods before general availability.
Security
Data is encrypted in transit, access to production systems is restricted and role-gated, restaurant data is isolated per venue, and the manager portal enforces per-tenant access controls. No internet service can promise perfect security, but we design for least access and audit what matters.
Access and correction
You can ask us for a copy of the personal information we hold about you, or ask us to correct it, by emailing hello@quickhost.tech. If you rang a restaurant, the quickest route for booking changes is usually the restaurant itself — but you can always come to us directly. We respond within a reasonable period and will explain any reason we cannot fulfil a request.
Complaints
If you think we've mishandled your personal information, contact us first at hello@quickhost.tech — we take complaints seriously and will respond promptly. If you're not satisfied with our response, you can complain to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or 1300 363 992.
Data breaches
If a data breach occurs that is likely to result in serious harm, we will notify affected individuals and the OAIC in accordance with the Notifiable Data Breaches scheme.
Changes to this policy
This is version v1.0-draft of this policy, last updated 16 July 2026. We'll post changes here; material changes will be flagged to restaurant customers in the portal.