Privacy Policy

Vetted · Last updated 21 July 2026

Vetted is a curated guide to specialty coffee, and — at cafés that offer it — a way to order ahead, timed to your arrival. This policy explains what we collect and why. We do not sell your data and we do not show ads. We load no cross-site trackers on the public website. Detailed usage analytics in the app are first-party, on by default, and can be turned off from Profile → Privacy & data. Public-website analytics are first-party, on by default, and can be turned off from this page or the website privacy choices control.

Website analytics choices

Website analytics are on for this browser.

What we collect

What we don't do

How it's stored

App and account data is stored on Cloudflare infrastructure. Feedback and support emails are received and stored in Google Gmail; we keep them while reasonably needed to respond, investigate the issue, and maintain a support record, and you can ask us to delete one. Authentication uses short-lived tokens; passwords are stored only as salted hashes. Vetted does not store phone numbers or uploaded address-book contacts for social matching, and it does not expose public profile pages or suggested follows. Follower-note reports and their snapshots are visible only to authorized administrators through the role-gated moderation queue. Café photography uploaded by café owners and Studio contributors is stored first-party on Vetted's own Cloudflare storage and served from our domain. If you choose Apple Wallet order tracking, Wallet update registrations are stored with the order so Vetted can notify Wallet when the order status changes. App usage analytics, while enabled, are processed and stored by Mixpanel as our processor through its standard ingestion endpoint. Public-website journey analytics and anonymous aggregate website counts are also processed in Mixpanel without raw IP, raw user-agent, or Mixpanel IP geolocation identifiers. No third-party ad code runs in your browser.

Your rights

Deleting your account

You can delete your account at any time from Profile → Delete account in the app. This permanently removes your account record, saved cafés and custom folders, notes, follower-note reports involving you and their snapshots, following data (handles, follow links, follows, and blocks), account-linked Studio contributor applications, sign-in, notification tokens and their discovery-wake subscription/pacing markers, Live Activity tokens, and Apple Wallet order registrations, revokes the associated Sign in with Apple token, disconnects Google sign-in when present, and deletes your analytics profile. The app also clears its cached alert coordinate, pending café digest, local travel anchors, city-detection records, and pending or delivered discovery notifications when you sign out or delete the account. Turning new-city discovery off performs the same city-state cleanup without deleting the account. Sign-out deletion of the server push registration is best-effort as described above; account deletion removes it server-side. Order records are kept as financial records, as described above. Feedback and support emails are not removed automatically because the composer does not add your account id; ask us by email if you want one deleted. If you sent a Studio contributor application while signed out, email us to request deletion or export because that application is not linked to an account id. You can also stop analytics without deleting your account from Profile → Privacy & data.

Who is responsible & contact

Vetted operates this app and website and is the controller for the data described here (except your payment, which the café and Square process as described above). A formal legal entity designation for Vetted is pending and this policy will be updated when it is in place.

Questions or requests: rxv2dev@gmail.com.