Privacy Policy

Vetted · Last updated 9 July 2026

Vetted is a curated guide to specialty coffee, and — at cafés that offer it — a way to order ahead, timed to your arrival. This policy explains what we collect and why. We do not sell your data and we do not show ads. We load no cross-site trackers on the public website. Detailed usage analytics in the app are first-party, on by default, and can be turned off from Profile → Privacy & data. Public-website analytics are first-party, on by default, and can be turned off from this page or the website privacy choices control.

Website analytics choices

Website analytics are on for this browser.

What we collect

What we don't do

How it's stored

Data is stored on Cloudflare infrastructure. Authentication uses short-lived tokens; passwords are stored only as salted hashes. Vetted does not store phone numbers or uploaded address-book contacts for social matching, and it does not expose public profile pages or suggested follows. Café photography uploaded by café owners and Studio contributors is stored first-party on Vetted's own Cloudflare storage and served from our domain. If you choose Apple Wallet order tracking, Wallet update registrations are stored with the order so Vetted can notify Wallet when the order status changes. App usage analytics, while enabled, are processed and stored by Mixpanel as our processor through its standard ingestion endpoint. Public-website journey analytics and anonymous aggregate website counts are also processed in Mixpanel without raw IP, raw user-agent, or Mixpanel IP geolocation identifiers. No third-party ad code runs in your browser.

Your rights

Deleting your account

You can delete your account at any time from Profile → Delete account in the app. This permanently removes your account record, saved cafés, notes, following data (handles, follow links, follows, and blocks), account-linked Studio contributor applications, sign-in, notification tokens (push and Live Activity), and Apple Wallet order registrations, revokes the associated Sign in with Apple token, disconnects Google sign-in when present, and deletes your analytics profile. Order records are kept as financial records, as described above. If you sent a Studio contributor application while signed out, email us to request deletion or export because that application is not linked to an account id. You can also stop analytics without deleting your account from Profile → Privacy & data.

Who is responsible & contact

Vetted operates this app and website and is the controller for the data described here (except your payment, which the café and Square process as described above). A formal legal entity designation for Vetted is pending and this policy will be updated when it is in place.

Questions or requests: rxv2dev@gmail.com.