← Home

Acceptable Use Policy

This policy sets out what you must not do with Noqta. It is deliberately short: the general rule is to use the platform to run your restaurant, and not to use it to harm others or the system itself. A material breach entitles us to terminate immediately.

Effective · 1 September 2026Last updated · 12 September 2026

01Who it applies to

This policy applies to everyone who accesses the platform: the owner, managers, staff, and anyone granted access in the business's name. You are responsible for the compliance of those you grant access to.

02What is not permitted

  • Using the platform for any unlawful purpose, to facilitate unlawful activity, or to evade a tax or accounting obligation.
  • Attempting to reach another restaurant's data, or parts of the system you have not been granted access to, or probing for vulnerabilities without our prior written permission.
  • Entering personal data about individuals for whom you have not obtained the necessary consent, or entering sensitive data (health, religious or political) into platform fields.
  • Using the platform to send unsolicited messages to your customers, or commercial messages to anyone who has asked you to stop.
  • Uploading malicious software, attempting to disrupt the service, or loading the infrastructure with abnormal automated requests.
  • Extracting platform data programmatically beyond the export interfaces made available to you.
  • Reselling the service or granting access to a third party without a written agreement with us.
  • Reverse-engineering the platform or attempting to extract its source code or models.
  • Misusing the WhatsApp agent to generate unlawful, misleading or harmful content.
  • Impersonating another person or organisation within the platform or in its communications.

03Your customers' data, and your responsibility for it

When you enter a customer's phone number or enrol them in the loyalty programme, you carry the responsibility for the lawfulness of that, both to the customer and at law. We are a processor of that data, not its controller.

  • Tell your customers that their data is being recorded, and for what purpose.
  • Do not use their data for a purpose they have not agreed to.
  • Respond to their requests concerning their data; we can assist you technically in doing so.

04How we handle a breach

  • For a non-material breach we will notify you and allow a reasonable period to correct it.
  • For a material or repeated breach we may suspend access immediately, notifying you of the reason.
  • Where others' data or the integrity of the platform is at immediate risk, we may suspend without prior notice, and will notify you as soon as we are able.
  • Your data remains stored and available for export throughout any suspension, unless a legal order prevents it.

05Reporting vulnerabilities

We welcome responsible disclosure of security vulnerabilities. Write to us with the details before publishing, and allow us a reasonable period to remediate. We will not take action against a researcher who does so, who does not access anyone else's data, and who does not disrupt the service.

Reporting abuse

If you see use of the platform that breaches this policy, report it to us and we will investigate.

ehab@noqtaplatform.com