ServeCounter

Legal

ServeCounter privacy policy

What we keep about you, for how long, and who else sees it.

Version 1.4 · in force from 2 October 2026 · Other versions: 1.0, 1.1, 1.2, 1.3, 1.5, 1.6, 1.7, 1.8

How to delete your login, a business or your customer account is on its own page: Delete your account.

This is a courtesy translation. The Dutch version is the one that applies; where the two differ, the Dutch text is what was agreed.

Who this is

ServeCounter belongs to De Bruine Solutions, registered with the Dutch Chamber of Commerce under 97437921. Questions about your data go to the address on the contact page.

Two kinds of data, and two different roles

For you as the business owner we hold data and we are responsible for it. For your business's customers we hold data on your behalf: there you are the controller and we are the processor. What applies to that is in the data processing agreement.

What we hold about you

Your business's name, your address, your email address and your telephone number, who is on your team and in what role, and what you pay us. Your bank details are not with us: you give those to our payment service and we get a reference back.

What we hold about visitors to our own site

For everyone who reads servecounter.com we count which pages were looked at. Where you are in the EU, the EEA or the United Kingdom, that is all we measure before you answer the cookie question: the page, without anything after a question mark; the site you came from, by its name only; how long you stayed and how far down you read; which of our buttons you pressed; and how fast the page loaded. If you press Reject there, nothing is sent from your browser, and our own server only adds one to a count for that page and your country, with nothing that says who you are. Elsewhere, and if you press Accept, we also keep every click, where people click and scroll, the full address and campaign you came from, the errors the page ran into and what kind of device it was, and we may record how a page was used, as a replay of the screen in which everything you type is hidden. Where the law of your country asks for your permission first, a replay only starts if you accept cookies; elsewhere, Reject stops it. None of this has a name on it. The number it is filed under is worked out from your connection and your browser for one day and is replaced the next. It is still personal data, because anybody who holds our key could work that number out again from the same two things. If you accept cookies, one of them remembers your device for longer than a day so we can count readers who come back, and you can change that answer at the bottom of any page. This is about our own site, not about your business's page.

Which cookies we set

Two keep the site working and safe and last two hours. One remembers your language, for a year. One remembers the answer you gave about cookies and lasts six months. Those four need no permission, because without them the site cannot work or keep to what you chose. Only if you accept do we set one more, which recognises your device from one day to the next.

What we hold about your business's customers

Only what an order or a reservation needs: a name, an email address or a telephone number, and what was ordered and paid. All three may stay empty, and for an order at the counter they usually do.

Where a delivery rider is

During a run the rider's position is kept, so the customer can see where their food is. As soon as they are carrying nothing that position is erased and not kept.

For how long

A receipt has to be kept for seven years by the Dutch tax authority. If somebody asks to be deleted, we take their name, email address and telephone number out of their customer record and the receipt itself stays without those details. That way both are possible: the person is gone and the bookkeeping still adds up.

Who else sees it

Our payment service, for settling up and for your subscription. The party that sends our email. The party that runs our servers and backups; backups leave the building encrypted. And a map service, which supplies the tiles for the delivery map: those tiles are fetched by your customer's browser, so that service sees their IP address. Nobody else.

Who those are, by name

Hetzner (Germany) for our servers, the database and the files, encrypted at rest. Stripe (Ireland) for settling up and your subscription. Amazon SES in Frankfurt for our email. Cloudflare R2 for backups and the tax archive, encrypted. Sentry, hosted in Europe, for error reports. PostHog, hosted in Europe, for the visitor figures of our own website and for how the back office is used: which screens, what was clicked, and where the law allows it without asking, a replay of the screen in which all text, every field and every picture is hidden. And OpenFreeMap for the map tiles, which are fetched by your customer's browser.

If the app crashes

Then the apps send an error report with the line of code where it went wrong. No screenshots, no recording of what you were doing, no name or address of anybody, and not what you were typing.

Your bookkeeping, only if you connect it

If you connect Moneybird or Exact Online, we send your revenue lines there. If you connect nothing, nothing happens.

What we do not do

We do not follow you across other websites, we show no advertisements, and we do not sell or rent out data. There is not a single advertising service in the apps or the back office, and the only analytics service is PostHog, named above.

What you can ask for

Access to what we hold about you, correction if it is wrong, deletion, and a copy to take with you. If you think we are not doing it properly, you can complain to the Dutch Data Protection Authority.

Text messages

When a customer agrees on a business's booking page to texts at a US or Canadian number, we keep that consent: the number, when and where it was given. We send those texts, and those to other countries, through Twilio. All the above categories exclude text messaging originator opt-in data and consent; this information won't be shared with any third parties.

Our own site: why we measure it, for how long, and how to object

We measure servecounter.com because we need to see what is not working on it and which pages help people. That is our legitimate interest (Article 6(1)(f) of the GDPR), and where you accepted cookies it is also your consent. PostHog, hosted in the EU, processes it for us and may not use it for anything else. We keep these figures for 7 years, so that we can compare seasons and long-term trends on the website and in the product, and screen recordings for 30 days. The number your visit is filed under is a pseudonym, not your name, and your IP address is discarded before anything is stored. You can object at any time, without giving a reason, and ask us to delete what we hold about you: press Reject at the bottom of any page, which stops the measuring from your browser at once, or write to the address on the contact page. You can also complain to the Dutch Data Protection Authority. When you press a Start button, the link to the signup carries the page you pressed it on, the trade of that page and the campaign or site you came from, so that we know which page led to a new account. Unless you pressed Reject, it also carries the number your visit is filed under, which joins your visit to your new account. After Reject it does not, and your visit and your account stay apart.

Questions about this document go to [email protected].