Privacy Policy
Last updated: April 24, 2026
1. Introduction
Welcome to Jesse ("we", "our", "us"). We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains what information we collect, how we use it, and what rights you have in relation to it.
This policy applies to all information collected through our platform (jesseapp.com), including any related services, sales, marketing, or events.
2. Information We Collect
We collect information that you provide to us directly, including:
- Account Information: Name, email address, password, restaurant name, and business details when you register.
- Menu Data: Menu items, descriptions, prices, ingredients, and dietary information you upload.
- Knowledge Base: Custom FAQs, business hours, reservation policies, and other information you provide for your chatbot.
- Conversation Data: Chat messages between your customers and the Jesse AI chatbot.
- Usage Data: Analytics, chatbot interactions, page visits, and feature usage patterns.
- Location Data: Timezone, restaurant address, and location information you provide when configuring your Jesse assistant.
- Payment Information: Billing details processed securely through our payment provider (Paddle).
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our AI chatbot services
- Process your restaurant's menu data to generate accurate chatbot responses
- Analyze conversation patterns to improve chatbot accuracy and service quality
- Send you technical notices, updates, and support messages
- Respond to your comments, questions, and customer service requests
- Monitor and prevent fraudulent or unauthorized activities
- Comply with legal obligations
4. Data Sharing & Third-Party Services
We share your data only with trusted third-party services essential to operating our platform:
- Groq: AI inference provider for processing standard chatbot conversations.
- Anthropic: AI inference provider for processing safety-critical queries (allergen and dietary questions).
- Google (Gemini): AI inference provider for simple query processing and fallback responses.
- Neon: PostgreSQL database hosting provider for storing account and application data.
- Upstash: Redis-based caching and rate limiting service.
- Paddle: Payment processing, tax calculation, and invoicing for subscriptions.
- Vercel: Frontend hosting and content delivery.
- Render: Backend API hosting.
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
5. Data Retention
We retain your information for as long as your account is active or as needed to provide our services. Conversation data is retained for analytics purposes and to improve our AI models. You may request deletion of your data at any time by contacting us.
6. Cookies
We use cookies and similar tracking technologies to maintain your session, remember your preferences, and analyze platform usage. Essential cookies are required for the service to function. You can control cookie preferences through your browser settings.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict the processing of your data
- Request portability of your data
- Withdraw consent at any time
To exercise any of these rights, please contact us at founder@jesseapp.com.
8. Security
We implement appropriate technical and organizational security measures to protect your personal information. This includes encryption in transit (TLS/SSL), secure authentication, and regular security audits. However, no method of transmission over the Internet is 100% secure.
9. Regional Privacy Compliance
We are committed to complying with applicable privacy laws in the jurisdictions where we operate:
Australia: For users in Australia, we comply with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). You may contact us to access, correct, or request deletion of your personal information.
Singapore: For users in Singapore, we comply with the Personal Data Protection Act 2012 (PDPA). You have the right to access and correct your personal data held by us.
Malaysia: For users in Malaysia, we comply with the Personal Data Protection Act 2010 (PDPA Malaysia). Your personal data will not be processed without your consent.
European Union / United Kingdom: For users in the EU or UK, we comply with the General Data Protection Regulation (GDPR) and UK GDPR where applicable. You have the right to data portability, erasure, and to lodge a complaint with your local supervisory authority.
Indonesia: As a company incorporated in Indonesia, we comply with Government Regulation No. 71 of 2019 on the Implementation of Electronic Systems and Transactions (PP 71/2019) and Law No. 27 of 2022 on Personal Data Protection (UU PDP).
Other Jurisdictions: We respect the privacy rights of all our users regardless of location and will make reasonable efforts to accommodate requests consistent with applicable local law.
10. Children's Privacy
Our service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of the service after changes constitutes acceptance of the revised policy.
12. Contact Us
If you have any questions about this Privacy Policy, please contact us at: