This policy document is a structured drafting placeholder established for architectural, regulatory, and UX integrity. It does not constitute final binding legal terms. Formal legal review and jurisdiction-specific counsel are required before official commercial deployment.
This Data Processing Agreement ("DPA") supplements the Food Tailor Terms of Service and applies when customer personal data is processed in the course of providing corporate catering, private tasting events, or digital aggregation services.
For corporate host bookings, the customer acts as the Data Controller, and Food Tailor acts as the Data Processor. In managing direct retail consumers, Food Tailor acts as an independent Data Fiduciary in accordance with the DPDPA 2023.
Food Tailor maintains rigorous technical safeguards including end-to-end TLS encryption, pseudonymized database indexing, role-based access control (RBAC), and continuous vulnerability monitoring.
Food Tailor engages trusted third-party infrastructure providers solely for hosting, payment gateway routing, and telemetry: Amazon Web Services (AWS Mumbai Region), Razorpay Software Pvt. Ltd., and Cloudflare Inc.
In the event of a confirmed security incident impacting customer personal data, Food Tailor will notify affected parties and regulatory authorities within 72 hours of verification.