How Chefly Schedules protects and respects your personal, team, and culinary scheduling data.
At Chefly Schedules, your privacy is central to how we design and build our platform. We are transparent about the data we collect, why we collect it, and how we secure it to power your restaurant's operations. We do not sell your personal or team data — ever.
Chefly Schedules is a workforce-scheduling tool used by restaurants. When a restaurant uses Chefly Schedules to manage its staff, the restaurant (the employer) is responsible for the employee information it enters and for having a lawful basis to do so. Chefly Schedules processes that information to provide the Service on the restaurant's behalf. Employees with questions about their employer's use of their data should contact their manager or the restaurant directly.
Full name, email address, phone number, job title or role, and the restaurant you belong to.
Restaurant name, team join codes, staff roster, assigned roles, and service or shift templates.
Shifts, schedules, time-off requests, shift-swap requests, sick-call notices, and availability.
Announcements, messages, and requests you send or receive within the Service, including Callout Blast notifications.
Device type, operating system, app version, IP address, and diagnostics collected via Firebase.
Secure password hashes and session tokens via Firebase Authentication. Plain-text is never stored.
Used solely to maintain your signed-in state. No advertising or cross-site cookies are used.
🛡️ We do not knowingly collect precise geolocation data, biometric data, or special-category personal data through the Service.
All data collected is used solely to deliver and improve the Chefly Schedules experience:
🚫 We do not sell personal information, and we do not use your scheduling or communication content for advertising purposes.
Managers and staff see scheduling information appropriate to their assigned role. Role-based permissions control access throughout the platform.
We use Google Cloud Platform and Firebase Services (Firestore, Firebase Authentication, Firebase Cloud Messaging, Firebase Hosting — hosted in us-east4) for secure database storage, authentication, push notifications, and app hosting. These providers may process data only to provide services to us.
Subscription billing is processed through Google Play Billing. We do not store full payment card numbers.
We may disclose information when required by law or to protect the rights, safety, and security of users or the public.
In connection with a merger, acquisition, or sale of assets, user data may be transferred subject to this Policy.
🚫 We do not sell, license, or distribute your operational schedules or team contact details to third-party advertisers.
We use administrative, technical, and organizational safeguards appropriate to the sensitivity of your data, including encrypted transport (HTTPS/TLS) and role-based authorization rules in Google Cloud Firestore.
We retain personal information for as long as your account is active and as needed to provide the Service. Upon account deletion, personal data is removed or de-identified within 90 days, unless a longer period is required by law. When a restaurant removes a staff member, that person's profile is deactivated and removed within 30 days.
⚠️ No method of transmission or storage is completely secure, and we cannot guarantee absolute security. We will notify affected users of a confirmed data breach as required by applicable law.
Depending on where you live, you may have the following rights regarding your personal information:
If you are a California resident or resident of another U.S. state with applicable privacy laws, you may request access to, correction of, or deletion of your personal information. We do not "sell" or "share" personal information as defined under the California Privacy Rights Act (CPRA).
We will not discriminate against you for exercising any of these rights.
You can delete your account at any time inside the app:
This removes your profile and associated personal data as described in Section 4.
You may also request access or deletion by emailing support@cheflybackofficesuite.com. We will verify your request and respond within the time required by applicable law.
The Service is intended for users aged 16 and older and is not directed to children under 13. Some restaurant employees may be minors under local law; the restaurant (employer) is responsible for obtaining any consent required to enter a minor employee's information into the platform.
If you believe a child under 13 has provided us personal information, contact us at support@cheflybackofficesuite.com and we will promptly delete it.
The current Service is rule-based and does not use artificial intelligence or automated decision-making that produces legal or similarly significant effects about you. If we later add AI-driven features such as automatic schedule generation or demand forecasting, we will update this Policy to describe what those features do, what data they use, and your options.
The Service may link to or integrate third-party services such as your device's app store or our payment processor. Their use of your information is governed by their own privacy policies, not this one.
We may update this Policy from time to time. We will post the updated version with a new "Last updated" date and, for material changes, provide additional notice within the Service. Continued use of the Service after changes are posted constitutes acceptance of the updated Policy.
Questions, requests, or concerns about this Privacy Policy or your personal data:
App Identity
Chefly Schedules
Chefly Back Office Suite
Mailing Address
8 Kellee Rd
Conway, AR 72032
United States
© 2026 Chefly Back Office Suite. All rights reserved.