Only the Arabic version of this document is legally binding. This English translation is provided for guidance only.

GoSufra Privacy Policy

Last updated: 24 September 2026
Effective date: 24 September 2026

What GoSufra collects, why, who it goes to, how long it stays and what you can ask us to do about it.

1. Who we are and what this covers

GoSufra (the "Platform", "we", "us") is a restaurant management platform — point of sale, kitchen display, online ordering, delivery, inventory, recipe costing, HR, payroll and double-entry accounting — provided as software as a service at gosufra.com and app.gosufra.com, and as a one-time-purchase Windows edition. It is operated by an independent individual operator trading under the name GoSufra, based in the Arab Republic of Egypt.

This policy explains what personal data we collect when you visit this website, create an account or use any of our applications; why we collect it; who we share it with; how long we keep it; and what you can ask us to do with it.

It covers this website and the GoSufra applications. It does not cover how an individual restaurant uses GoSufra to run its own business — clause 11 is about that.

2. Our role: controller and processor

2-1. For the data of the account holder — the person and the business that subscribe to GoSufra — we are the data controller: we decide what is collected and why.

2-2. For the operational data a Client enters into the Platform — their menus, orders, customers, employees and payroll — the Client is the controller and we act only as a processor on their instructions. We do not mine that content for our own purposes.

2-3. The distinction decides where a request goes. A request about an account comes to us; a request about a restaurant's own records goes to that restaurant, and we help them answer it.

3. What we collect

Only what the service actually needs, in these categories:

Account information

Your name, email address, a telephone number if you give one, the language you chose, your role and permissions, and a salted cryptographic hash of your password. The password itself is never stored.

Restaurant and business information

Trade name, branch names and addresses, logo, opening hours, menus and prices, currency, tax and service-charge settings — and, only if you switch on electronic invoicing, the tax registration data you enter for it.

Operational content you create

Everything you enter or generate while running your business: orders, tables, stock and purchases, recipes and costs, suppliers, employee records, attendance, payroll, accounting entries, and the customer records you keep for delivery and loyalty. This is your data and you remain its controller.

Payment and billing information

Your plan, billing cycle, billing country, invoices, transaction records, payment status and the reference the payment provider returns. We never see or store your full card number, its expiry date or its security code — those go straight to the payment provider.

Technical and usage data

IP address, browser and device type, the pages and screens you open, the actions you take inside the Platform, timestamps, and error and audit logs. A system several people share has to be able to answer “who changed this”, which is the whole reason an audit trail exists.

What you send us

The content of your messages when you contact us by email or on Telegram, and our replies.

AI assistant conversations

If you use the GoSufra AI assistant: the questions you ask, the account data it reads in order to answer them, and the answers it produces. Clause 6 says who processes that. If you never open the assistant, none of this exists.

4. Cookies, local storage and analytics

This website sets one cookie, and it does not track you:

  • gosufra-lang — the language you last read the site in, so gosufra.com opens in it next time. It holds a two-letter language code and nothing else, lasts a year, and is mirrored into your browser local storage in case cookies are blocked.

The GoSufra applications additionally keep a strictly necessary session cookie or token so that you stay signed in. That is the whole list.

There is no analytics on this website, no advertising pixel, no tag manager and no session recording. No Google Analytics, no Meta pixel, no third-party tracker of any kind. That is why nothing here asks you to accept cookies: beyond what is strictly necessary, there is nothing to consent to.

One external request does leave your browser: the site loads its typefaces from Google Fonts, so fonts.googleapis.com and fonts.gstatic.com receive your IP address as part of serving those files. They set no cookie.

5. Why we use it, and on what basis

Every use of personal data falls under one of these:

  • To provide the service — creating and running your account and delivering the features of your plan. Basis: performance of our contract with you.
  • To take payment — billing subscriptions, one-time purchases and AI credits, and keeping the records that go with them. Basis: performance of our contract, and the legal obligation to keep accounting records.
  • To keep the Platform secure — authentication, fraud and abuse prevention, rate limiting, audit logging and backups. Basis: our legitimate interest in a service that is not broken into.
  • To support you — answering questions, diagnosing faults, and telling you about outages, security incidents and material changes to these documents. Basis: performance of our contract and our legitimate interest.
  • To improve the product — aggregated, de-identified counts of which features get used. Basis: our legitimate interest. This never means reading your operational content for our own ends.
  • To meet legal obligations — tax, accounting, and answering a lawful request from a competent authority. Basis: legal obligation.

We do not profile you for advertising, and we take no automated decision that produces a legal effect on you.

6. Who we share it with

We do not sell personal data and we do not share it for advertising. The list below is the whole of it, and each one receives only what it needs to do its job:

  • Paddle — our payment provider and merchant of record for subscriptions, one-time purchases and AI credits outside Egypt. It receives your name, email, billing address and country, and it holds your card data. We never do. Paddle processes that data under its own privacy policy.
  • Paymob — the payment gateway used for payments inside Egypt, on the same footing: it receives what it needs to take the payment and holds the card data we never see.
  • Google, through the Gemini API — the model behind the GoSufra AI assistant. It receives the content of the request you make and the account data needed to answer it, and only when you actually use the assistant.
  • Google Fonts — for the typefaces on this website, as described in clause 4.
  • Our email provider — to deliver transactional mail: verification, password reset, invoices, service notices. It receives your address and the content of that message.
  • Telegram — only if you choose to use our support channel there, in which case what you send is also governed by Telegram's own terms. Email is always available instead.
  • The Egyptian Tax Authority (ETA) — only for a Client who has explicitly enabled electronic invoicing and supplied their tax registration data. Nothing is transmitted for an account that has not switched it on.
  • Our infrastructure providers — the hosting, storage and backup services the Platform runs on, acting as our processors under contract.
  • A competent authority — where we are legally obliged to disclose, or where disclosure is necessary to establish, exercise or defend a legal claim.

7. Data leaving your country

GoSufra serves restaurants in several countries, and some of the providers named above operate outside the Arab Republic of Egypt and outside your own country. Where data crosses a border it does so under that provider's contractual safeguards, and only for the purposes set out in clause 5.

8. How long we keep it

  • Account and operational data — for as long as the account is open. After it closes you have 30 days to export your data, after which we are entitled to delete it permanently.
  • Billing and invoice records — for as long as tax and accounting law requires, which outlasts the account itself.
  • Security and audit logs — for a limited period proportionate to why they exist, then deleted or aggregated.
  • Support messages — for as long as the matter and any follow-up need.

Backups rotate on a schedule, so data you delete can survive in a backup for a short while, until that backup is itself overwritten.

9. How we protect it

9-1. Traffic to and from the Platform is encrypted in transit with TLS. Passwords are stored only as salted cryptographic hashes. Access within an account is governed by roles and permissions, and each Client's data is isolated from every other Client's at the data layer. Administrative access is restricted and significant actions are written to an audit trail. Backups are taken regularly.

9-2. No system can be guaranteed impenetrable and we will not pretend otherwise. What we undertake is to take reasonable measures against a breach, and to tell you without undue delay if one happens and affects your data.

10. Your rights

Subject to the law that applies to you — Egyptian Personal Data Protection Law no. 151 of 2020, and the GDPR where it applies — you may ask us to:

  • tell you what personal data we hold about you, and give you a copy;
  • correct anything wrong or incomplete;
  • delete data we no longer have a lawful reason to keep;
  • restrict or object to a particular use of it;
  • hand it over in a portable, machine-readable form;
  • withdraw a consent you gave — without unpicking what was lawfully done before you withdrew it.

Two of these are built into the product: a signed-in user can review the consents recorded against their account and submit a data deletion request from inside the application. You can also write to gosufra@gmail.com, and we will answer within 30 days.

If you think we have handled your data wrongly, you are entitled to complain to the data protection authority competent for you.

11. If you are a restaurant's customer or employee

If your details are in GoSufra because you ordered from a restaurant, joined its loyalty programme or work there, that restaurant decided what to collect and why. It is the controller; we only host and process on its behalf.

So send your request to the restaurant first. If you cannot reach them, write to us: we will pass it on and help them answer it. What we may not do is alter or delete their records on our own initiative.

12. Children

GoSufra is a tool for running a business. It is not directed at children and we do not knowingly collect a child's personal data. If you believe a child has given us data, write to us and we will delete it.

13. Changes to this policy

We may update this policy. The current version always lives at this URL with the date of its last update at the top. Where a change materially affects how we handle your data, account holders are notified by email or inside the application before it takes effect.

14. Contact

For any question about this policy, or to exercise a right under clause 10:


Read this together with the Terms of Service and the Refund Policy.

Contact us