Privacy Policy
Effective {{EFFECTIVE_DATE}}
Goodfix LLC ("Goodfix," "we," "us") provides the Mills service. This
Privacy Policy explains what data we collect, how we use it, and the
rights you have over it.
1. Data we collect
-
POS sales data: checks, items, payments, voids, and
check timestamps, synced from your point-of-sale system (e.g. Focus,
Toast, Square) via the integration you configure.
-
Employee info: names, roles, schedules, time-punches,
tips, and labor rates, synced via your POS or schedule tool.
-
Inventory: products, recipes, vendor information,
audit counts, invoice line items.
-
Payment info: handled by Stripe, Inc. Goodfix never
receives or stores your card number; we only see Stripe identifiers
(e.g. customer_id, subscription_id) and invoice amounts.
-
Telegram identifiers: Telegram user IDs, usernames,
first names, and the contents of messages sent to or from the Mills
bot.
-
Subscribe form metadata: when you submit the
/subscribe form, we record your IP address
and browser User-Agent string alongside your terms acceptance, as
evidence that you accepted these Terms.
2. How we use it
- To operate, support, and improve the Mills service for your bar;
- To bill you and process payments;
- To send you operational notifications (digests, alerts, scheduling reminders);
- To diagnose problems and improve performance.
We do not sell your data, share it with advertisers, or
use your Customer Data to train AI models for other customers.
3. Third-party processors
The Mills service depends on the following sub-processors:
- Stripe, Inc. — payment processing and invoicing.
- Supabase, Inc. — managed Postgres database hosting.
- Anthropic PBC and/or Moonshot AI (Kimi)
— large-language-model inference for the Mills agent. Conversations
are sent to these providers to generate replies; we use accounts
configured with zero-retention or short-retention settings where the
provider supports it.
- Telegram FZ-LLC — messaging transport for the
Mills bot.
- Hetzner Online GmbH — infrastructure hosting in
the European Union, where Goodfix runs the Mills application server.
4. Data retention
-
While your subscription is active: we retain Customer
Data for the duration of the subscription to operate the Service.
-
On cancellation: we provide a full data export within
30 days of a written request, and we delete Customer Data from
Goodfix systems within 60 days of cancellation. We may retain
billing records longer where required by law.
5. Your rights
You have the right to:
- Access the personal data we hold about you;
- Correct inaccurate data;
- Delete your data (subject to legal retention obligations);
- Export your data in a machine-readable format.
To exercise any of these rights, email us at
{{SUPPORT_EMAIL}}. We will respond
within 30 days.
6. Cookies
The Mills dashboard uses only session cookies needed for HTTP basic
authentication. We do not use tracking cookies, analytics cookies, or
third-party advertising cookies.
7. Children's privacy
Mills is a business operations product and is not directed to
individuals under 18. We do not knowingly collect personal data from
children.
8. Changes to this policy
We may update this Privacy Policy from time to time. Material changes
will be communicated to the billing contact email on file at least
14 days before they take effect.
9. Contact
Questions or requests:
{{SUPPORT_EMAIL}}.