Privacy Policy

St Barbara & St Noufer — mobile kitchen / café ordering (“the App”)

Effective date: 26 March 2026

This policy describes how we handle information when you use our ordering app and related services. For questions or requests, contact us at [danny.mansi@stbarbara.org.au].

1. Who we are

The App is operated by St Barbara & St Noufer Coptic Orthodox Church (or the entity responsible for the ordering service), in connection with food ordering for associated kitchens and Holy Ground Café. Our ordering backend may be hosted on Microsoft Azure (Australia East region or as configured).

2. Information we collect

2.1 Account registration (optional)

If you create an account, we collect and store:

2.2 Orders

When you place an order, we collect and store information needed to prepare and fulfil it, including:

We do not intend to store full payment card numbers on our servers. Card payments may be processed by Tyro (or other providers if enabled); card data is handled according to those providers’ terms and PCI practices.

2.3 Push notifications

2.4 Data stored on your device

The App may store small amounts of data locally (for example login session tokens, shopping cart contents, or the last order you were viewing) using your browser or app storage. This stays on your device unless it is sent to our servers as described above.

2.5 Technical data

Like most online services, our servers and hosting providers may process technical information such as IP address, request timestamps, and error logs for security and reliability. We do not use this App to run third-party advertising analytics in the codebase as shipped.

3. How we use your information

4. Legal basis (summary)

Where the Australian Privacy Act 1988 (Cth) applies, we collect personal information that is reasonably necessary for our functions, primarily to provide the ordering service. Where the GDPR or UK GDPR applies, we rely on performance of a contract, legitimate interests (operating a community ordering service), and consent where required (for example push notifications).

5. Sharing with third parties

We share data only as needed to run the App:

We do not sell your personal information.

6. International transfers

Our primary hosting is intended to be in Australia (e.g. Azure Australia). Some providers (such as Google) may process data in other countries under their terms. Where required, we rely on appropriate safeguards or your consent as applicable.

7. Retention

We keep account and order information for as long as needed to operate the service, comply with law, resolve disputes, and maintain reasonable business records. Push device tokens and web push subscriptions may be removed when no longer needed or when invalid. You may request deletion of your account (see below); some order records may need to be retained in anonymised or aggregated form for accounting or legal reasons.

8. Security

We use industry-standard measures appropriate to the nature of the service (including HTTPS for transport, hashed passwords, and access controls for staff tools). No method of transmission or storage is completely secure.

9. Your rights

Depending on where you live, you may have rights to access, correct, or delete your personal information, withdraw consent (for example for push notifications via device settings), or complain to a supervisory authority. To exercise rights or ask questions, contact [danny.mansi@stbarbara.org.au].

Android: You can disable notifications in system settings for this app at any time.

10. Children

The App is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe we have, please contact us and we will delete it.

11. Changes

We may update this policy from time to time. We will post the new effective date at the top of this page. Continued use of the App after changes means you accept the updated policy.

12. Contact

Email: [danny.mansi@stbarbara.org.au]
Operator: St Barbara & St Noufer Coptic Orthodox Church (kitchen / café ordering)


This document is provided as a practical summary aligned with the app’s technical behaviour. It is not legal advice. Have a qualified professional review it before publication, especially for your church’s legal entity name, contact details, and any jurisdiction-specific requirements (Australia / Play / Apple).