Current version
Effective: 4 February 2026
For restaurants, we collect basic information such as name, email, phone number, country, payment processor ID (Stripe, SumUp, or Viva), and onboard status. For customers, we collect optional information for orders, including menu item comments, customer name, and email. Our payment processors (Stripe, SumUp, Viva) may collect additional information for payment processing and fraud prevention.
We use your data to provide our restaurant POS and management platform services, process orders, improve our services, and comply with legal obligations. Customer information is used to facilitate order fulfillment and provide receipts.
We process your personal data based on the following legal grounds under GDPR Article 6(1):
Contract Performance (Art. 6(1)(b)):
Legal Obligation (Art. 6(1)(c)):
Legitimate Interest (Art. 6(1)(f)):
Fiest Oy acts as:
Restaurants using our platform are responsible for their own GDPR compliance regarding their customer data.
We retain restaurant data for the duration of the account. Upon account deletion, all data including images, menus, and settings are removed, except for order details which are retained for 6 years as required by the Finnish Accounting Act (kirjanpitolaki 1336/1997). Customer data for orders is retained as required for business operations and legal compliance.
For fiest.io, we use PostHog analytics with a privacy-first approach. You can choose to accept or reject analytics cookies via our cookie banner:
For order.fiest.io, we use essential cookies for payment security and fraud detection. These cannot be disabled. We also use PostHog analytics to understand user behavior and improve our service.
For dashboard.fiest.io, we use essential cookies for security, user authentication, and dashboard settings. These cannot be disabled. We use functional cookies to save your last used state for login, and we utilize PostHog analytics to enhance the restaurant software experience and create better features.
For docs.fiest.io, we use essential cookies for documentation access. For receipts.fiest.io, we use essential cookies for secure receipt retrieval.
The analytics data helps us understand usage patterns and optimize our platform for restaurant owners.
Under the GDPR, you have the following rights:
We will respond to your request within one month of receiving it. If your request is complex or we receive many requests, we may extend this by up to two additional months, but we will inform you of any delay within the first month.
Restaurants can delete their account and associated data through the dashboard. Note that Fiest cannot delete information from Stripe, SumUp, or Viva on your behalf - please contact them directly for payment-related data deletion.
Customers can choose not to provide optional information for orders. To exercise any other rights, contact us at info@fiest.io.
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Finnish Data Protection Ombudsman (Tietosuojavaltuutettu).
Website: tietosuoja.fi Email: tietosuoja@om.fi Address: PL 800, 00531 Helsinki
Your data is processed by authorized employees and subcontractors of Fiest Oy within the EU/EEA.
Our payment processors (Stripe, SumUp, Viva) may transfer data to the United States. These transfers are protected by:
For more information, please review the payment processor privacy policies:
We disclose customer information to the restaurants for order fulfillment. We may disclose data to authorities as required by law, to Stripe for payment processing, and to other third parties with your consent.
We implement appropriate technical and organizational measures to protect your data, including secure data storage and transfer protocols.
We use the following third-party services to provide our platform:
Each service processes data according to their own privacy policies. We have data processing agreements in place with all subprocessors.
We do not make automated decisions that produce legal effects or similarly significantly affect you.
Our payment processors (Stripe, SumUp, Viva) may use automated fraud detection systems. Please review their respective privacy policies for details on their automated processing.
We may update this privacy policy as our services evolve or as required by law. For material changes that affect your rights, we will notify registered restaurants by email at least 30 days before the changes take effect. We recommend reviewing this policy periodically.
Fiest Oy
Business ID: 3438254-5
Sähkötalo, Kampinkuja 2, 00100 Helsinki
info@fiest.io
+358 40 440 7518
Contact Persons
Elias Nurmela
Co-Founder
elias@fiest.io
Markus Marttila
Co-Founder
markus@fiest.io
Note: Our service uses Stripe, SumUp, and Viva for payment processing. Please review their privacy practices independently.
Last updated: 04.02.2026