Privacy Policy
This policy explains what The Venue Menu ("TVM") and its companion app Prep Cooks collect, why, and what you control. It is written in plain language on purpose. If something here is unclear, write to us at the address at the end.
Who runs the service
TVM is operated by Christopher Paul Johnson (the "operator", "we", "us").
A territory owner is our customer. When you use TVM for your territory, you decide what goes in, and you are the controller of your venue data (the venues, contacts, and activity you enter, import, or sync). We process that data on your behalf, to run the service for you.
What we collect
- Account details. Your email address and the sign-in credentials needed to log you in, plus your role in a territory.
- Territory data you provide. The venues, contacts, outreach activity, notes, templates, and settings you enter or import.
- Gmail data, in a limited form. When you connect Gmail, TVM stores Gmail message identifiers, thread identifiers, subjects, the sender and recipient addresses, dates, and a small record of facts derived from each email (for example, whether it was a reply, and a short verified summary). TVM does not store the body of any email and does not store snippets. When you open a preview or an old thread, TVM reads it live from Gmail and does not keep a copy.
- Drafts and scheduled sends. The text of an email you have drafted, or have scheduled but not yet sent, is held only until it is sent, skipped, or expires. Then the text is cleared.
- Technical and security records. Sign-in and audit records (who did what, and when), and error logs, used to keep the service secure and working.
Google user data
TVM's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
TVM asks for three Google permissions, and uses each only for the purpose below:
- gmail.readonly - to show you the conversations you have with your venues and to notice replies.
- gmail.send - to send the emails you write or approve, from your own account.
- drive.readonly - to list the files you choose to attach to an email.
Google user data is used only to provide and improve these user-facing features. We never use it for advertising, including retargeting or interest-based advertising. We never sell it. We do not allow humans to read it, except where you have given consent for specific messages, where it is necessary for security purposes such as investigating abuse, or where the law requires it.
AI processing
Some features use AI to read and draft email (for example, summarizing a thread or drafting a reply). These features run on your own Anthropic API key, which you enter in Settings. The operator does not supply a shared key.
When you use an AI feature, the email text it needs is sent to Anthropic's API under your key. This happens when you ask for it, or during the daily check if you have turned it on. TVM does not store that email text. Anthropic handles the text under its own terms and usage policies; please read them at anthropic.com. You can turn AI features off at any time by removing your key.
Prep Cooks and DASH
Prep Cooks is a separate, optional app. If your territory uses it, it reads session information from your DASH account to help run your weeks. TVM itself does not depend on it.
How we store and protect data
- Data is stored with Supabase, our database provider.
- OAuth tokens (such as your Gmail connection) and API keys (such as your Anthropic key) are encrypted at rest.
- Each territory's data is separated from every other territory's by row-level security rules in the database.
- Data is encrypted in transit. Accounts can be protected with a second sign-in factor, and territory owners can require it for their team.
- The database is backed up with continuous point-in-time recovery, and backups are kept for a limited period (up to 30 days) before they roll off.
No system is perfectly secure. If we learn of a breach affecting your data, we will tell you as the law requires.
How long we keep data
Your territory's data stays while your territory is active. If you ask us to delete it, we delete it from the live service, and it leaves our backups as they expire. You can export your data yourself at any time from Settings, Export Data.
You can remove TVM's access to Gmail at any time, in either of two places: your Google Account's third-party access page, or Settings, Email Setup in TVM. Once you remove it, TVM can no longer read or send email for you.
Cookies
TVM uses cookies only to keep you signed in and to protect against forged requests. These are session cookies and security cookies. We do not use advertising or tracking cookies.
Children
TVM is a business tool. It is not directed at children, and we do not knowingly collect information from children.
Who we share data with
We share data only with the service providers that run TVM (for example, our database and hosting providers), with Google when you use the Gmail features you turned on, and with Anthropic when you use AI features under your key. We do not sell personal information.
Changes to this policy
If we change this policy in a way that matters, we will update the date and tell territory owners in the app. Using TVM after a change means you accept the updated policy.
Contact
Questions, access requests, or deletion requests: support@thevenue.menu.
Last updated 2026-10-10