Privacy Policy
Last updated: August 29, 2026
Meal Social Inc. ("MESA", "we", "us", "our") operates the MESA mobile applications, mesa-app.link and mesaplanner.com (together, the "Service"). This Privacy Policy explains what personal information we collect, why we collect it, the legal bases we rely on, who we disclose it to, how long we keep it, and the rights you have.
This policy forms part of our Terms of Service. Words defined there have the same meaning here.
1. Summary
This summary is for convenience only and does not replace the detail below.
- We collect what the Service needs in order to find places near you, let you plan with other people, and show your activity to the audience you choose.
- We do not sell personal information. We do not share personal information for cross-context behavioural advertising. We do not operate advertising networks or advertising trackers in the Service.
- Precise location is collected only while the app is open, only with your permission, and only to rank nearby places and to confirm you are at a venue when you check in.
- You can delete your account and its content yourself, at any time, from inside the app.
- Some features use artificial intelligence. Requests and relevant venue data are processed by Google. Your private messages are never sent to an AI provider and are never used to train a model.
- We rely on service providers in the United States. If you use the Service elsewhere, your information is transferred to the United States.
2. Who is responsible for your information
Meal Social Inc. is the controller of the personal information described in this policy.
Contact: privacy@mesaplanner.com
If you are in the European Economic Area or the United Kingdom and cannot resolve a matter with us directly, you may complain to your local supervisory authority. Nothing in this policy limits that right.
3. Information we collect
3.1 Information you provide
Account information. Your email address and the authentication method you choose (email, Google, or Apple). If you use Sign in with Apple with Hide My Email, we receive only Apple's relay address and cannot see your real address unless you tell us.
Profile information. Display name, username, profile photograph, biography, pronouns, home city, and your chosen profile visibility (public, connections-only, or private). Everything except a name is optional.
Content you create. Tips and reviews including star ratings, photographs you upload, posts and captions, comments, poll questions and votes, saved venues and collections, plans and their details including dates and invitees, and messages you send in Tables (group conversations).
Social information. Accounts you follow, accounts that follow you, pending follow requests, accounts you block, people you tag in a check-in, people you mention in a post or comment, and the membership of Tables you belong to.
Venue operator information. If you claim a venue: your name and stated role, business details you submit, documents you upload to evidence ownership or authority, and a telephone number that we verify by call or message. Where business verification is used, the business identifiers required for that check.
Communications with us. The content of your support requests, reports of other users or content, and any correspondence you send.
3.2 Information collected automatically
Precise geolocation. With your operating-system permission, and only while the app is in the foreground. Used to rank nearby venues, populate the map, and verify presence at a venue on check-in. If you decline or revoke permission, the Service tells you it does not know where you are and shows nothing, rather than substituting a default location. When you complete a check-in we retain the coordinates, the reported accuracy, and the computed distance to the venue as part of that check-in record, because those values are what make the check-in verifiable.
Device and technical information. Device platform, model and operating-system version, application version and build, language and region settings, time zone, and a push-notification token if you enable notifications.
Diagnostics. Crash reports, error traces and performance timings. These can incidentally contain the screen you were on and the request that failed.
Usage information. Screens and pages viewed, searches submitted, venues opened, filters applied, recommendations shown and tapped, plans created, and similar interaction events. Each event carries a randomly generated device identifier and, when you are signed in, your account identifier.
Attribution information. If you arrive through a shared link, invitation or referral code, we record that code and any campaign, source and medium parameters so that referrals can be credited and we can understand which channels work.
Local storage. The apps and websites store data on your device to keep you signed in, remember preferences such as theme and any manually chosen city, cache content for speed, and hold a downloaded application update. This is first-party storage that the Service needs to function. We do not use advertising cookies, advertising identifiers, or third-party advertising SDKs. Because we do not sell or share personal information for behavioural advertising, a Global Privacy Control or Do Not Track signal has nothing to opt you out of; we honour those signals by never engaging in that practice in the first place.
3.3 Information from third parties
Authentication providers. When you sign in with Google or Apple we receive an identifier, and the name, email address and photograph you permit them to share. We do not receive your password.
Venue data providers. Venue names, addresses, categories, opening hours, price levels, ratings and photographs from Google Places and comparable sources. This is information about businesses, not about you.
3.4 Information we derive
Preference and affinity profiles. We derive a model of your tastes from what you save, check into, rate, recommend, search for and open, and from overlap between your activity and that of accounts you follow. This drives the recommendation surfaces, search ranking and the assistant. It is derived from your own activity within the Service; we do not purchase profile data about you.
Optional dietary information. Diet preferences, allergies, interests and vibe preferences, where you have entered them. Treat allergy information as a preference signal used for ranking, not as a safety control. See section 5 and the Terms of Service.
4. Sensitive personal information
Some information we handle is treated as sensitive under one or more laws, specifically precise geolocation and any dietary or allergy information you choose to enter, which can imply health information.
We use sensitive personal information only to deliver the features you have asked for — nearby discovery, check-in verification and personalisation. We do not use it to infer characteristics about you, and we do not disclose it for any purpose that would require an opt-in we have not obtained. You can withdraw location permission at any time in your device settings, and you can clear dietary fields in your profile.
5. How and why we use information, and our legal bases
Where the GDPR or UK GDPR applies, we rely on the legal basis identified for each purpose.
- Providing the Service — creating and maintaining your account, discovery and search, maps, plans, Tables, check-ins, collections and notifications. Basis: performance of a contract.
- Precise location features — ranking nearby venues and verifying check-ins. Basis: your consent, given through the operating-system permission prompt, which you may withdraw at any time.
- Personalisation and recommendations — ranking venues, For You, Trending, and the assistant's suggestions. Basis: legitimate interests in providing a useful product, and performance of a contract where personalisation is the feature you requested.
- Integrity and anti-abuse — rate limits on posting, protection against review manipulation, detection of falsified check-ins including mocked location signals and physically impossible travel between check-ins, moderation of reported content, and enforcement of blocks. Basis: legitimate interests in a safe and trustworthy service, and compliance with legal obligations.
- Communications — verification codes, notifications you have enabled, responses to your requests, and material service notices. Basis: performance of a contract, and your consent for optional notifications.
- Venue verification — confirming that a person claiming a venue is authorised. Basis: legitimate interests in preventing impersonation and fraud.
- Product analytics and improvement — understanding which features are used and where they fail. Basis: legitimate interests, and consent where required by local law.
- Legal and safety — complying with law, responding to lawful requests, establishing or defending legal claims, and protecting the rights and safety of people. Basis: compliance with legal obligations, legitimate interests, and vital interests where someone is at risk.
Where we rely on legitimate interests, we have considered the effect on you and provide the controls described in section 9. You may object to that processing as described in section 10.
6. Automated decision-making and profiling
We profile you for the purposes of ranking and recommendation as described above. Ranking which restaurants appear first, or generating a suggestion, has no legal effect on you and does not deprive you of anything.
Two automated processes can affect your use of the Service, and both are described so you can contest them:
- Check-in verification. A check-in may be rejected automatically where the location reported by your device is flagged as mocked, is too imprecise to be meaningful, places you outside the venue's radius, or implies impossible travel from a previous check-in. The consequence is that a single check-in does not record.
- Anti-abuse limits. Posting may be limited automatically where activity matches patterns associated with review manipulation — for example the number of reviews one account posts about a single venue within a day, or how new the account is.
If an automated decision has affected you and you believe it is wrong, email privacy@mesaplanner.com. A person will review it, and you may express your point of view and contest the outcome.
7. Artificial intelligence features
Features that use AI include the discovery assistant and conversational search, venue summaries and vibe descriptions, extraction of menu information from photographs of menus, plan suggestions, and the personalised assessment of whether a venue suits you.
What is sent. The request itself (for example the text you typed, or the identity of the venue in question), relevant venue data, and, for the personalised assessment, a summary of your derived preferences.
Who processes it. Google, using its Gemini models, under enterprise API terms as our service provider.
What is not sent. We do not transmit your private messages, the contents of your Tables, your contact details, or your authentication credentials to any AI provider.
Training. Your content is not used to train our models or those of our providers.
Accuracy. AI output can be incorrect, incomplete, outdated or entirely fabricated. This includes opening hours, prices, menu items, ingredients and any allergen or dietary characterisation. Do not rely on it. Confirm anything that matters, and anything affecting health or safety, directly with the venue. See the Terms of Service for the corresponding contractual position.
8. How we disclose information
We disclose personal information only as set out below. We do not sell personal information and we do not share it for cross-context behavioural advertising.
8.1 To other users
According to your settings. Your profile and the content you publish are visible to the audience you select — public, connections only, or nobody. A private tip is visible only to recipients you choose. Messages in a Table are visible to that Table's members. Tagging or mentioning someone reveals that content to them and to its audience. Accounts you block cannot see your content through the Service, but content already shared or captured by others is outside our control.
8.2 To service providers
Each processes personal information on our behalf, under contract, only for the purpose stated, and is not permitted to use it for its own purposes:
- Google Cloud Platform — application hosting, managed database, caching. United States.
- Google Firebase — authentication, and storage of photographs you upload.
- Google Places — venue information and venue photographs.
- Google (Gemini) — the AI features in section 7.
- Mapbox — map rendering and tiles.
- Expo (Expo Application Services) — delivery of push notifications, and over-the-air application updates.
- Twilio — verification calls and messages for venue claims and phone verification.
- Resend — transactional email.
- ScrapingBee — retrieval of venue websites and menu pages. This processes venue websites, not your personal information.
- Middesk — business verification for venue operators, where that check is used.
- Apple and Google — application distribution, and authentication if you choose those providers.
8.3 To venues and reservation providers
When you open a reservation or booking, the Service directs you to the venue's own provider — for example OpenTable or Shift4 — or to the venue's website. From that point you are dealing with that company under its terms and its privacy policy, not ours. We do not control what it collects. Where you have shared a venue or plan with other users, the fact of that share is visible to them.
8.4 For legal and safety reasons
We may disclose information where we believe in good faith that it is required by law, regulation, legal process or governmental request; to enforce our Terms; to detect, prevent or address fraud, security or technical problems; or to protect the rights, property or safety of MESA, our users, or the public. Where a report concerns child safety we may disclose to the National Center for Missing and Exploited Children and to law enforcement, as described in our Child Safety Standards.
8.5 Corporate transactions
If we are involved in a merger, acquisition, financing, reorganisation or sale of assets, information may be disclosed or transferred as part of that transaction. We will give notice before your information becomes subject to a materially different privacy policy.
8.6 Aggregated and de-identified information
We may create and use aggregated or de-identified information that cannot reasonably be used to identify you — for example how many people checked in to a category of venue in a city. We maintain de-identified information in that state and do not attempt to re-identify it.
9. Your choices and controls
- Location permission — grant or revoke in your device settings. Revoking disables nearby discovery and check-in verification; the rest of the Service continues to work.
- Notifications — enable or disable by category in the app, and entirely in your device settings.
- Profile visibility — public, connections only, or private. Private accounts approve followers individually.
- Per-post audience — chosen when you post. Tips can be restricted to named recipients.
- Blocking and reporting — block any account, and report content or messages for review.
- Manual location — choose a city instead of using your device position.
- Personalisation — removing saves, check-ins, ratings and recommendations removes them from the signals that shape your recommendations.
- Marketing email — unsubscribe using the link in any such message. We will still send transactional and security messages.
- Deletion — delete your account and content in the app at any time.
10. Your rights
Subject to your local law, you may have the right to:
- Access the personal information we hold about you, and obtain a copy.
- Correct inaccurate or incomplete personal information.
- Delete personal information.
- Port personal information to another provider in a structured, machine-readable format.
- Object to processing based on legitimate interests, and to withdraw consent where processing is based on consent, without affecting the lawfulness of prior processing.
- Restrict processing in certain circumstances.
- Limit the use and disclosure of sensitive personal information.
- Opt out of sale or of sharing for cross-context behavioural advertising — we do neither, so there is nothing to opt out of.
- Not be discriminated against for exercising any of these rights.
- Not be subject to a decision based solely on automated processing that has legal or similarly significant effects, and to contest such decisions (see section 6).
10.1 How to exercise a right
Email privacy@mesaplanner.com, or delete your account directly in the app. State which right you are exercising.
Verification. We verify requests against the email address on the account, and may ask for further information where we cannot reasonably match a request to an account. We will not create new records about you solely to verify a request beyond what is necessary.
Timing. We acknowledge promptly and respond within 30 days, or within 45 days for requests under California law, extendable once where permitted and where we tell you the reason.
Authorised agents. An agent may act for you with your signed written permission. We may contact you to confirm, and may require you to verify your own identity.
No fee. We do not charge, unless a request is manifestly unfounded or excessive, in which case we will tell you before doing anything.
10.2 Appeals
If we decline a request and your state's law provides an appeal — including Virginia, Colorado, Connecticut, Montana, Oregon and Texas — reply to our decision with the subject Appeal and a different reviewer will reconsider it. We will inform you of the outcome and, if we still decline, how to contact your Attorney General.
11. United States state privacy notices
11.1 California
This section supplements the rest of the policy for California residents. See also Your California Privacy Rights.
Categories of personal information collected in the past twelve months: identifiers; commercial information; internet or other electronic network activity information; geolocation data; audio, electronic or visual information; professional information where a venue operator provides it; inferences; and sensitive personal information as described in section 4. Sources, purposes and recipients are described in sections 3, 5 and 8.
Sale and sharing. We have not sold personal information and have not shared it for cross-context behavioural advertising in the preceding twelve months, and we do not do so now. We do not knowingly sell or share the personal information of consumers under sixteen.
Financial incentives. Referral and invitation features may credit an existing user when a new user joins. Participation is voluntary, requires no payment, and can be declined by not using a referral link. The value of any incentive is nominal and reasonably related to the value of the referral to us. You may withdraw at any time by ceasing to use those features.
Retention. We do not retain personal information for longer than reasonably necessary for the purposes in section 5. See section 12.
11.2 Nevada
Nevada residents may direct us not to sell certain personal information. We do not sell personal information as defined by Nevada law. Requests may still be sent to privacy@mesaplanner.com.
11.3 Other states
Residents of states with comprehensive privacy laws — including Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Delaware, Iowa, Nebraska, New Hampshire, New Jersey, Tennessee, Minnesota and Maryland — have rights of access, correction, deletion, portability, and opt-out of targeted advertising, sale and certain profiling. We do not conduct targeted advertising or sell personal information. Exercise rights as described in section 10.
12. How long we keep information
We keep personal information only as long as necessary for the purposes in section 5, then delete or irreversibly anonymise it.
- Account and profile — for as long as your account exists.
- Content you posted — until you delete it, or until your account is deleted.
- Check-ins, including coordinates and accuracy — with your account, and deleted with it.
- Messages in a Table — retained while the Table exists so other members keep their conversation; your identity is removed if your account is deleted.
- Usage and analytics events — retained in identifiable form for no longer than twenty-four months, then aggregated or deleted.
- Diagnostics and crash reports — up to ninety days.
- Push tokens — until you disable notifications, the token becomes invalid, or your account is deleted.
- Verification records for venue claims — for the life of the claim and then as needed to evidence that a claim was properly verified.
- Moderation and safety records — retained as long as necessary to enforce our Terms, prevent repeat abuse, and comply with law; child-safety records are retained as law requires.
- Records required by law, such as tax or accounting records — for the period the law requires, unlinked from a usable profile.
- Backups — purged on a rolling schedule; deletion propagates as backups age out.
12.1 What deletion means
Deleting your account removes your profile, credentials, saved venues, collections, plans, check-ins, tips, reviews, votes, follows, blocks and push tokens.
Where content forms part of another person's record — a group plan you joined, or a conversation with other members — your account is irreversibly anonymised rather than erased, so that the other participants retain their own history. Your name, username, photograph and contact details are removed and cannot be restored.
13. Security
We apply administrative, technical and physical safeguards proportionate to the risk, including encryption of data in transit, restricted and logged access to production systems, secrets held in a managed secret store, storage permissions scoped so that you can only write to your own area, and rate limiting.
Your part. Use a strong, unique credential with your authentication provider, keep your device secure, and do not share access to your account.
Breach. If a breach affects your personal information and the law requires notification, we will notify you and the relevant regulator within the required time and describe what happened and what to do.
No absolute guarantee. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
14. Children
The Service is not directed to children. You must be at least 13 years old, and at least 16 where your jurisdiction sets a higher minimum age for consent to processing.
We do not knowingly collect personal information from anyone below the applicable minimum age. If we learn that we have, we delete the account and its information promptly. If you believe a child has provided information, email safety@mesaplanner.com.
See also our Child Safety Standards, which describe our prohibitions, enforcement and reporting on child sexual abuse and exploitation.
15. International transfers
We operate from the United States and our service providers process personal information there. If you use the Service from outside the United States, your personal information is transferred to and processed in the United States, where data-protection law differs from your own and public authorities may have rights of access.
Where we transfer personal information out of the European Economic Area, the United Kingdom or Switzerland, we rely on an appropriate transfer mechanism, which may include the European Commission's Standard Contractual Clauses, the UK International Data Transfer Addendum, or an adequacy decision. You may request information about the mechanism used for a particular transfer.
16. Third-party links and integrations
The Service links to venue websites, reservation providers, map providers and application stores. Those services are controlled by others. Their collection and use of information is governed by their own policies, and we are not responsible for them. Review the policy of any service before providing information to it.
17. Changes to this policy
We may update this policy. We will revise the date at the top, and where a change materially affects how we use your personal information we will give notice in the Service or by email before it takes effect. Where the law requires consent for a change, we will ask for it. Continuing to use the Service after a change takes effect means the updated policy applies to you.
Previous versions are available on request.
18. Contact
Meal Social Inc.
7995 Blue Diamond Rd #102-119
Las Vegas, NV 89178
United States
Privacy and data-rights requests: privacy@mesaplanner.com
Safety and child-safety reports: safety@mesaplanner.com
Everything else: hello@mesaplanner.com
Written notices may be sent to the postal address above.
