Privacy, in plain English
What we collect
When you tap a Medici NFC keychain or scan one of our QR codes, we record an anonymous visit: the time, which team member's link you used, which restaurant you were at, and a one-way scrambled (hashed) version of your device signature. We never ask for your name, email or phone number, and we don't want them.
Why we record it
Counting visits lets us recognise the team members who look after our customers best, and helps us improve how we look after you.
About duplicate taps
If the same device visits the same team member's link more than once within 24 hours, we label that as a repeat visit so our own counts stay meaningful. Your visit is still counted and you always reach the review page, nothing is ever blocked.
To avoid miscounting two different people who share the same Wi-Fi network or device type, we store a small anonymous marker (a first-party cookie holding an opaque, one-way code — no name, no personal details, and it cannot be reverse-engineered back to you) so we can tell a returning browser apart from a brand-new visitor. It is used only for this duplicate detection and is never used to identify or track you.
Your Google review
Medici cannot see or control the rating you leave on Google. Google processes your actual review under Google's own privacy policy. We only know that you pressed the button to visit Google — never what you wrote there. We ask for honest feedback, whatever it is.
Retention & deletion
Anonymous visit records are kept for up to 365 days and then deleted. We never store your raw IP address — only a salted one-way hash we cannot reverse.
We track anonymous visits to improve this experience. We cannot see or control the rating you leave on Google.