Skip to main content

Privacy Policy

Last updated: August 18, 2026

VenVen (the "Service") is a business management platform for food and drink vendors, private caterers, and mobile carts, operated by Wooden Cow Coffee LLC, an Illinois limited liability company doing business as VenVen ("VenVen," "we," "us," or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

1. Information We Collect

1.1 Information You Provide

  • Account information: Name, email address, and profile data when you create an account (including via Google OAuth).
  • Business information: Business name, location, service area, logo, menu items, pricing, equipment details, and ingredients.
  • Customer, lead, and booking information: Customer names, emails, phone numbers, company names, event dates, event locations, guest counts, day-of contacts, parking notes, schedule notes, selected quote options, and message history you enter or your customers submit.
  • Quote, contract, and signature information: Quote line items, taxes, discounts, deposits, balances, tips, service-fee settings, generated contract text, typed signatures, signature timestamps, and related consent records.
  • Payment information: Payment details are collected and processed directly by our payment processors. We do not store your credit card numbers.
  • Payment records: We store transaction status, amounts, fee-payer settings, payment processor IDs, invoice IDs, refund records, and related metadata needed to reconcile bookings, receipts, refunds, and platform fees.
  • Commissary Match data: If you use our Commissary Match service, we collect your name, email, phone number, location, business type, and specific needs.
  • Communications: If you contact us, we retain the content of your messages.

1.2 Information Collected Automatically

  • Usage data: Pages visited, features used, and interactions within the Service.
  • Device information: Browser type, operating system, and IP address.
  • Cookies, local storage, and session storage: We use cookies for authentication, local storage for preferences, and session storage for in-progress customer booking and quote-editor work. See Section 8 for details.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Produce aggregated, de-identified statistics that we use internally to evaluate and improve the Service (see Section 5.1)
  • Process transactions and send related information
  • Generate and maintain quotes, contracts, booking pages, payment links, receipts, and customer-facing event records
  • Calculate deposits, balances, pay-in-full amounts, tips, taxes, VenVen platform fees, and payment status
  • Generate AI-powered content on your behalf (see Section 4)
  • Provide location-specific market intelligence (weather, pricing data, competitor information)
  • Send technical notices, updates, and support messages
  • Respond to your comments and questions
  • Detect and prevent fraud or abuse

3. Third-Party Services

We share data with service providers only as needed to operate, secure, and improve the Service. These providers process data for purposes such as hosting, database storage, authentication, payment processing, email delivery, analytics, error monitoring, AI features, and market or location data. Each provider is permitted to process your data only to deliver its service to us, under contractual terms that protect your information. We maintain a current list of the specific providers we use and will provide it on request at support@venven.io, or where the law requires disclosure.

3.1 Infrastructure & Hosting

  • Hosting, database, and authentication providers: Host our website and application, store account and business data, process request logs, and maintain login sessions.

3.2 AI Services

  • AI providers: Power optional AI features. When you use those features, relevant business details and recipient details may be sent to generate content. Do not include sensitive information in AI prompts unless you want it used for that request.

3.3 Payment Processing

  • Payment processors: Process VenVen subscription payments, one-time purchases, and customer payments on operator booking and quote pages. These payments may include deposits, remaining balances, pay-in-full amounts, tips, customer-paid service fees, taxes, invoices, refunds, and saved payment methods for authorized off-session balance collection. We do not handle, hold, or store payment card details.

3.4 Email

  • Email providers: Send transactional emails on our behalf, including account messages, quote links, contract links, receipts, balance reminders, failed-payment notices, event reminders, lead-followup nudges, weekly digests, booking-page inquiry confirmations, and Commissary Match results. Your email address, name, and the relevant message content are shared solely for delivery.

3.5 Analytics & Error Monitoring

  • Analytics and error-monitoring providers: Help us understand aggregate website usage, diagnose errors, and improve reliability. Diagnostic data may include error messages, stack traces, browser type, device information, and request metadata.

3.6 Market Data & Location Services

  • Market, weather, mapping, and public-data providers: Provide location-specific data used for market intelligence, pricing suggestions, weather, fuel, labor, and household-income estimates. We send only the location data needed for the request, such as ZIP code, city, state, or geographic coordinates.

3.7 Authentication

  • Google sign-in: If you choose to sign in with Google, we receive your name, email address, and profile picture from Google. We do not access any other Google account data.

4. AI-Generated Content

Our AI features can generate email content and other business copy. When you use these features:

  • Your business name, location, contact details, menu items, and ingredients may be included in the AI prompt.
  • The recipient's name and company name are included to personalize the email.
  • Generated content is provided as-is. You are responsible for reviewing and editing AI-generated content before sending it.
  • Our AI providers process this data only to provide the requested feature under their applicable service terms.

5. Information Sharing

We do not sell, trade, or rent your personal information. We share your information only:

  • With the service provider categories described in Section 3, as necessary to operate the Service
  • With your consent
  • To comply with legal obligations or valid legal processes
  • To protect our rights, privacy, safety, or property
  • In connection with a merger, acquisition, or sale of assets (with prior notice)

5.1 Aggregated, De-Identified Data

We create aggregated, de-identified statistics from information in the Service and use them internally to operate, evaluate, and improve it, and to decide what to build next. This covers business information such as pricing, costs, configured terms, and anonymous activity and outcome rates.

This data is internal. It is not shown to other VenVen users, and it is not sold, licensed, or provided to third parties. The records contain statistics only: no account identifiers, business names, customer details, quote contents, or free text, and no individual business can be identified from them.

We do not aggregate your customers' personal information. Where a statistic relates to repeat business, the calculation looks only at whether a customer record recurs within your own account. The underlying customer details are used in that calculation and are never stored in, or recoverable from, the resulting data.

Demo accounts are excluded. You may ask to be excluded as well by emailing support@venven.io, and we will remove your account from the inputs going forward. Because no identifiable information is retained, there is no record of your individual figures to remove.

6. Data Security

We implement appropriate technical and organizational measures to protect your personal information, including:

  • Encryption in transit (HTTPS/TLS)
  • Row Level Security (RLS) in our database ensuring users can only access their own data
  • Server-side authentication for all API endpoints
  • Environment variables for all API keys and secrets (never exposed to the browser)

No method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

7. Data Retention

We retain your information for as long as your account is active or as needed to provide the Service. Specifically:

  • Account data: Retained until you delete your account.
  • Business data: Retained until you delete your account or remove the data.
  • Customer booking records: Quotes, contracts, signature records, payment status, payment processor IDs, receipts, and refund records are retained while your account is active and as needed for accounting, dispute, fraud-prevention, tax, or legal obligations.
  • Commissary Match leads: Retained for up to 12 months after submission, then deleted.
  • Cached market data: Weather (24 hours), pricing data (7 days), competitor data (7 days).

You may request deletion of your account and all associated data at any time through Settings or by contacting us.

8. Cookies & Local Storage

Essential Cookies

We use essential cookies for authentication. These are required for the Service to function and cannot be disabled. They maintain your login session.

Local Storage

We use browser local storage and session storage to save preferences and in-progress work, including sidebar layout, checklist progress, dismissed notices, quote-editor state, and draft booking details while a customer completes a reservation flow. Some draft data stays on your device until submitted; submitted booking, quote, and payment records are stored on our servers. You can clear local storage through your browser settings.

Font Loading

Core application fonts are self-hosted and do not make external requests. Some optional design tools may load additional fonts from an external font provider when you use those features, which can disclose your IP address to that provider.

9. Your Rights

You have the right to:

  • Access the personal information we hold about you
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data in a portable format
  • Opt out of marketing communications
  • Withdraw consent for optional data processing

To exercise any of these rights, contact us at support@venven.io.

10. California Residents (CCPA)

In the preceding 12 months, we have collected the categories of personal information described in Section 1, used them for the purposes described in Section 2, and disclosed them to the categories of service providers described in Section 3. If you are a California resident, you have additional rights under the CCPA:

  • Right to Know: You can request what personal information we collect, use, and disclose.
  • Right to Delete: You can request deletion of your personal information.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your rights.
  • No Sale or Sharing of Data: We do not sell your personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined by the CCPA. Because of this, no opt-out of sale or sharing is needed.

To submit a CCPA request, email support@venven.io with the subject line "CCPA Request."

11. EU/UK Residents (GDPR)

If you are located in the European Economic Area, the United Kingdom, or Switzerland, you have the following rights under the General Data Protection Regulation (GDPR) and equivalent UK and Swiss law:

  • Right of access: Request a copy of the personal data we hold about you.
  • Right to rectification: Request correction of inaccurate or incomplete data.
  • Right to erasure ("right to be forgotten"): Request deletion of your data, subject to limited legal exceptions.
  • Right to restrict processing: Request that we limit how we use your data.
  • Right to data portability: Receive your data in a machine-readable format.
  • Right to object: Object to processing based on our legitimate interests.
  • Right to withdraw consent: Where processing is based on consent, withdraw it at any time.
  • Right to lodge a complaint: File a complaint with your local data protection authority.

Legal bases: We process your data on the basis of (a) the contract you enter into when you create an account, (b) your consent for optional features, (c) our legitimate interest in operating, securing, and improving the Service, which includes producing the aggregated, de-identified statistics described in Section 5.1, and (d) compliance with legal obligations.

International transfers: VenVen is based in the United States, and our service providers described in Section 3 may also process data in the United States. Where required, we rely on the European Commission's Standard Contractual Clauses and equivalent safeguards offered by those providers.

To exercise any of these rights, email support@venven.io with the subject line "GDPR Request." We respond within 30 days.

12. Children's Privacy

VenVen is designed for business use and is not directed at children under 18. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us and we will delete it promptly.

13. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. Continued use of the Service after changes constitutes acceptance.

14. Contact Us

If you have any questions about this Privacy Policy, please contact us at:

Back to top