OpenTable Security & Privacy Scorecard

Android

52
Overall trust score
Use With Caution
45
Security
60
Privacy

Reservation, browsing, and in-app activity data is shared with at least seven analytics, advertising, and marketing platforms including Facebook, Adjust, and Segment. Payment details pass through third-party processors. Users receive targeted messaging based on dining behavior across multiple services.

Best for

Diners comfortable with broad analytics and ad tracking

Findings

  • 4 critical
  • 2 high
  • 6 medium
  • 2 low
  • 0 info

0 issues identified across security and privacy analysis.

Top security issues

  • WebView SSL Error Bypass
  • No Encryption for Sensitive Data Storage
  • Hardcoded OAuth Client Secret

Top privacy issues

  • Extensive Behavioral Tracking
  • Backup Includes Sensitive Data
  • Missing Screenshot Protection

Full analysis

OpenTable

Version: 26.6.0 (Build 2116262)
Platform: Android
Scan Date: January 19, 2026

What This Means for You

Reservation, browsing, and in-app activity data is shared with at least seven analytics, advertising, and marketing platforms including Facebook, Adjust, and Segment. Payment details pass through third-party processors. Users receive targeted messaging based on dining behavior across multiple services.

Recommendation: Use With Caution

Best For: Diners comfortable with broad analytics and ad tracking

Key Findings

Data Security - 3 findings (1 critical, 1 high, 1 low)

Network Security - 1 finding (1 critical)

Code Safety - 0 findings

Privacy - 2 findings (2 medium)

Privacy Concerns

What Data is Collected

OpenTable collects dining reservations, in-app search and browsing activity, location data, device identifiers, and payment information. User interactions are tracked across sessions to build a profile of dining preferences and habits.

Third-Party Data Sharing

Data is shared with at least seven external services:

  • Analytics and Behavioral Tracking: Firebase Analytics, MixPanel, Adjust, Segment
  • Advertising and Marketing: Facebook SDK, Swrve, MessageGears
  • Payment Processing: Stripe, Spreedly
  • Consent Management: OneTrust
  • Mapping: Google Maps

Understanding the Scores

Category Score
Security 45/100
Privacy 60/100
Data Security 40/100
Network Security 35/100
Code Safety 50/100
Data Collection 65/100
Data Sharing 70/100
User Control 75/100

Positive Security Features

  • No notable positive security practices were identified for this version of the app.

Areas for Improvement

  • Protection of data stored on device falls short of current standards, leaving account details and stored activity at elevated risk.
  • Network communication lacks adequate safeguards, meaning information the app sends and receives may not be fully protected.
  • Data is shared with a large number of advertising and analytics services, with limited transparency about how long it is retained or how it is used downstream.

About This Analysis

This scorecard is based on static analysis of the app's code and configuration. Results reflect practices observed at the time of the scan and may not capture changes introduced in subsequent updates.

App Details

  • App: OpenTable
  • Package ID: com.opentable
  • Version: 26.6.0 (Build 2116262)
  • Scan Date: January 19, 2026

Versions & scan history

ScanDateOverall score
#1 (current) 52/100