OpenTable Security & Privacy Scorecard
Android
Reservation, browsing, and in-app activity data is shared with at least seven analytics, advertising, and marketing platforms including Facebook, Adjust, and Segment. Payment details pass through third-party processors. Users receive targeted messaging based on dining behavior across multiple services.
Best for
Diners comfortable with broad analytics and ad tracking
Findings
- 4 critical
- 2 high
- 6 medium
- 2 low
- 0 info
0 issues identified across security and privacy analysis.
Top security issues
- WebView SSL Error Bypass
- No Encryption for Sensitive Data Storage
- Hardcoded OAuth Client Secret
Top privacy issues
- Extensive Behavioral Tracking
- Backup Includes Sensitive Data
- Missing Screenshot Protection
Full analysis
OpenTable
Version: 26.6.0 (Build 2116262)
Platform: Android
Scan Date: January 19, 2026
What This Means for You
Reservation, browsing, and in-app activity data is shared with at least seven analytics, advertising, and marketing platforms including Facebook, Adjust, and Segment. Payment details pass through third-party processors. Users receive targeted messaging based on dining behavior across multiple services.
Recommendation: Use With Caution
Best For: Diners comfortable with broad analytics and ad tracking
Key Findings
Data Security - 3 findings (1 critical, 1 high, 1 low)
Network Security - 1 finding (1 critical)
Code Safety - 0 findings
Privacy - 2 findings (2 medium)
Privacy Concerns
What Data is Collected
OpenTable collects dining reservations, in-app search and browsing activity, location data, device identifiers, and payment information. User interactions are tracked across sessions to build a profile of dining preferences and habits.
Third-Party Data Sharing
Data is shared with at least seven external services:
- Analytics and Behavioral Tracking: Firebase Analytics, MixPanel, Adjust, Segment
- Advertising and Marketing: Facebook SDK, Swrve, MessageGears
- Payment Processing: Stripe, Spreedly
- Consent Management: OneTrust
- Mapping: Google Maps
Understanding the Scores
| Category | Score |
|---|---|
| Security | 45/100 |
| Privacy | 60/100 |
| Data Security | 40/100 |
| Network Security | 35/100 |
| Code Safety | 50/100 |
| Data Collection | 65/100 |
| Data Sharing | 70/100 |
| User Control | 75/100 |
Positive Security Features
- No notable positive security practices were identified for this version of the app.
Areas for Improvement
- Protection of data stored on device falls short of current standards, leaving account details and stored activity at elevated risk.
- Network communication lacks adequate safeguards, meaning information the app sends and receives may not be fully protected.
- Data is shared with a large number of advertising and analytics services, with limited transparency about how long it is retained or how it is used downstream.
About This Analysis
This scorecard is based on static analysis of the app's code and configuration. Results reflect practices observed at the time of the scan and may not capture changes introduced in subsequent updates.
App Details
- App: OpenTable
- Package ID: com.opentable
- Version: 26.6.0 (Build 2116262)
- Scan Date: January 19, 2026
Versions & scan history
| Scan | Date | Overall score |
|---|---|---|
| #1 (current) | 52/100 |