AI phone ordering for restaurants: menu, modifiers and a POS write
What an AI phone ordering agent does: modifiers from the POS, allergy flags without guarantees, honest pickup times, no card numbers, plus KPIs and a demo script.
By Voice Agent Bible Research · 5 min read
Last verified 01 Oct 2026v1.0Published 01 Oct 2026
KPIs at a glance
| KPI | Typical baseline | Target | How to measure |
|---|---|---|---|
| Order accuracy at the kitchen ticket | Phone orders taken on paper and re-keyed are rarely audited; sample 50 of yours against the ticket before you buy | Over 98% of agent orders match the final read-back on items, modifiers and quantities, checked at the kitchen ticket | Weekly sample of agent orders compared line by line with the recording's final confirmation and the kitchen ticket. |
| Answer rate at peak | Trade press claims about 40% of restaurant calls go unanswered, unsourced upstream; log your own Friday and Saturday evenings for a week | 99% of offered calls answered within three rings during service, with a stated concurrency ceiling | Carrier or platform logs: answered / offered by half-hour, first 30 days. |
| Order containment | Not applicable before deployment | 70-85% of ordering calls end with an order written to the POS and no human involved (rule of thumb; menus with many custom builds sit lower) | Calls with a POS order written / calls with an ordering intent, weekly. |
| Allergy handling compliance | Not applicable | 100% of calls where an allergy is mentioned carry the allergy as a kitchen note and the configured wording in the transcript; zero safety guarantees | Transcript search for allergy terms joined to order notes, reviewed weekly; any guarantee phrase is a defect. |
| Pickup-time honesty | A fixed 'twenty minutes' regardless of load is the norm on the phone today | Quoted time within 5 minutes of actual ready time on 90% of orders | Quoted time from the transcript against the KDS bump time, per order. |
| Voice-to-voice latency on menu and write turns | Rule of thumb used across this site: above about 1.2 s per turn the agent feels like an IVR | Median under 0.8 s; 90th percentile under 1.5 s on turns that read the menu or write the order | End of caller speech to first agent audio, from recordings, tool-backed turns only. |
What it is
A phone ordering agent answers the line during service, works out whether the caller wants pickup or delivery, takes the order from the live POS menu with modifiers and quantities, answers what-is-in-it and allergy questions from ingredient data, quotes a pickup or delivery time from kitchen load, reads the itemised order and total back, and writes the order to the POS so the kitchen ticket prints without anyone re-keying it. Payment goes by link or on collection; the agent never hears a card number.
The call shape is short but dense: greeting and disclosure, mode, items with modifiers, corrections, name and number with read-back, time, confirmation, write, payment instruction. Two to four minutes is normal. The hard parts are inside the items turn: a caller says "two green curries, extra spicy, one with no rice" and then changes a quantity three seconds later, often while the agent is reading back. An agent that adds a line instead of changing one has made the order wrong in a way the kitchen cannot see.
Independent owners buy this as AI phone ordering or AI phone answering for restaurants. Multi-unit operators buy it as voice order capture with central menu management and per-location reporting.
Who buys it
- Independent restaurants and small groups doing a meaningful share of revenue through phone pickup and delivery, especially pizza, Chinese, Thai, Indian and Mexican kitchens where the phone has always been the ordering channel.
- Multi-unit operators and franchisors who want one ordering experience across locations, synced to each site's POS menu and availability, with accuracy and containment reported per store.
- Ordering and POS platforms bundling a phone agent, where the buyer is choosing between the bundled agent and a standalone product on the same demo.
Budget owner: the owner or general manager; in groups, the operations or digital lead, with the POS administrator signing off on the integration and menu sync.
KPIs
Sample fifty of today's phone orders against the kitchen ticket before you deploy, and log missed calls by half-hour for one week. Those two numbers are the business case. Then track the strip above: order accuracy at the ticket, answer rate at peak, order containment, allergy handling, pickup-time honesty and voice-to-voice latency on the turns that read the menu or write the order.
Two traps. "Accurate" means the ticket matches the caller's final confirmation, not the agent's first read-back, so audit against the recording. And a containment number that rises because the agent stopped asking about modifiers is an accuracy problem wearing a containment costume; read the two together.
Demo script
Run the full script from the demo guide. The condensed version, with the traps that separate a product from a demo:
- Greeting and mode. Call during a simulated service. Pass: restaurant name, AI disclosure, recording notice, and "pickup or delivery?" before any item is taken.
- Modifiers with interruption. Order two mains with four modifiers between them, then cut in during the read-back with "no, the curry is the extra spicy one". Pass: it stops mid-sentence, moves the modifier to the right item and restarts the read-back from there. Fail: it finishes the wrong read-back.
- Quantity change within ten seconds. Three seconds after ordering one curry say "actually make that two". Pass: one line updated, confirmed in a few words, no duplicate line and no second confirmation of the same change.
- Ambiguous time. Ask for the order "tomorrow evening". Pass: it names the date and offers the slots the kitchen actually has, such as 6.30 or 7.15, rather than accepting "evening" as a time.
- Allergy question. Say your child has a peanut allergy and ask whether the satay is safe. Pass: ingredients read from menu data, your configured wording spoken, the allergy written as a kitchen note, alternatives offered, no guarantee. Fail: "yes, that should be fine."
- Discontinued item. Order an item from an old printed menu. Pass: it says the item is no longer available and offers the closest current items with prices. Fail: it accepts an order the POS cannot hold.
- Eight seconds of silence after it asks for a name. Pass: one short prompt, then a graceful hold or offer to call back. Fail: it hangs up or repeats the whole read-back.
- Mumbled quantity with noise. From a car with the radio on, trail off on "and two of the...". When the agent reads back three, say "yeah". Pass: the itemised total before the write gives you a second chance and the correction is taken. Fail: the wrong quantity reaches the POS.
- Out-of-scope request. Ask it to book a table for twenty next month. Pass: it says it handles orders, offers to transfer or take a message, and does not invent a booking.
- Pickup time, confirmation and write. Pass: a clock time from the sandbox load, an itemised read-back, a plain yes, the order on the POS screen with the allergy note on the ticket, and the payment link in the SMS log. Then say "can I give you my card now?" Pass: it declines per your rule and points to the link.
Score each trap pass or fail. A safety guarantee in turn 5, a card number requested in turn 10, or an order written that differs from the final read-back is a hard stop.
Compliance notes
This use case is inbound, and a call the customer places is outside the TCPA consent rule in the United States. Three other things are live. Recording: federal law is one-party consent but roughly a dozen states require all-party consent, so announce it. Payment: a card number spoken to the agent puts the recording and every vendor in the audio path inside PCI DSS scope; the PCI Security Standards Council's telephone-payment guidance describes pause-and-resume recording and DTMF masking, and a payment link avoids the question. Allergens: federal law defines nine major allergens, with sesame since 1 January 2023; the labelling rule does not cover food wrapped after a customer orders, but a wrong answer is still your liability, so the agent reads data and never guarantees. Any order-ready text or callback from the agent is an outbound artificial-voice or text contact and needs prior express consent and the 8 a.m. to 9 p.m. window. In the United Kingdom, the business must provide allergen information on 14 allergens, and since 1 October 2021 prepacked-for-direct-sale food carries full ingredient labelling under Natasha's Law; recording is personal-data processing under UK GDPR, and any marketing callback needs specific prior consent under PECR Regulation 19. In the European Union, the AI Act's Article 50 duty to tell people they are talking to an AI applies from 2 August 2026, and the same 14-allergen duty applies to restaurant food. In Australia, state surveillance-devices laws differ, so announce recording, and any promotional callback sits inside the telemarketing hours of Monday to Friday 9 a.m. to 8 p.m. and Saturday 9 a.m. to 5 p.m. with the Do Not Call Register applied. Informational, not legal advice; the compliance rows on this page carry the sources.
Build or buy
Buy a packaged product if you are a single-site or small-group restaurant on a mainstream POS; the menu sync, the modifier model and the payment-link flow are the hard parts and vendors have done them, including several POS and reservation platforms with a bundled agent. Consider a platform or a build if you run many locations with per-site menus, a custom upsell policy or an allergen policy that legal has signed off word for word. In both cases the acceptance test is the same: an order on your own sandbox POS during the demo with the allergy note on the kitchen ticket, and a quantity change that produces one line, not two.
Questions to ask vendors
- 01
Show me an order with two items, four modifiers and a quantity change landing in a sandbox of our POS, and show me the kitchen ticket.
A good answer: An order on the sandbox POS during the call, modifiers on the right items, one line for the changed quantity, and the ticket as the kitchen would print it. A ticket with the modifiers in a free-text note is a weaker integration; say so.
- 02
Where does the menu come from, and what happens when we change a price or run out of an item at 6 p.m.?
A good answer: Read from the POS at call time or synced on a schedule you can see, with item availability honoured. Not a menu pasted into the prompt last month.
- 03
What exactly does the agent say when a caller asks whether a dish is safe for a peanut allergy?
A good answer: It reads ingredients from your menu data, speaks your configured allergy wording, records the allergy on the order as a kitchen note, offers alternatives from the data, and never promises the dish is safe. Shown in a transcript.
- 04
How is the pickup or delivery time calculated?
A good answer: From kitchen load, a KDS signal or a slot table you control, quoted as a clock time. Shown moving when you change the load in the sandbox.
- 05
How does payment work, and does the agent or the recording ever contain a card number?
A good answer: A payment link by SMS, payment on collection, or a PCI-scoped pause-and-resume or DTMF capture. If a caller starts reading a card number the agent stops them and the recording is paused or redacted.
- 06
What happens when a caller changes a quantity five seconds after saying it, or interrupts the read-back?
A good answer: The line item is updated once, no duplicate, and the read-back restarts from the changed item. Interruptions stop the agent mid-sentence.
- 07
What does the agent do when the POS is slow or down during service?
A good answer: It tells the caller it is taking the order down, captures a full structured order, alerts the kitchen through a fallback you choose, and never says 'placed' when nothing was written.
- 08
What is the all-in cost per connected minute at our Friday-night concurrency, including telephony, speech and the language model?
A good answer: A line-item breakdown, a stated concurrency limit, and the monthly number at double your current order volume.
Matrix rows that apply
Rows from the global compliance matrix that apply to this page. Informational only, not legal advice; dates change, confirm with counsel and the regulator.
| Jurisdiction | Consent for automated calls | AI disclosure | Calling hours | Recording | Verified |
|---|---|---|---|---|---|
| United States (federal)confidence high | Required The FCC's February 2024 declaratory ruling confirms that AI-generated or cloned voices are "artificial or prerecorded" voices under the TCPA. Outbound calls using them need prior express consent; marketing calls to mobile numbers need prior express written consent. Inbound calls initiated by the consumer are outside this consent rule. | Conditional No federal statute yet requires an agent to announce that it is AI. TCPA rules already require prerecorded or artificial-voice calls to identify the caller at the start and give a callback number. An FCC proposal (2024) would add an explicit AI disclosure; several states have their own bot-disclosure laws. Disclose by default. | Required Telephone solicitations only between 8 a.m. and 9 p.m. in the called party's local time (47 CFR 64.1200(c)(1)). | Conditional Federal law is one-party consent; roughly a dozen states (including California, Florida, Washington and Pennsylvania) require all-party consent. Announce recording at the start of every call unless counsel confirms otherwise. | 2026-09-30 |
| United Kingdomconfidence medium | Required The ICO treats conversational AI voice calls as automated calls under PECR Regulation 19, so direct marketing by automated call needs the recipient's specific prior consent. Live human marketing calls follow the softer Regulation 21 rules (screen against the TPS). | Recommended No UK statute mandates announcing an AI caller, but PECR requires automated marketing calls to identify the sender and provide a contact address, and UK GDPR transparency duties apply. | Recommended No statutory hours in PECR; Ofcom and industry codes expect reasonable hours and honouring "do not call again" requests. | Required Recording is processing of personal data under UK GDPR; tell callers at the start and document the lawful basis. Financial firms have additional FCA recording duties. | 2026-09-30 |
| European Unionconfidence medium | Required Automated calling systems without human intervention for direct marketing need prior consent under the ePrivacy Directive (Art. 13) as transposed by each member state; GDPR requires a lawful basis for the processing itself. | Required EU AI Act Article 50 requires that people interacting with an AI system are informed they are doing so unless it is obvious. Transparency obligations apply from 2 August 2026. Proposed "Digital Omnibus" amendments may adjust timing or scope; verify before relying on this row. | Conditional Set by member-state law and codes (for example, national telemarketing hour rules); no EU-wide statutory window. | Required Recording needs a GDPR lawful basis and transparent notice at the start; several member states require all-party consent. | 2026-09-30 |
| Australiaconfidence medium | Required Telemarketing calls must not be made to numbers on the Do Not Call Register without consent (Do Not Call Register Act 2006); research calls have narrower exemptions. | Conditional The Telemarketing and Research Calls Industry Standard requires callers to identify themselves, the organisation and the purpose at the start. No general AI-caller law; broadcasting codes have begun requiring synthetic-voice disclosure in specific contexts. | Required Telemarketing calls only Monday to Friday 9 a.m. to 8 p.m. and Saturday 9 a.m. to 5 p.m. local time; none on Sundays or national public holidays (Industry Standard 2017). | Conditional State and territory surveillance-devices laws differ; several require all-party consent. Announce recording at the start. | 2026-09-30 |
| New Zealandconfidence low | Recommended No statutory do-not-call register for voice calls; the Marketing Association's Do Not Call list is voluntary. The Privacy Act 2020 governs collection and use of personal information. | Not required No AI-caller disclosure statute; Privacy Act transparency principles apply. | Recommended Industry code expectations only. | Recommended One-party consent for a participant; notify callers to satisfy Privacy Act collection principles. | 2026-09-30 |
Frequently asked
Can an AI take phone orders straight into our POS?
Yes, for the major POS systems, through official APIs or partner integrations. The depth varies from a free-text ticket to a structured order with live availability and prep-time data. Ask to see the write in a sandbox of your own POS, and check the kitchen ticket rather than the order list.
How does the agent handle allergies?
A well-built agent reads ingredient information from the same data your kitchen uses, speaks your wording, records the allergy on the order as a kitchen note, and never guarantees a dish is safe, because cross-contact happens in kitchens. In the UK and EU the business has a legal duty to provide information on 14 allergens; the US defines nine for labelling. Test it with your own recorded call.
Can customers pay over the phone?
They can, but the agent should not hear the card number. A payment link by SMS, payment on collection, or a PCI-scoped DTMF or pause-and-resume capture keeps the card out of the recording and out of your audit scope.
What does an AI phone ordering agent cost?
Small-restaurant products are usually monthly subscriptions with a call or minute allowance, sometimes bundled with the POS or ordering platform. Usage-priced platforms bill per connected minute plus telephony. Advertised per-minute prices commonly exclude speech, language-model and telephony costs, so ask for the all-in number at your peak concurrency.
Related
- Restaurants #2
- Restaurants #3
- Restaurants #4
- Restaurants #5
- Demo script
- Best practice
- Best practice
- Best practice
- Best practice
- Anti-pattern
- Anti-pattern
- Anti-pattern
- Anti-pattern
- Market
- Market