1. Information We Collect
Account Information
- Apple ID identifier (via Sign in with Apple)
- Email address (if provided)
- Display name (optional)
User-Generated Content
- Recipes, inventory, and grocery lists
- Meal plans and nutrition data
- Dietary preferences and allergies
- Photos uploaded for AI analysis
Usage Data
- App usage patterns
- Device type and OS version
- Error logs and crash reports
- IP address (for security)
We do not collect precise location, biometric data, or sensitive information beyond dietary preferences.
2. How We Use Your Information
- Provide and maintain App functionality
- Generate personalized recipe suggestions using AI
- Analyze food photos to identify ingredients
- Sync data across your devices
- Process subscriptions and manage your account
- Improve app performance
- Prevent fraud and ensure security
3. AI & Image Processing
We use OpenAI's GPT-4o-mini for recipe generation and food photo analysis. Images sent to OpenAI are processed according to their API policy. OpenAI does not use API data for training.
AI suggestions are recommendations only. You always have final control. No automated decisions with legal effects are made.
4. Data Storage & Security
- Data stored using Supabase (US servers)
- Encryption in transit (TLS 1.2+) and at rest (AES-256)
- Role-based access controls
We will notify affected users within 72 hours of discovering any data breach.
5. Third-Party Services
- Supabase - Database and authentication
- Apple - Sign-in, payments, subscriptions
- RevenueCat - Subscription management
- OpenAI - AI features
- Google AdMob - Advertising (free tier only)
- Sentry - Error monitoring
Advertising (AdMob)
Free tier users see ads via Google AdMob. AdMob may collect device identifiers, network info, and ad interaction data. Limit tracking in iOS Settings > Privacy > Tracking.
Premium subscribers are ad-free.
6. Data Sharing
We do not sell your personal information.
We share data only with service providers to operate the App, when required by law, to protect safety, if you share content publicly, or in business transfers.
7. Your Privacy Rights
- Access: Request a copy of your data
- Correction: Update inaccurate information
- Deletion: Delete your account via Settings > Account > Delete Account
- Portability: Receive data in portable format
Or email support@eatinn.org
8. California Privacy Rights (CCPA/CPRA)
California residents have rights to know, delete, correct, and opt-out. We do not sell or share personal information for behavioral advertising.
Submit requests to support@eatinn.org with subject "CCPA Request."
9. European Privacy Rights (GDPR)
EEA/UK users have rights to access, rectification, erasure, restriction, portability, and objection. Data transfers use Standard Contractual Clauses.
Contact support@eatinn.org with subject "GDPR Request."
10. Data Retention
- Active accounts: Data retained while active
- Deletion: Data removed within 30 days of request
- Backups purged within 90 days
11. Children's Privacy
EAT-INN is not for children under 13. We don't knowingly collect data from children under 13. Users 13-17 need parental permission.
12. Changes to This Policy
We may update this policy. Material changes will be communicated via the App or email. Continued use constitutes acceptance.
13. Contact
Beldangi Fax Machine LC
Email: support@eatinn.org
Location: Vermont, United States
We respond to privacy requests within 30 days (45 days for CCPA).