Privacy Policy

Effective:

("the App") is operated by ("we", "us", "our"). This policy describes how we collect, use, and protect your information.

Contents

  1. Information We Collect
  2. How We Use Your Information
  3. Third-Party Services
  4. HealthKit Data
  5. Data Retention
  6. Data Deletion & Your Rights
  7. Security
  8. Children
  9. California Residents
  10. International Users
  11. Changes to This Policy
  12. Contact

1. Information We Collect

On-Device & iCloud Only

The following data is stored exclusively on your device and in your personal iCloud account. It is never transmitted to our servers:

Collected on Our Servers

When you create an account and use our services, we collect:

Collected Automatically

We may collect additional categories of information as our services evolve. We will update this policy accordingly.

2. How We Use Your Information

3. Third-Party Services

ServiceData SharedPurpose
Apple
(Auth, App Store, HealthKit)
Apple ID token, subscription transactions Authentication, payment processing. HealthKit data stays on-device.
Anthropic
(Claude AI)
Ingredient names, dietary preferences, fitness goal, calorie/macro targets, allergens, cooking constraints AI recipe generation. No personally identifiable information (name, email, user ID) is sent.
Google
(Gemini AI)
Dish/badge text descriptions only AI image generation for recipes and badges. No user data or PII is sent.
Amazon Web Services Account data, diagnostics, all server-side data Cloud infrastructure (US East region).

We do not sell your data to any third party. We do not share data for advertising purposes.

4. HealthKit Data

All HealthKit data is processed locally on your device. It is never transmitted to our servers, sold, shared with third parties, or used for advertising.

We read: weight, body fat percentage, lean body mass, BMI, steps, active energy, heart rate, VO2 max, workouts.

We write: weight, body fat percentage, lean body mass, BMI, dietary nutrition (calories, macronutrients, and 36 micronutrients).

HealthKit integration is optional and controlled by an explicit toggle in Settings > Integrations. Disabling the toggle stops all future reads and writes. Existing Apple Health data is managed by Apple Health, not by us.

5. Data Retention

DataRetention
Active account dataUntil you delete your account
On-device data (logs, pantry, weight)On your device / iCloud — managed by you
Deleted account — grace period30 days (cancellable)
Deleted account — fraud prevention stub12 months, then fully purged
Subscription events365 days
DiagnosticsAnonymized on deletion (userId stripped); crash data retained for stability
Anonymized feedbackIndefinite (userId removed; content kept for improvement)

Fraud prevention stub: After deletion and the 30-day grace period, we retain a minimal stub containing: a SHA-256 hash of your Apple subscription identifier (not reversible to your identity), device check status, and aggregate statistics (total Embers earned, achievement count, referral conversions, account age). This is retained under GDPR Article 6(1)(f) (legitimate interest in fraud prevention). No name, email, or consumption data is retained. The stub is automatically purged after 12 months.

6. Data Deletion & Your Rights

Deletion Process

  1. Go to Settings > Account > Delete Account
  2. Type "DELETE" to confirm
  3. 30-day grace period begins (cancellable)
  4. After 30 days, automatic purge:
  5. On-device and iCloud data must be deleted separately by you

Your Rights

All users have the following rights (enhanced for EU/EEA residents):

To exercise any right, contact . We will respond within 30 days.

7. Security

8. Children

The App is not intended for users under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that a user is under 16, we will delete their account and associated data.

9. California Residents

10. International Users

Data is processed and stored in the United States. By using the App, you consent to the transfer of data to the US. For EU/EEA users, this transfer is necessary for the performance of our contract with you (GDPR Article 49(1)(b)).

11. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via the App or email with at least 30 days notice. Continued use of the App after changes take effect constitutes acceptance.

12. Contact