Privacy Policy
Last Updated: 3/6/2025
At Refactor Consulting Ltd (trading as "FoodiePrep"), we respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and protect your information when you use our website (www.foodieprep.ai), our mobile application(s) (the "App"), and our AI-based recipe and meal planning services (collectively, the "Services").
1. Information We Collect
We collect the following types of personal information when you use our Services:
- Email Address: Provided by users during account creation, used for account management and communication.
- Country & Postcode: Collected for billing purposes via Stripe (required only for subscribers).
- IP Address & Country: Automatically collected (e.g., via IP lookup services for web, or network information for App) to personalize services and enhance security.
- Analytical Data: Collected about user activity on our Services (website and App) to improve user experience. This may include usage patterns, features accessed, screen views, interaction times, and performance data.
- Mobile Device Information: If you use our App, we may collect device-specific information such as your device model, operating system version, unique device identifiers (e.g., IDFA for iOS, AAID for Android, or other platform-specific identifiers subject to your permissions and platform policies), mobile network information, and App version.
- Crash Reports and Diagnostics: If you use our App, we may collect data related to crashes and other technical issues to diagnose and fix problems, helping us improve App stability.
- App Permissions Data: Our App may request certain permissions to function as intended (e.g., access to camera for scanning ingredients, storage for saving data, notifications for updates). We will only access data or features covered by these permissions if you grant them, and only for the purposes stated at the time of request or as necessary to provide the requested feature. You can typically manage App permissions through your device's system settings.
2. How We Collect Data
- User Input: When you provide your email address and other details during sign-up or when using interactive features of our Services.
- Automatic Data Collection: Through your use of our Services. For our website, this includes cookies and server logs. For our App, this includes data collected via SDKs (Software Development Kits) incorporated into the App, device identifiers, and other technical means.
- Cookies and Similar Technologies: For our website, we use cookies and similar tracking technologies (like web beacons or pixels). For our App, we utilize SDKs, device identifiers, and other mobile-specific tracking technologies to collect data automatically, enhance functionality, and understand usage.
3. Use of Your Data
We use the information we collect for the following purposes:
- Account Creation and Management: To set up and maintain your account.
- Service Improvement and Personalization: To enhance our services, including personalizing content and recommendations.
- Billing and Payment Processing: To process payments securely via Stripe.
- Analytics: To analyze usage patterns and improve user experience.
- Communication: To send you updates, notifications, and other information related to your account or our services.
4. Legal Basis for Processing Personal Data
We process your personal data based on the following legal grounds:
- Consent: When you provide your information and agree to our terms.
- Contractual Necessity: To fulfill our obligations in providing services to you.
- Legitimate Interests: For improving our services and ensuring security.
5. Cookies & Tracking Technologies
We use cookies on our website and similar tracking technologies in our App to enhance your experience, provide our Services, and analyze usage. These include:
- Session Cookies (Website): To keep you logged in during your session.
- Preference Cookies (Website): To remember your choices and preferences.
- Analytics Cookies (Website) & Technologies (App): To gather usage data and improve our Services.
Mobile App Tracking Technologies:
Our App may use technologies such as:
- Device Identifiers: Such as IDFA (iOS) or AAID (Android) to help us understand usage patterns and for analytics, if permitted by your device settings, platform policies (like Apple's App Tracking Transparency framework), and your consent where required.
- Software Development Kits (SDKs): From third-party service providers for analytics (e.g., to understand feature usage), crash reporting, and other functionalities essential for the App's operation and improvement.
Managing Your Preferences:
Website: You can manage or disable cookies through your browser settings. However, disabling cookies may affect the functionality of our website.
Mobile App: You can often manage tracking preferences related to device identifiers through your mobile device's operating system settings (e.g., by opting out of interest-based advertising, limiting ad tracking, or resetting your advertising identifier). Our App may also provide in-app settings to control certain data collection or features. For device permissions like location or notifications, you can typically manage these through your device's system settings for our App.
6. Third-Party Sharing
We share user data with the following third parties:
- Supabase: For data storage and security. Supabase Privacy Policy
- Stripe: For payment processing. Stripe Privacy Policy
- RevenueCat: For mobile app payment processing and subscription management. RevenueCat Privacy Policy
- OpenAI: For providing AI-based recipe and meal planning services. OpenAI Privacy Policy
- Microsoft Clarity (for website and mobile app): For analytics and user behavior insights. Microsoft Privacy Statement and relevant provider policies.
Data Shared:
- Supabase: Stores your account data securely.
- Stripe: Processes payment information securely.
- RevenueCat: Processes mobile app subscription payments and manages subscription status.
- OpenAI: Provides AI services without processing personal data.
- Stability AI: Provides image generation services without processing personal data.
- Microsoft Clarity: Collects data on Service usage patterns (e.g., clicks, scrolls on web; taps, screen views, session interactions in App) to help improve user experience. This data is processed in a way that aims to protect user privacy.
We do not sell user data to third parties.
7. Data Storage & Security
Your data is stored securely using Supabase. We employ encryption, secure servers, and strict access controls to protect your data from unauthorized access or disclosure.
Security Measures Include:
- Encryption: Data is encrypted in transit (SSL/TLS) and at rest.
- Access Controls: Restricted access to personal data to authorized personnel only.
- Regular Audits: We conduct regular security assessments to maintain high security standards.
- Compliance Standards: We adhere to industry best practices for data security.
8. User Rights
Under the General Data Protection Regulation (GDPR), you have the following rights concerning your personal data:
- Right to Access: You can request a copy of the data we hold about you.
- Right to Rectification: You can request correction of inaccuracies in your data.
- Right to Erasure: You can request the deletion of your data.
- Right to Restrict Processing: You can request that we limit the processing of your data.
- Right to Data Portability: You can request to receive your data in a structured, commonly used format.
- Right to Object: You can object to the processing of your data for certain purposes.
- Right to Withdraw Consent: You can withdraw your consent at any time.
Exercising Your Rights:
To exercise any of these rights, please contact us at info@foodieprep.ai. We will respond to your request within the timeframes established by applicable law.
9. International Data Transfers
Your data may be transferred and stored in countries outside of your own, including the UK, US, and Australia, for data replication purposes via Supabase.
Safeguards in Place:
We rely on Supabase's compliance with data protection laws and implement appropriate safeguards, such as Standard Contractual Clauses, to ensure your data is protected during international transfers.
10. Compliance with Regulations
We comply with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
11. Children's Privacy
Our services are not intended for children under 18 years of age. We do not knowingly collect personal information from minors. If we become aware that we have inadvertently collected personal data from a minor, we will take steps to delete such information promptly.
12. Payments
All payments for our Services (whether made via our website or App) are processed securely via Stripe (Website) and RevenueCat (App). We do not handle or store payment information directly.
Stripe Privacy Policy:
RevenueCat Privacy Policy:
13. Third-Party Services
We use third-party services, including:
- Supabase: For data storage and security.
- Stripe: For payment processing.
- RevenueCat: For mobile app payment processing and subscription management.
- OpenAI: To provide AI-based recipes and meal planning.
- Stability AI: To provide image generation services.
- Microsoft Clarity (for website) and similar analytics tools/SDKs (for App): For Service analytics and understanding user behavior.
These services handle your data securely and in accordance with their own privacy policies.
14. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes outlined in this privacy policy unless a longer retention period is required or permitted by law.
Criteria for Retention Periods:
- Active Accounts: We retain data for the duration your account is active.
- Legal Obligations: We may retain data to comply with legal obligations.
- At User's Request: Data will be deleted upon request, subject to legal and contractual restrictions.
Data Deletion:
To request deletion of your data, please contact us at info@foodieprep.ai.
15. Policy Updates
We may update this privacy policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.
Notification of Changes:
- Significant Changes: We will notify you via email and/or a prominent notice on our Services (website and App).
- Effective Date: The "Last Updated" date at the top of this policy will indicate when it was last revised.
16. Contact Us
For any privacy-related inquiries or to exercise your rights, please contact us:
Email: info@foodieprep.ai
17. Use of Artificial Intelligence Technologies
We utilize AI technologies to enhance our services:
- OpenAI: Used for generating recipes and meal plans. This process does not involve the collection or processing of your personal data. The AI generates content based on generic data and does not use your personal information.
- Stability AI: Used for image generation related to our services. This process also does not involve the collection or processing of your personal data. The AI generates images based on generic data and does not use your personal information.
18. Analytical Data Collection
We collect analytical data about user activity on our Services (website and App) to improve user experience. This includes data such as:
- Usage Behavior: Pages/screens visited or viewed, time spent on them, features used.
- Interaction Data: Clicks (for web), taps (for App), navigation paths, form submissions (excluding sensitive fields).
- Device Information: Browser type and operating system (for web); device model, operating system version, App version, and general device settings like language (for App).
We use this data to:
- Enhance Functionality: Improve Service navigation, features, and performance.
- Personalize Content: Provide recommendations and tailored content where appropriate.
- Track Conversions: Monitor user interactions, registrations, and other key events.
Facebook Pixel & Similar Technologies:
We use tools like Facebook Pixel (for our website) and may use similar advertising/analytics technologies (such as Facebook SDK for our App) to track user interactions, measure the effectiveness of our advertising, and create custom audiences for marketing purposes. This includes:
- Page Views / Screen Views: When you visit different pages on our site or screens in our App.
- Registration Events: When you complete the registration process.
- Other Key Actions: Important interactions with our Service (e.g., initiating a subscription, using a key feature).
This data helps us:
- Measure advertising effectiveness.
- Better understand user behavior across platforms.
- Optimize our marketing campaigns and reach relevant audiences.
Microsoft Clarity & Similar Technologies:
We use tools like Microsoft Clarity (for our website) and may use similar analytics SDKs in our App to understand how users interact with our Services. These services help us improve user experience by providing insights like heatmaps (to see where users click/tap most) and session recordings or interaction replays (to understand navigation patterns and identify usability issues).
- User Interactions: Clicks, scrolls, mouse movements (web); taps, swipes, screen interactions (App).
- Session Recordings/Replays: Anonymized or pseudonymized recordings/replays of browsing or app sessions to identify usability issues. We configure these tools to avoid capturing sensitive personal information entered into forms.
- Heatmaps: Visual representations of aggregate user activity on pages/screens.
- Device and Technical Information: As described under "Device Information" earlier in this section, to understand how different users access our Services.
This data is used to:
- Improve website and App design and functionality.
- Identify and troubleshoot user experience issues.
- Optimise content and navigation pathways.
These analytics tools may capture your interactions with our Services; however, we configure them to avoid capturing directly identifiable sensitive personal information where possible. For more details, you can review the privacy statements of these providers (e.g., Microsoft's Privacy Statement, and Facebook's Data Policy).
Opt-Out:
You can manage your analytics and advertising tracking preferences in several ways:
Website: By adjusting your browser settings to manage cookies (e.g., block third-party cookies), using browser extensions that block trackers, or through third-party ad preference managers (e.g., YourAdChoices, Network Advertising Initiative, Facebook's ad settings).
Mobile App: Through your mobile device's operating system settings (e.g., by opting out of interest-based advertising, limiting ad tracking, resetting your advertising identifier, or managing app permissions for location and other sensitive data). Some analytics providers may also offer their own opt-out mechanisms, and our App may include specific privacy settings where available.
19. Managing Your Preferences
You may manage your communication preferences (e.g., for marketing emails) by following the unsubscribe instructions provided in the emails or by contacting us. For mobile app push notifications, you can typically manage your preferences through your device's system settings for the App.
20. Links to Other Websites
Our Services (website and App) may contain links to other websites or services. We are not responsible for the privacy practices of these sites. We encourage you to read their privacy policies.
21. Security
We are committed to ensuring the security of your information. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee its absolute security.