Privacy Policy
Pantryo ("we," "our," or "us") operates the Pantryo mobile application (the "App"). This Privacy Policy explains how we collect, use, and protect your information when you use our App.
By using Pantryo, you agree to the collection and use of information as described in this policy.
1. Information We Collect
Information You Provide
- Account information: Email address, display name, and profile photo (optional) when you create an account or sign in with Google.
- Recipes: Recipe titles, ingredients, preparation steps, and images that you add to the App.
- Shopping lists: Shopping list items generated from your recipes or added manually.
- Groups: Group names and membership information when you create or join family/friend groups.
- Check requests: Messages sent within groups asking about ingredient availability.
Information Collected Automatically
- Device identifiers: Anonymous device tokens used solely for delivering push notifications.
- Authentication tokens: Session tokens to keep you signed in securely.
Information We Do NOT Collect
- We do not collect precise location data.
- We do not collect payment or financial information.
- We do not collect contacts or phone numbers.
- We do not track your activity across other apps or websites.
2. How We Use Your Information
We use your information exclusively to provide and improve the App:
- Account management: To create and maintain your account, authenticate your identity, and display your profile to group members.
- Core functionality: To store your recipes, generate shopping lists, and facilitate group collaboration features including shared recipes, shopping lists, and check requests.
- AI features: To parse recipe text and generate recipe images using artificial intelligence when you use these features. Only the text or prompt you submit is sent to the AI service; no personal data is included.
- Push notifications: To deliver notifications about group activity, check requests, and other app events you have opted into.
- Service improvement: To maintain, troubleshoot, and improve the App.
3. Third-Party Services
We use the following third-party services to operate the App:
| Service | Purpose | Data Shared | Privacy Policy |
|---|---|---|---|
| Supabase | Authentication, database, and file storage | Account data, app content | Link |
| OneSignal | Push notifications | Anonymous device token | Link |
| OpenRouter | AI recipe parsing and image generation | Recipe text submitted by user (no personal data) | Link |
| Fly.io | API server hosting | Requests processed on their infrastructure | Link |
| Sign-in authentication (optional) | Email and profile info via OAuth | Link |
We do not sell, rent, or trade your personal information to any third party.
4. Data Sharing
Your data is only shared in the following circumstances:
- Within your groups: When you join or create a group, other group members can see your display name, profile photo, shared recipes, shared shopping lists, and check requests. You control which groups you join.
- Service providers: With the third-party services listed above, solely to operate the App.
- Legal requirements: If required by law, regulation, or legal process.
We do not share your data with advertisers or data brokers.
5. Data Storage and Security
- Your data is stored on servers located in the European Union (Supabase: EU West; Fly.io: Amsterdam).
- We use industry-standard security measures including HTTPS encryption for all data in transit, encrypted database connections, and JWT-based authentication.
- While we take reasonable measures to protect your data, no method of electronic storage or transmission is 100% secure.
6. Data Retention and Deletion
- We retain your data for as long as your account is active.
- You can delete your account at any time through the App (Settings > Delete Account). Upon account deletion, we permanently remove:
- Your profile information
- Your personal recipes (not shared with groups)
- Your shopping lists
- Your group memberships
- Your notification preferences and device tokens
- Shared content (recipes shared with a group) may be retained within the group after your account is deleted, as other group members depend on this content.
- If you have uninstalled the App and cannot access the deletion feature, you may request account deletion by contacting us at support@pantryo.app.
7. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate personal data.
- Deletion: Request deletion of your personal data (see Section 6).
- Data portability: Request your data in a machine-readable format.
- Objection: Object to the processing of your personal data.
To exercise any of these rights, contact us at support@pantryo.app. We will respond to your request within 30 days.
8. Children's Privacy
Pantryo is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@pantryo.app, and we will promptly delete such information.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we make changes, we will update the "Last Updated" date at the top of this page. We encourage you to review this policy periodically. Continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us at:
Email: support@pantryo.app
This privacy policy applies to the Pantryo mobile application available on Google Play and the Apple App Store.