Privacy Policy

Last updated: 10/1/2025

This Privacy Policy describes how PLATE HEALTH("we", "us", or "our") collects, uses, and protects your personal information when you use our personalized meal planning and nutrition analysis mobile application ("Service").

We are committed to protecting your privacy and handling your personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA).

1. Information We Collect

Personal Information

We collect the following personal information that you provide to us:

  • Name and email address (for account creation)
  • Health conditions and medical history
  • Current medications and supplements
  • Dietary restrictions, preferences, and allergies
  • Nutritional deficiencies and health goals
  • Biometric data (age, gender, height, weight, activity level)

Usage Data

  • Food photographs and scanning data
  • Meal plan interactions and preferences
  • Craving logs and analytics data
  • App usage patterns and feature interactions

Device Information

  • Device type, operating system, and app version
  • Camera access for food scanning functionality
  • Network connectivity information

2. How We Use Your Information

We use your personal information for the following purposes:

  • Generate personalized meal plans based on your health profile
  • Analyze food photographs and provide nutritional information
  • Assess potential medication interactions and health impacts
  • Provide dietary recommendations and health insights
  • Track and analyze your nutritional intake and cravings
  • Improve our Service through analytics and user feedback
  • Provide customer support and respond to your inquiries
  • Ensure the security and functionality of our Service

3. Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties for marketing purposes.

We may share your information in the following circumstances:

AI Processing Services

  • OpenAI: Food images and health data
  • Perplexity AI: Health profile data

These services process your data according to their privacy policies and data processing agreements.

Service Providers

  • Clerk: Authentication and user account management
  • Supabase: Secure cloud data storage and database services

Legal Requirements

We may disclose your information in the following circumstances:

  • If required by law, court order, or government request
  • To protect our rights, property, or safety

4. Data Storage and Security

Your data is stored securely using industry-standard encryption and security measures:

  • Data encrypted in transit and at rest
  • Secure cloud storage with Supabase infrastructure
  • Regular security assessments and updates
  • Access controls and authentication mechanisms

Data Retention

We retain your personal information for as long as necessary to provide our services and comply with legal obligations.

You may request deletion of your data at any time.

5. Camera and Photo Processing

Our food scanning feature requires camera access to analyze food images:

  • Photos are processed locally and sent to AI services for analysis
  • Original photos are automatically deleted after processing
  • Only nutritional analysis results are stored in your profile
  • You can disable camera access in your device settings

6. Your Privacy Rights

Depending on your location, you have the following rights regarding your personal data:

GDPR Rights (EU Residents)

  • Right to access your personal data
  • Right to rectify inaccurate or incomplete data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing

CCPA Rights (California Residents)

  • Right to know what personal information is collected
  • Right to delete personal information
  • Right to opt-out of sale (we do not sell personal information)
  • Right to non-discrimination for exercising your rights

To exercise these rights, please contact us using the information provided below.

7. International Data Transfers

Your personal data may be transferred to and processed in countries other than your own. We ensure adequate protection through:

  • Standard contractual clauses approved by the European Commission
  • Adequacy decisions for data transfers to certain countries
  • Appropriate safeguards for international service providers

8. Age Restrictions

Our Service is not intended for children under 13 years of age.

We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

Users between 13 and 18 years of age should have parental consent before using our Service.

This is especially important for health-related features.

9. Cookies and Tracking Technologies

We use minimal tracking technologies:

  • Authentication cookies to maintain your session
  • Local storage for app preferences and settings
  • Analytics data to improve app performance (anonymized)

We do not use third-party advertising or marketing cookies.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

  • Posting the new Privacy Policy in the app
  • Sending you an email notification
  • Providing notice through our Service

Your continued use of the Service after any modifications indicates your acceptance of the updated Privacy Policy.

11. Contact Information

If you have any questions about this Privacy Policy or wish to exercise your privacy rights, please contact us at:

General Privacy Inquiries:

Email: support@platehealth.app

Subject: Privacy Policy Inquiry

Data Protection Officer:

Email: support@platehealth.app

Subject: Data Protection Request

For data protection inquiries, please include:

  • Your name and email address associated with your account
  • A clear description of your request
  • Any supporting documentation if applicable

We will respond to your request within 30 days or as required by applicable law.