Privacy Policy
Last updated: November 8, 2025
TL;DR: Your data is yours. We encrypt it, never sell it, and only use it to make CalPal better for you. You can delete everything anytime.
1. Information We Collect
Information You Provide
- Account Information: Email address, name (optional), and authentication credentials
- Meal Data: Food items, photos, nutrition information, and meal times
- Preferences: Dietary goals, restrictions, intolerances, and calorie targets
- Conversations: Your messages with CalPal for context and personalization
Automatically Collected Information
- Usage Data: App interactions, feature usage, and session duration
- Device Information: Device type, OS version, and app version
- Analytics: Anonymized usage patterns to improve CalPal
2. How We Use Your Information
To Make CalPal Work For You
- ✅ Analyze your meals and provide nutritional insights
- ✅ Remember your goals and preferences
- ✅ Generate personalized responses and recommendations
- ✅ Track your progress over time
To Improve CalPal
- 📊 Understand how features are used (anonymized)
- 🐛 Fix bugs and improve performance
- ✨ Develop new features based on usage patterns
- 🤖 Train and improve our AI models
3. How We Share Your Information
🚫 What We DON'T Do
- We never sell your data. Not to advertisers, not to anyone.
- We never share your personal meals or health data with third parties for marketing.
- We never show you ads based on your eating habits.
What We DO Share
- Service Providers: We use OpenAI (for AI analysis), AWS (for hosting), and Stripe (for payments). They only process data as needed to provide services.
- Anonymized Analytics: We may share aggregated, anonymized data for research (e.g., “Users who eat breakfast log 30% more consistently”).
- Legal Requirements: We may disclose information if required by law or to protect our rights.
4. Data Security
We take security seriously. Your data is:
- 🔒 Encrypted in transit (TLS/HTTPS)
- 🔐 Encrypted at rest (AES-256)
- 🛡️ Stored in secure data centers (AWS with SOC 2 compliance)
- 👥 Access-controlled (only authorized team members can access operational data)
While no system is 100% secure, we implement industry-standard security practices to protect your information.
5. Your Rights & Controls
You have full control over your data:
📥 Access Your Data
Download all your data anytime from Settings
✏️ Edit Your Data
Update or correct any information in the app
🗑️ Delete Your Data
Delete specific meals or your entire account
📧 Export Your Data
Get a copy in machine-readable format (JSON)
To exercise these rights, go to Settings → Privacy & Data in the app, or email us at privacy@calpal.me.
6. Data Retention
- Active Accounts: We keep your data as long as your account is active.
- Deleted Accounts: When you delete your account, we permanently delete your personal data within 30 days (some anonymized usage data may be retained for analytics).
- Inactive Accounts: If you don't log in for 2+ years, we'll email you before deleting your account.
7. Children's Privacy
CalPal is not intended for children under 13. We do not knowingly collect data from children under 13. If we learn that we have collected data from a child under 13, we will delete it immediately. If you believe a child has provided us with personal information, contact us at privacy@calpal.me.
8. International Users
CalPal is based in the United States. If you use CalPal from outside the U.S., your data will be transferred to and processed in the U.S. By using CalPal, you consent to this transfer. We comply with applicable data protection laws, including GDPR for EU users and CCPA for California residents.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we'll update the “Last updated” date at the top and notify you via email or in-app notification. Continued use of CalPal after changes constitutes acceptance of the updated policy.
10. Contact Us
Questions or concerns about privacy? We're here to help:
Email: privacy@calpal.me
Mail: CalPal, Inc., [Your Address Here]