Privacy Policy
Last updated: March 5, 2026
1. Introduction
Welcome to Caloris ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and related services.
2. Information We Collect
2.1 Personal Information
When you use Caloris, we may collect:
- Account information (email address, name) when you sign in with Google
- Profile information (age, gender, height, weight, fitness goals)
- Health and fitness data (food logs, calorie intake, macro nutrients, water intake, exercise logs)
- Device information (device type, operating system, unique device identifiers)
2.2 Automatically Collected Information
- Usage data (app interactions, features used, time spent)
- Log data (IP address, browser type, access times)
- Photos you take or upload for food scanning (processed by AI for nutritional analysis)
2.3 Permissions and Access
Our app may request the following permissions:
- Camera Access: To take photos of food for AI-powered nutritional analysis. Photos are processed securely and not stored permanently unless you explicitly save them.
- Storage Access: To save and retrieve food photos, backup data, and enable offline functionality. Local storage is encrypted and protected.
- Network Access: To sync data with our cloud servers, process AI requests, and access food databases.
- Notification Access: To send meal reminders, water intake notifications, and progress updates (with your consent).
- Microphone Access: Optional - For voice commands to log food entries hands-free. Audio is processed locally and not stored unless you save the entry.
3. How We Use Your Information
We use the collected information to:
- Provide and maintain our calorie tracking services
- Analyze food photos using AI to provide nutritional information
- Calculate personalized calorie and macro targets
- Track your progress toward fitness goals
- Sync your data across devices (when signed in)
- Send notifications and reminders (with your permission)
- Improve and optimize our app and services
- Process subscription payments and manage your account
4. Data Storage and Security
Your data is stored securely using industry-standard practices:
- Local data is stored on your device using SQLite encryption
- Cloud data is stored on Supabase servers with Row Level Security (RLS)
- All data transmission is encrypted using HTTPS/TLS
- Authentication is handled securely through Google Sign-In and Supabase Auth
- Food photos are stored in private cloud storage with signed URLs
5. Third-Party Services
We use the following third-party services:
- Supabase: Cloud database and authentication
- Google Gemini AI: Food photo analysis and recognition
- OpenFoodFacts: Barcode lookup and food database
- RevenueCat: Subscription and payment processing
- Google Sign-In: Authentication services
Each third-party service has its own privacy policy governing the use of your information.
6. Your Rights and Choices
You have the right to:
- Access your personal data stored in the app
- Correct inaccurate information in your profile
- Delete your account and associated data
- Opt-out of notifications and reminders
- Use the app offline without cloud sync
- Export your data (coming soon)
7. Data Retention
We retain your personal information for as long as your account is active or as needed to provide you services. You can delete your account at any time, which will remove your data from our servers within 30 days.
8. Children's Privacy
Caloris is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with applicable data protection laws.
11. Cookies and Tracking Technologies
We may use cookies and similar tracking technologies to enhance your experience, analyze app usage, and provide personalized content. You can control cookie settings through your device preferences.
12. Data Breach Notification
In the event of a data breach that compromises your personal information, we will notify you promptly in accordance with applicable laws and take appropriate measures to secure your data.
13. Marketing and Communications
With your consent, we may send you promotional communications about our products and services. You can opt-out of marketing communications at any time through your account settings or by contacting us.
14. User-Generated Content
Any content you create, upload, or share within the app remains your property. By using our service, you grant us a license to use, modify, and display your content solely for the purpose of providing our services to you.
15. Service Providers and Partners
We may share your information with trusted service providers who assist us in operating our app, conducting business, or servicing users. These providers are contractually obligated to protect your information and may only use it for specified purposes.
16. Legal Requirements
We may disclose your personal information if required by law, court order, or government request. We will only disclose what is legally required and will notify you when permitted to do so.
17. Business Transfers
In the event of a merger, acquisition, or sale of all or part of our assets, your personal information may be transferred as part of the transaction. We will ensure your data continues to be protected in accordance with this Privacy Policy.
18. Do Not Track
Our app does not respond to Do Not Track (DNT) signals. However, you can manage your privacy preferences through your account settings and device controls.
19. California Privacy Rights (CCPA)
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA), including the right to know, delete, and opt-out of the sale of your personal information. To exercise these rights, please contact us using the information provided below.
20. GDPR Rights
If you are located in the European Union, you have rights under the General Data Protection Regulation (GDPR), including the right to access, rectify, erase, restrict processing, data portability, and object to processing of your personal data.
21. Limitation of Liability
While we take reasonable measures to protect your information, we cannot guarantee absolute security. We are not liable for unauthorized access to your data due to factors beyond our reasonable control.
22. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
Email: support@caloris.app