MealKind Privacy Policy
Last updated: September 20, 2026
This Privacy Policy explains how A+ Apps (“A+ Apps,” “we,” “us,” or “our”) handles information when you use the MealKind mobile application (“MealKind” or the “App”).
We designed MealKind to keep meal history and personal food information on your device whenever practical. Some information must be processed by trusted service providers to provide account access, AI-powered suggestions, subscriptions, and notifications.
1. Information We Handle
Account information
MealKind requires an account for account-based features. When you sign in using Apple or Google, we may receive:
- Your email address, including an Apple private relay address if you choose to hide your email;
- A unique account and authentication-provider identifier;
- Your name or profile information if the sign-in provider makes it available; and
- Authentication tokens needed to keep you signed in securely.
MealKind does not receive or store your Apple ID or Google account password. Authentication is provided through Apple, Google, and Supabase.
Meal, image, and recommendation information
When you request a meal analysis or suggestion, the information processed may include:
- Photos you take or explicitly select;
- Meal descriptions and foods you enter;
- Food items identified from a photo or menu;
- Corrections, choices, questions, and answers you provide;
- Dietary preferences, allergies, foods you avoid, and temporary preferences;
- Your manually entered travel city when Travel mode is enabled;
- Meal context such as available time, eating environment, cravings, or meal type;
- Previous suggestions needed to avoid repeating an idea;
- Aggregated meal check-in information used to describe a supported pattern; and
- The resulting AI-generated analysis or recommendation.
MealKind does not request access to your device’s location. If you enable Travel mode, the city is entered manually by you. Turning Travel mode off stops the city from being included in future AI requests.
Photos, descriptions, preferences, and related context are sent through MealKind’s Supabase backend to OpenAI only when you request an AI-powered feature and have granted AI permission.
Information stored on your device
MealKind stores the following information locally on your device:
- Meal and menu history;
- Photos associated with your meal history;
- Saved meals and recommendations;
- Dietary preferences, allergies, avoided foods, and temporary preferences;
- Your Travel mode city;
- Meal check-in answers and locally calculated patterns;
- Notification and consent preferences; and
- Other settings needed to operate the App.
Meal history, photos, complete check-in answers, and detailed food patterns are not stored as meal history in MealKind’s cloud database. They remain on your device except for the limited processing described in this policy.
If your device is configured to back up application data to iCloud, locally stored MealKind information may be included in that backup. Apple controls the handling and retention of iCloud backups.
Subscription and purchase information
Purchases are processed by Apple through the App Store. RevenueCat helps MealKind verify subscription status and entitlements. Information processed for this purpose may include:
- A pseudonymous MealKind account identifier;
- App and device information;
- Product and entitlement identifiers;
- Purchase, renewal, expiration, refund, and subscription status; and
- Whether a transaction occurred in Apple’s sandbox or production environment.
A+ Apps does not receive or store your full payment card number. Apple processes payment information under Apple’s own policies.
Notification information
If you enable meal reminders, OneSignal may process:
- Your pseudonymous MealKind account identifier;
- Your device’s push-notification token;
- Device, operating-system, app-version, and notification-delivery information;
- Notification subscription status and engagement, such as notification taps;
- A locally generated meal identifier; and
- A short meal name used to create a contextual reminder.
Meal photos, ingredients, detailed food features, and complete check-in answers are not sent to OneSignal.
AI usage and operational information
MealKind’s backend processes limited operational information needed to provide and protect the service, including:
- Your account identifier;
- The number and timing of AI requests;
- Your free-access or subscription entitlement status;
- The type of operation requested;
- Technical error categories and request status; and
- Standard server information such as timestamps, IP addresses, and security logs that may be processed by hosting providers.
MealKind does not intentionally place meal descriptions, photos, generated recommendations, or other user content in its operational logs.
Support communications
If you contact us, we process your email address, the contents of your message, and any information you choose to provide so we can respond and resolve your request.
2. Device Permissions
Depending on the features you choose, MealKind may request:
- Camera access so you can photograph a meal or menu;
- Photo-library access so you can select an image; and
- Notification permission so MealKind can send meal check-ins.
MealKind accesses only the photos you capture or select through the App. You can change camera, photo, and notification permissions in iOS Settings. Declining notifications does not prevent you from using MealKind’s other features.
3. How We Use Information
We use information to:
- Create, authenticate, maintain, and delete MealKind accounts;
- Analyze meals and menus at your request;
- Generate practical, personalized meal suggestions;
- Apply your dietary preferences, allergies, avoided foods, and current context;
- Prioritize realistic local options when Travel mode is enabled;
- Remember your local settings and meal history;
- Send meal reminders when notifications are enabled;
- Verify purchases and subscription access;
- Apply free-use and subscription usage limits;
- Prevent fraud, abuse, unauthorized access, and security incidents;
- Diagnose technical problems and maintain reliability;
- Respond to support, privacy, and account-deletion requests; and
- Comply with legal obligations and enforce our agreements.
4. AI Processing
MealKind uses OpenAI’s API to provide AI-powered meal analysis and
suggestions. MealKind requests that API responses are not stored as
application state by setting store: false.
Under OpenAI’s current API data controls, API inputs and outputs are not used to train OpenAI models unless the API customer explicitly opts in. A+ Apps does not opt in to using MealKind API content for model training.
OpenAI may retain API inputs, outputs, and related metadata for up to 30 days for abuse monitoring, security, and legal compliance, unless a longer period is required by law or permitted under OpenAI’s policies.
We do not intentionally send your email address or MealKind account identifier to OpenAI as part of meal content. However, a photo or free-text description could contain personal information if you include it. Please do not submit information that is unnecessary for receiving a meal suggestion.
AI-generated suggestions may be inaccurate. MealKind does not provide medical diagnosis, treatment, or professional dietary advice. A photo cannot establish ingredients, preparation methods, or allergen safety. Always confirm allergy information directly with the person or business preparing the food.
5. Service Providers
We use the following providers to operate MealKind:
- Supabase — authentication, backend functions, server-side AI usage counters, purchase-status records, and reminder-delivery state. Supabase Privacy Policy
- OpenAI — AI-powered analysis and recommendation generation. OpenAI Privacy Policy
- RevenueCat — subscription entitlement and purchase-status verification. RevenueCat Privacy Policy
- OneSignal — push-notification registration, delivery, and engagement. OneSignal Privacy Policy
- Apple — Sign in with Apple, App Store purchases, subscription management, notifications, and optional iCloud backups. Apple Privacy Policy
- Google — Google sign-in and email-based support services. Google Privacy Policy
We require service providers processing personal information on our behalf to protect it consistently with this policy and applicable law, and to use it only as necessary to provide their contracted services. Their processing is also governed by their applicable terms and privacy notices.
6. How Information Is Shared
We may share information:
- With the service providers identified above to operate MealKind;
- When you direct or consent to the sharing;
- When required by law, legal process, or a valid governmental request;
- To investigate fraud, abuse, security incidents, or violations of our terms;
- To protect the rights, safety, and property of users, A+ Apps, or others; or
- In connection with a merger, acquisition, financing, reorganization, or sale of assets, subject to appropriate confidentiality and data-protection requirements.
We do not sell or rent personal information. We do not share personal information for cross-context behavioral advertising, and MealKind does not contain third-party advertising.
7. Data Retention
We retain information only for as long as reasonably necessary to:
- Provide the App and requested features;
- Maintain account and subscription access;
- Meet security, fraud-prevention, accounting, and legal obligations;
- Resolve disputes and support requests; and
- Enforce applicable agreements.
Local meal history is subject to MealKind’s rolling local-history cleanup and may otherwise remain until you delete it, delete your account, or uninstall the App. Preferences remain until you change them, delete your account, or remove the App. Copies in an iCloud device backup may remain according to your Apple and iCloud settings.
Supabase account, AI-usage, billing-status, and reminder-delivery records are retained while needed to provide the service and are deleted or disassociated when successful account deletion is completed, except where retention is required for security or legal compliance.
OpenAI may retain API content for up to 30 days as described above. Other service providers retain information according to their own policies, contractual obligations, and legal requirements.
Support correspondence may be retained for as long as reasonably necessary to answer the request, maintain support records, resolve disputes, and comply with legal obligations.
8. Your Controls and Choices
AI permission
MealKind asks for permission before making an AI request. You can withdraw permission under Settings → Privacy and storage → Withdraw AI permission. Withdrawing permission stops future AI requests until you grant permission again. It does not retroactively remove information already processed by a provider during its permitted retention period.
Local history
You can remove local meals, menus, photos, and feedback under Settings → Privacy and storage → Delete local history. This action keeps your account and saved preferences.
Travel mode
You can turn off Travel mode from Settings. Turning it off removes the stored travel city from MealKind’s active preference context and prevents it from being included in future AI requests.
Notifications
You can disable meal reminders inside MealKind or change notification permission in iOS Settings.
Subscriptions
You can manage or cancel your subscription through Apple subscription settings .
9. Account Deletion
You can delete your account inside MealKind under Settings → Account → Delete account.
After successful account deletion, MealKind:
- Deletes your Supabase authentication account;
- Deletes server-side AI usage, billing-status, and reminder records associated with it;
- Requests deletion of the corresponding RevenueCat customer profile;
- Requests deletion of the corresponding OneSignal user profile;
- Revokes the applicable Sign in with Apple authorization when required; and
- Deletes MealKind content and preferences stored for that account on the device.
Deleting your MealKind account does not automatically cancel an active App Store subscription. Subscriptions must be managed separately through Apple. Apple may retain transaction information under its own legal and accounting obligations.
You may also request help with account deletion by emailing aplusapps.app@gmail.com. We may need to verify that you control the account before acting on a request.
10. Your Privacy Rights
Depending on where you live, you may have rights to:
- Request access to personal information associated with you;
- Request correction of inaccurate information;
- Request deletion of personal information;
- Request restriction of or object to certain processing;
- Receive certain information in a portable format;
- Withdraw consent where processing relies on consent; and
- Submit a complaint to your local data-protection authority.
We do not discriminate against users for exercising applicable privacy rights. To submit a request, contact aplusapps.app@gmail.com. We may request reasonable information to verify your identity and account.
11. Legal Bases for Processing
Where laws such as the GDPR or UK GDPR apply, we process personal information under one or more of these legal bases:
- Performance of a contract — to create your account, provide requested App features, and verify subscription access;
- Consent — for optional AI processing, notifications, and other processing where consent is requested;
- Legitimate interests — to secure, maintain, troubleshoot, and improve the reliability of MealKind, provided those interests do not override your rights; and
- Legal obligations — when processing is required to comply with applicable law.
12. Automated Processing
MealKind uses automated AI systems to analyze user-provided meal content and generate suggestions. These results are informational and do not produce legal or similarly significant decisions about you.
MealKind does not use AI suggestions to determine employment, credit, insurance, eligibility, medical treatment, or access to essential services.
13. International Data Transfers
Our service providers may process information in countries other than the country where you live. Those countries may have different data-protection laws. Where required, we and our providers use appropriate contractual, organizational, or legal safeguards for international transfers.
14. Data Security
We use reasonable administrative, technical, and organizational safeguards designed to protect information. These include authenticated backend requests, restricted server credentials, encrypted network connections, server-side purchase verification, and limiting the information sent to each provider.
No storage or transmission method is completely secure, so we cannot guarantee absolute security.
15. Children’s Privacy
MealKind is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Where local law requires a higher age for valid consent, a parent or legal guardian must provide the required authorization.
If you believe a child has provided personal information without appropriate authorization, contact us so we can investigate and delete it where required.
16. Changes to This Policy
We may update this Privacy Policy when MealKind’s features, providers, or legal obligations change. We will update the “Last updated” date and provide additional notice when required by law.
17. Contact Us
A+ Apps is responsible for MealKind’s privacy practices.
For privacy questions, requests, or complaints, contact:
A+ Apps
Email:
aplusapps.app@gmail.com
Support:
https://aplusapps.app/mealkindai/support/