Privacy Policy
Last Updated: December 2024
Important Notice: Please read this Privacy Policy carefully. By using C-Nutritionist (the "App"), you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy.
GDPR Compliance: This Privacy Policy complies with the General Data Protection Regulation (GDPR) and other applicable data protection laws. We are committed to protecting your privacy and personal data.
1. Introduction
C-Nutritionist is an AI-powered nutrition analysis application designed to provide professional nutrition and health services. We understand the importance of your personal information and are committed to protecting your privacy and data security. We promise to take appropriate security measures in accordance with applicable laws and regulations to protect your personal information.
2. Information We Collect
2.1 Information You Provide
- Account Information: Email address, username, and other basic information when you register for an account
- Health Data: Height, weight, age, gender, target weight, fitness goals, and other health-related information for personalized nutrition recommendations
- Food Information: Food photos you upload, manually entered food descriptions, and dietary preferences
- Dietary Records: Meal times, food intake quantities, nutritional preferences, and eating habits
- Communication Data: Messages, feedback, and support requests you send to us
2.2 Information We Collect Automatically
- Device Information: Device model, operating system version, device identifiers, network information, and hardware specifications
- Usage Information: App usage frequency, feature usage patterns, crash logs, performance data, and interaction analytics
- Location Information: Only collected with your explicit consent for location-based services
- Technical Data: IP address, browser type, time zone settings, and other technical information
2.3 Third-Party Information
- Social Media Information: Basic profile information when you sign in with Apple ID or Google account
- Payment Information: Transaction details from Apple App Store or Google Play Store for in-app purchases
- Analytics Data: Aggregated and anonymized usage statistics from third-party analytics services
3. Legal Basis for Processing (GDPR)
We process your personal data based on the following legal grounds:
- Consent: When you explicitly consent to data processing (e.g., location data, marketing communications)
- Contract Performance: To provide our services and fulfill our contractual obligations
- Legitimate Interests: To improve our services, ensure security, and conduct business operations
- Legal Obligation: To comply with applicable laws and regulations
4. How We Use Your Information
We use your personal information for the following purposes:
- Core Services: Provide food recognition, nutrition analysis, and personalized nutrition recommendations
- Account Management: Create and manage your user account, provide authentication services
- Personalization: Customize nutrition advice based on your health data and dietary preferences
- Service Improvement: Analyze usage patterns to optimize app functionality and user experience
- Customer Support: Respond to your inquiries and provide technical support
- Security: Detect and prevent fraud, protect app and user security
- Legal Compliance: Comply with applicable laws and regulations
- Marketing: Send you relevant updates and promotional content (with your consent)
5. Information Sharing and Disclosure
We do not sell, rent, or otherwise disclose your personal information, except in the following circumstances:
- With your explicit consent
- When required by law or government authorities
- To protect our rights, property, or safety, or that of our users or the public
- With trusted third-party service providers who assist us in providing our services (under strict confidentiality agreements)
- In connection with a business transfer, merger, or acquisition
5.1 Third-Party Service Providers
We use the following third-party services that may process your information:
| Service Provider |
Service Type |
Data Processed |
Privacy Policy |
| Firebase (Google) |
Analytics, Crash Reporting, Performance Monitoring |
Device info, usage stats, crash logs |
https://firebase.google.com/support/privacy |
| Apple |
Authentication, In-App Purchases |
Apple ID, purchase records |
https://www.apple.com/privacy/ |
| Google |
Authentication, In-App Purchases |
Google account info, purchase records |
https://policies.google.com/privacy |
6. Permission Usage
Our app requires the following permissions to provide full functionality:
6.1 Camera Permission
Purpose: To capture food photos for AI nutrition analysis
Necessity: This is a core feature of our app for food identification and analysis
Data Usage: Photos are used only for food recognition and are not permanently stored or used for other purposes
6.2 Photo Library Permission
Purpose: To select food photos from your library for analysis and save analysis results
Necessity: Provides convenient photo selection and result saving functionality
Data Usage: Only accesses photos you actively select, does not scan your entire library
6.3 Network Permission
Purpose: To connect to servers for AI analysis, data synchronization, and updates
Necessity: Core functionality requires internet connectivity
6.4 Storage Permission
Purpose: To cache app data, save user settings, and store analysis results
Necessity: Provides offline functionality and data persistence
7. Data Security
We implement industry-standard security measures to protect your personal information:
- Encryption: Data is encrypted in transit using HTTPS and at rest using AES-256 encryption
- Access Controls: Strict access controls limit employee access to personal information
- Security Audits: Regular security assessments and vulnerability scans
- Data Backup: Regular data backups to prevent data loss
- Incident Response: Comprehensive incident response procedures for data breaches
8. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected:
- Account Information: Retained until you delete your account
- Food Photos: Deleted immediately after analysis, not permanently stored
- Nutrition Data: Deleted within 30 days after account deletion
- Usage Logs: Automatically deleted after 12 months
- Marketing Data: Retained until you withdraw consent
9. Your Rights (GDPR & CCPA)
Under applicable data protection laws, you have the following rights:
- Right of Access: Request access to your personal information we hold
- Right to Rectification: Request correction of inaccurate personal information
- Right to Erasure: Request deletion of your personal information
- Right to Restrict Processing: Request limitation of processing of your personal information
- Right to Data Portability: Request transfer of your data in a structured, machine-readable format
- Right to Object: Object to processing of your personal information for certain purposes
- Right to Withdraw Consent: Withdraw consent for data processing at any time
- Right to Lodge a Complaint: File a complaint with supervisory authorities
10. International Data Transfers
Your personal information may be transferred to and processed in countries other than your country of residence. We ensure that such transfers comply with applicable data protection laws and implement appropriate safeguards, including:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by relevant data protection authorities
- Other appropriate safeguards as required by law
11. Children's Privacy
We do not knowingly collect personal information from children under 13 years of age. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. We will take steps to delete such information from our systems.
12. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected and how it's used
- Right to delete personal information
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
13. Privacy Policy Updates
We may update this Privacy Policy from time to time. When we make material changes, we will notify you through the app or other appropriate means. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
14. Contact Us
Effective Date: This Privacy Policy is effective as of December 1, 2024.
Version: v1.0