Privacy Policy

Effective September 28, 2026

Plate Proof ("we", "us") is a nutrition app for the web and mobile that matches recipes and meals to USDA food data and helps you check them against your own health needs. This policy explains what we collect, why, who else handles it, and what you can ask us to do with it.

What we collect

Sign-in. You sign in with Google. We receive your name, email address, and profile photo from your Google account. We never see your Google password.

What you add. Recipes, meals and food journal entries, goals, and photos you upload. If you complete onboarding or set up a health profile, that can include allergies, health conditions, medications, dietary preferences, and body measurements. All of this is optional, and you choose what to enter.

Usage and device data. Pages and actions in the app, browser and device type, and error reports. If you turn on push notifications on mobile, we store a device token so we can send them.

How we use it

  • To run the app: sign you in, save your recipes and meals, and show your goals and progress.
  • To personalize results: for example, flagging an ingredient that conflicts with an allergy or condition you told us about.
  • To find and fix bugs, keep the service secure, and understand which features are used.

We do not sell your personal information and we do not use it for advertising.

AI processing

Some features send text to AI models to work: parsing recipes, matching ingredients to foods, and evaluating a food, recipe, or meal against your profile. That text can include recipe content and the parts of your health profile that the evaluation needs. We use model providers including Google (Gemini) and Anthropic (Claude) under their API terms. Nutrition and health output is informational, is not medical advice, and does not replace your doctor or dietitian.

Who else handles your data

  • Google Firebase, for sign-in and push notifications.
  • Cloudflare, for network delivery and image storage.
  • Google and Anthropic, for the AI features described above.
  • PostHog (United States), for product analytics and session replay.

On signed-in screens, session replay records how the app is used so we can fix problems. Text inputs are masked, and screens that show meals, recipes, goals, or health details are excluded from recording.

We may also disclose information if the law requires it, or to protect the safety and security of our users and the service.

Cookies and local storage

We use one essential cookie to keep you signed in on the web (it lasts up to seven days). Analytics may store an identifier in your browser. The mobile app keeps your sign-in token in the device's secure storage.

Your choices and deleting your data

You can edit or remove recipes, meals, and profile details inside the app. To have your account and its data deleted, or to get a copy of your data, email [email protected] from the address on your account. We will act on the request within 30 days. Backups and logs may keep residual copies for a limited time after that.

Children

Plate Proof is not directed to children under 13, and we do not knowingly collect their information. If you believe a child has given us data, contact us and we will delete it.

Security and changes

We use encrypted connections and limit access to data to what running the service requires. No system is perfectly secure, so we cannot guarantee absolute security. If we change this policy we will update the date above, and for material changes we will also notify you in the app.

Contact

Questions about this policy: [email protected]