Privacy Policy – FridgeSaver AI

Effective: 4 April 2026 · Last updated: 6 April 2026

Google API Services User Data Disclosure

To comply with Google API Services User Data Policy, we clearly disclose our data practices regarding Google user data:

1. Data Accessed: Our application accesses your Google account name (display name), Google email address, and Google user ID via OAuth 2.0.

2. Data Usage: This data is used solely for authentication, secure account creation, and identifying your user account within our system. We do not use Google user data for marketing, advertising, or any third-party profiling.

3. Data Sharing: Your Google data is shared only with Google Firebase (Authentication provider) and RevenueCat (Subscription management). No other third parties receive your Google user data.

4. Data Storage & Protection: Data is stored in Firebase Firestore (encrypted at rest) and transmitted via HTTPS/TLS encryption. Access is restricted to authenticated requests only.

5. Data Retention & Deletion: Data is retained until account deletion. Users can delete their account in-app (Profile → Settings → Delete Account) or by contacting FridgeSaverAI@protonmail.hu. All data is permanently deleted within 30 days of the request.

1. Introduction and scope

This Privacy Policy ("Policy") describes how we collect, use, store, share, and protect personal data when you use the FridgeSaver AI mobile application, any related web interfaces, and the backend systems that operate the service (together, the "Service").

By using the Service, you acknowledge that your personal data will be processed as described in this Policy, unless applicable law requires otherwise.

2. Data controller

The data controller is the provider of FridgeSaver AI. As we operate as an independent developer entity, you may contact us directly for any privacy concerns.

Privacy contact email: FridgeSaverAI@protonmail.com

Website: www.fridgesaverai.com

3. Legal framework

If you are in the European Economic Area (including Hungary), the General Data Protection Regulation (EU) 2016/679 ("GDPR") and national laws (e.g. Hungarian Act CXII of 2011 on informational self-determination) apply.

This Policy explains: what data we process; why and on what legal basis; how long we keep it; who we share it with; your rights; and how to exercise them.

4. Categories of personal data (overview)

Depending on how you use the Service, we may process:

CategoryExamples
Account & identity dataEmail address, unique user ID, display name provided by auth providers.
Authentication dataOAuth identifiers and secure tokens from Google or Apple.
Inventory & food dataFood item names, quantities, expiry dates, storage locations, and thumbnails.
Image & media dataPhotos uploaded for AI scanning or manual inventory assignment.
Technical & log dataIP address, device model, OS version, crash logs, and FCM push tokens.

5. Purposes and legal bases (GDPR Article 6)

5.1. Performance of Contract (Art. 6(1)(b))

We process your data to provide the core services you signed up for: managing your food inventory, synchronizing data across devices, generating AI-based food recognition, and sending expiry alerts.

5.2. Legitimate interests (Art. 6(1)(f))

We process technical logs to ensure the security of our infrastructure, prevent fraudulent use of AI resources, and to perform basic analytics for improving app performance.

5.3. Consent (Art. 6(1)(a))

We rely on your explicit consent when you grant the app permission to use your Camera, access your Photo Library, or send you Push Notifications.

5.4. Legal obligation (Art. 6(1)(c))

We may process data to comply with tax laws regarding subscriptions or to respond to valid legal requests from authorities.

6. Special categories of data

FridgeSaver AI does not intentionally collect "sensitive" data (health, biometric, etc.). If you choose to enter notes about allergies or medical diets, you are providing this data voluntarily. We process this content only to display it back to you within your inventory.

7. Automated decision-making and profiling

Our AI features provide suggestions and predictions (e.g., recognizing an apple in a photo). These are technical suggestions and do not constitute automated decision-making that would have legal or significant effects on you under GDPR Article 22.

8. Processors and third-party services

We use the following specialized providers to operate the app:

  • Google Firebase: Used for cloud hosting, real-time database, and user authentication.
  • Google Gemini AI: Used to analyze images and text to recognize food items and suggest recipes.
  • Railway: Used for hosting our backend processing logic.
  • RevenueCat: Used to securely manage mobile and web subscriptions.
  • Apple/Google Auth: Used to allow you to sign in securely without creating a separate password.

9. International transfers

Our processors (like Google) operate globally. This means your data may be transferred to and stored in the United States. We ensure these transfers are protected by Standard Contractual Clauses (SCCs) approved by the European Commission to ensure a high level of data protection.

10. Data retention

We follow the principle of storage limitation:

  • Active Account Data: Kept as long as you have an account.
  • Inventory Items: Kept until you delete them or your account is closed.
  • Technical Logs: Automatically deleted or anonymized after 30 to 90 days.
  • Account Deletion: Upon request, all your data is permanently purged from our active systems within 30 days.

11. Your rights (GDPR)

You have the following rights which you can exercise at any time:

  • Right of Access: Obtain a copy of your personal data.
  • Right to Rectification: Ask us to correct inaccurate information.
  • Right to Erasure: Request the deletion of your account and data.
  • Right to Restriction: Ask us to stop processing your data temporarily.
  • Right to Data Portability: Receive your inventory data in a structured format.
  • Right to Object: Object to processing based on legitimate interests.

To exercise these, simply email us at: FridgeSaverAI@protonmail.com.

12. Security measures

We protect your data using industry-standard measures. All data in transit is encrypted via TLS/SSL. Database storage is encrypted at rest. We strictly limit internal access to production databases to only what is necessary for maintenance and support.

13. Children's privacy

FridgeSaver AI is not intended for children under the age of 16. We do not knowingly collect personal data from children. If we discover such data has been collected without parental consent, we will take immediate steps to delete it.

14. Cookies and local storage

On mobile devices, we use "local storage" to remember your session and preferences so you don't have to log in every time. On our web interface, we only use strictly necessary cookies required for the functioning of the site and subscription management.

15. Changes to this policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal reasons. We will notify you of any material changes by posting a notice in the app or sending an email notification. Your continued use of the app after such changes constitutes acceptance.

16. Contact and complaints

If you have questions about this policy or our data practices, please contact us at FridgeSaverAI@protonmail.com.

You also have the right to lodge a complaint with a data protection authority. In Hungary, this is the NAIH (Nemzeti Adatvédelmi és Információszabadság Hatóság, www.naih.hu).