Skip to content

Privacy Policy

In plain language: how freshIt processes your data.

Last updated: 23 August 2026

At freshIt we value your privacy. This policy explains what data we process — and why — when you use the app and this website.

Your receipt image is never stored

Our most important principle: the photo of your grocery receipt is never permanently stored on our servers. The image is only processed to extract items, then deleted as soon as processing finishes.

The one thing derived from it that we keep is an irreversible hash, which stops the same photo being processed twice after a double-tap or a network retry. The image itself cannot be reconstructed from that hash.

The scan record also keeps the store name, the receipt date, how many items were found and technical details of the scan (which model ran, whether it succeeded). The line items themselves (name, category, estimated expiry date, and a price if you entered one) stay in your pantry.

What data we process

App: an anonymous user id, the items you add and your edits to them, and your notification preferences. No account is required.

Subscription: if you buy premium, your subscription/premium status is processed through our billing provider (RevenueCat). The payment itself is handled by the App Store / Google Play; we never store your card details.

Usage analytics: in-app events (e.g. scanning a receipt, consuming an item) are measured with Firebase Analytics, linked to your anonymous id.

Advertising: the free tier shows Google AdMob ads. Your advertising identifier (IDFA) is used for personalization only if you allow it (iOS App Tracking Transparency); if you decline, the app works fully and ads are simply more generic.

Website: the site used to have an early-access list; the form was removed when the Android version shipped. If you signed up while it was open, we still hold your email address, the language you were reading in, where the signup came from, the record of your consent, the version of this policy in force at that moment and a short hash of your IP address kept for abuse screening. Write to us if you want that record deleted.

Visit statistics: the site runs a cookieless analytics tool (Umami) that collects no personal data. It measures aggregate things — which page was viewed, which button was clicked, browser, country-level location. Visitors are not tracked across sites and no profiles are built.

Sharing a household

When you join a household or invite someone into yours, your items stop living under your account and move to a shared household record. That means every member of the household can see, edit and delete them — which is the point of the feature.

So only send a household invite to people you genuinely want to share your fridge with. You can leave a household at any time from the Settings screen in the app.

Cookies

There are no advertising or tracking cookies on this site. The only cookie is a strictly necessary one that remembers the language you picked (NEXT_LOCALE); your theme preference is kept in the browser's local storage, not in a cookie. Both exist only to make the site work and are never shared with third parties.

Why we process it

To track your items, remind you of expiry dates and show your savings. We use your email only for launch and important product announcements, within the consent you gave.

Third parties

To extract items and expiry dates from a receipt, the image is processed by our AI provider Anthropic (Claude) on servers in the United States; the image is not stored after processing (an international transfer under GDPR / KVKK art. 9).

That transfer happens only with your EXPLICIT CONSENT. Without it, receipt scanning and reading a date from a photo never start at all, and you can withdraw your consent at any time from Settings › Privacy in the app. Withdrawing switches those two features off; you can still add items by hand.

Recipes: in the Turkish interface, recipes are generated on your device from a local recipe book and no ingredient name ever leaves it. In every other language, recipe suggestions are generated by AI — in that case your ingredient names are sent, and they are not stored.

We use Google Firebase for infrastructure: anonymous authentication, database, analytics and App Check security.

We use RevenueCat for subscriptions and Google AdMob for ads in the free tier.

We use Umami Cloud for website visit statistics; it is cookieless and collects no personal data.

Preventing abuse

Scanning a receipt is an expensive operation, so scan, date-reading and recipe calls carry daily and monthly limits. To enforce them we turn the IP address a request came from into an irreversible hash, salted with a secret key, and keep that as a counter record; the IP address itself is never stored.

The legal basis for this processing is our legitimate interest in preventing misuse of the service.

How long we keep your data

Your item and account data stay linked to your account until you delete them. Deleting your account from within the app permanently erases your data and anonymous id. Receipt images are never stored.

There is one exception: the salted IP counter record described above. It is not linked to your account and it survives account deletion — otherwise a "delete and sign in again" loop would reset the counters and the abuse limits would mean nothing.

How to exercise your rights

You have the right to access, correct, delete and port your data. From the Settings screen in the app you can export everything as JSON, or permanently delete your account and all your data. To have your remaining early-access record deleted, just contact us.

For questions and requests: hello@freshit.app