Privacy policy
Rumsage handles food and health data, so this page is written to be read, not skimmed past. Short version: we collect only what the features need, photos are analyzed then discarded, nothing is sold or used for advertising, and you can delete everything yourself, in the app, at any time.
What we collect and why
| Data | Purpose | Legal basis |
|---|---|---|
| Account: email and password (only if you create an account; guest accounts have neither) | Sign-in, account recovery, syncing across devices | Contract |
| Profile: birth date, sex, height, weight, activity level, goal, dietary preferences, allergies, cuisine tastes, meal schedule | Calculating your calorie and macro targets and personalizing recipe suggestions | Consent |
| Food and health logs: meals, calories and macros, water, weight history | The core tracking features of the app | Consent |
| Inventory: food items you add or scan, expiry dates | Recipe suggestions from what you have | Contract |
| Photos of your fridge, meals or receipts, and text descriptions of food | Detecting food using AI (see below). Photos are sent for analysis and are not stored by Rumsage | Consent |
| Assistant conversations: what you write or say to the assistant, and its answers, in text form | Debugging a real exchange when the assistant gets something wrong, and improving its answers. It is never read back into the app: the thread you see on screen is the app's own and starts fresh each time you open it. Photos are never kept, only the wording. Deleted automatically after 30 days, or at once in Settings → Clear the conversation | Consent |
| Assistant memory: short notes the assistant keeps from your conversations (tastes, habits, one-day context such as "only three meals today") | Personalizing answers and recipes. You can see and delete every note in Settings → Assistant memory | Consent |
| Usage analytics: screens used, feature events such as "recipe generated", app lifecycle | Understanding and improving the product | Legitimate interest |
| Crash reports: technical error data, device model, OS version | Fixing bugs | Legitimate interest |
| Waitlist email (this website's form) | Sending you the early-access invite, nothing else | Consent |
Health-related data (weight, intake, allergies) is treated as sensitive: it is collected only to provide the features you use and is never sold or used for advertising. If you connect Apple Health, weight data is read on your device with your permission and can be disconnected in iOS Settings at any time.
AI processing
Recipe suggestions, fridge, meal and receipt photo analysis, and food-text parsing are performed by an AI model (Google Gemini, via the Gemini API). Content produced this way is labeled as AI-generated in the app, and you review every detection before it is saved. AI output can be inaccurate. Always verify ingredients yourself, especially if you have allergies. Nutrition figures are estimates for informational purposes and are not medical advice.
Processors we use
- Google (Gemini API) processes the photos and food text you submit for analysis and generates recipes. Under Google's paid API terms, this data is not used to train their models.
- Resend delivers transactional email (password-reset codes, early-access invites).
- Sentry (EU region) handles crash reporting.
- PostHog (EU Cloud, Frankfurt) handles product analytics.
- Apple and RevenueCat process subscriptions if you subscribe to Pro. We never see your payment details.
- Hosting: the Rumsage API and database are self-hosted in France (EU). Your data does not leave the EU except for the AI analysis requests described above.
Retention and deletion
Conversations with the assistant are kept for 30 days, then deleted automatically; you can erase them sooner in Settings. Everything else is kept while your account exists. You can delete your account and all data at any time in the app: Settings, Danger zone, Delete account. This permanently removes your profile, logs, inventory, photo-derived items and recipes. There is no soft delete and no retention copy. Waitlist emails are deleted once invites are sent, or on request.
Your rights (GDPR)
You can request access, correction, export, or erasure of your data by writing to [email protected]. We answer within 30 days. You can withdraw consent at any time by deleting the relevant data or your account. You may lodge a complaint with your supervisory authority (in France, the CNIL).
Changes
If this policy changes in a way that matters, the "last updated" date above changes with it, and significant changes are announced in the app before they apply.