← Pixel Fridge home

Pixel Fridge — Privacy Policy

Effective date: July 3, 2026

Pixel Fridge ("the app", "we") helps you track the food in your fridge, reminds you before it spoils, and suggests recipes. This policy explains what data the app handles, why, and what control you have over it. The short version: we collect the minimum needed to run the app, we don't run ads, we don't sell data, and you can delete everything yourself, in the app, at any time.

1. Data we collect and why

DataPurposeWhere it lives
Email address and passwordCreating and signing in to your account. The password is stored only as a secure hash by our authentication provider (Supabase); we never see it.Supabase (our backend)
Your fridge contentsItem names, categories, expiry dates, and whether you ate or discarded each item — this is the core function of the app and powers your reminders and monthly stats.Supabase, linked to your account and readable only by you
Grocery photos you scanIdentifying the food in the photo. The photo is sent over an encrypted connection to our server function, forwarded to our AI provider (SiliconFlow) for one-time processing, and is not stored by Pixel Fridge. Only the resulting food list is kept (as fridge items, if you save them).Processed transiently; never stored by us
Usage countersA daily count of your AI scans and recipe requests, used solely to enforce fair-use limits.Supabase, linked to your account
Subscription statusWhether your account is on the free or Premium plan, so the app can apply the right daily limits. Payment itself is handled entirely by Apple or Google — we never see or store your card details.Supabase (plan only) and RevenueCat (subscription state)
Crash reportsIf the app crashes or hits an error, a technical report (the error, stack trace, device model, and OS version) is sent so we can fix it. Reports contain no IP address, no account identifiers, and no screen recordings.Sentry (crash reporting service)

2. Data we do NOT collect

No location, no contacts, no advertising identifiers, no tracking across other apps or websites, no analytics profiles, and no sale or sharing of personal data with data brokers. Expiry reminders are scheduled locally on your device and never leave it.

3. Third-party services

We use a small number of processors to run the app: Supabase (database, authentication, and server functions), SiliconFlow (AI models that identify foods in your photos and generate recipe suggestions), hCaptcha (protecting sign-up and sign-in from bots; see the hCaptcha privacy policy), RevenueCat (managing Premium subscription status across the App Store and Google Play; see the RevenueCat privacy policy), and Sentry (crash reporting — technical error reports only, configured to exclude IP addresses and personal identifiers; see the Sentry privacy policy). Each receives only the data needed for its function.

4. Data retention and deletion

Your data is kept for as long as your account exists. You can delete your account at any time from the app's Settings tab ("Delete account"). Deletion is permanent: your account, fridge history, stats, and usage counters are removed from our live systems right away. Residual copies may persist briefly in our database provider's encrypted backups, which are purged automatically within 30 days, and our processors (listed above) delete their copies on their own short schedules — subscription records at RevenueCat and crash reports at Sentry age out per their retention policies. You can also request deletion by email. Note that deleting your account does not cancel an active subscription — manage that in your App Store or Google Play settings.

5. Security

All traffic is encrypted in transit (TLS). Server-side, your data is isolated by row-level security so that your account can only ever read or change its own rows. AI keys and administrative credentials never ship inside the app.

6. Children

Pixel Fridge is not directed at children under 13 (or the equivalent minimum age in your region), and we do not knowingly collect data from them.

7. Your rights

Depending on where you live (e.g., GDPR in the EU/UK, CCPA in California), you may have rights to access, correct, export, or erase your personal data, and to lodge a complaint with a supervisory authority. The in-app deletion erases your live data right away (see section 4 for backup timing); for anything else, contact us and we'll respond within 30 days.

8. Changes to this policy

If we make material changes (for example, adding analytics or a subscription), we will update this page and the effective date, and note the change in the app's release notes.

9. Contact

Questions or requests: support@aifridge.net