EatSleep Privacy Policy
Effective date: August 29, 2026
EatSleep is operated by Pinotech LLC ("Pinotech," "we," "us"), a company organized in California, USA. This policy explains what EatSleep collects, why, where it goes, and how to delete it.
The short version
EatSleep is built to keep your data on your phone. Your food log, weight, sleep, exercise, and medication records are stored locally and are never sent to us — the only exceptions are the ones below, each of which exists to make a specific feature work: a meal photo you take is sent to our AI provider to identify the food, a barcode you scan is looked up against a public food database, and a small amount of usage information (which feature you used, whether it succeeded, roughly how long it took) is recorded on our server so we can enforce fair-use limits and keep the service running. We do not sell your data, and we do not use any advertising or tracking SDK.
What we collect, and where it goes
Stored only on your device
Your profile (age, sex, height, weight, activity level), food and exercise log entries, weigh-ins, sleep sessions, saved recipes, GLP-1/medication records, and progress photos are stored locally on your phone and are never transmitted to our servers. If you connect Apple Health or Health Connect, the data we read from it (weight, workouts, sleep) is likewise kept locally. We do not currently write anything back to Health.
You can copy this data out at any time — Settings → Data & privacy → Export — which opens your phone's own share sheet on a file of your data. That export is something you initiate and send yourself; we don't receive a copy.
Sent to make a specific feature work
- Meal photos. When you photograph a meal for AI estimation, the photo is sent to our backend, which forwards it to our AI provider (currently Google Gemini) to identify the food and estimate its nutrition. We don't store the image on our servers. Google's own retention policy for API inputs governs how long they may retain it.
- Progress (body) photos are different: these are never sent anywhere. They exist only to compare your own photos to each other over time, entirely on your device.
- Barcode scans are looked up against Open Food Facts, a public, crowd-sourced nutrition database, so we can show you the product. This is a read-only lookup; nothing about you is sent with it beyond the barcode itself.
- Your current body weight, when you log an exercise, is sent along with the AI request so it can estimate calories burned. It isn't stored beyond that request's usage record (see below).
Recorded on our server
- An anonymous account identifier. EatSleep has no sign-up: on first use, the app creates an anonymous account with our backend (Supabase) so AI requests can be attributed to a device and metered fairly. This identifier is not tied to your name, email, or any other real-world identity — we don't collect those at all.
- Usage records. Each AI request records which feature was used, whether it succeeded, how long it took, and token counts, tied to your anonymous identifier. This is how we enforce daily usage limits and understand whether the service is priced and provisioned correctly. It never includes the photo or the text you sent — only the fact that a request happened.
- Subscription status, once EatSleep offers a paid subscription: your entitlement status (active, trial, expired) is mirrored from our payment processor. We do not receive or store your payment card details — those are held by Apple, Google, or our subscription provider (RevenueCat) directly.
What we don't do
We don't run advertising or analytics SDKs, we don't sell personal information, and we don't use your data for anything beyond making the features above work.
Who we share data with
- Google (Gemini API) — processes meal photos and text you submit for AI estimation, as described above.
- Open Food Facts — receives barcode lookups.
- Supabase — our infrastructure provider; hosts the anonymous account, usage records, and (once subscriptions launch) entitlement status. Supabase is a processor acting on our instructions, not an independent recipient of your data.
- Apple / Google (app stores) and, once integrated, RevenueCat — process subscription purchases. We receive only your subscription status, never your payment details.
We do not sell personal information to anyone, and none of the above use your data for their own advertising purposes.
Your choices
- Delete everything. Settings → Data & privacy → Erase all data removes every local record on your phone, including photos, and deletes your anonymous account and its server-side records (usage history, entitlement status). This cannot be undone.
- Export your data at any time from the same screen.
- Turn off AI features by not using the photo/AI tools — logging food, weight, sleep, and exercise manually never leaves your device.
California residents (CCPA/CPRA)
We do not sell or share personal information for cross-context behavioral advertising, so there is no "opt out of sale" to exercise. California residents may request to know what personal information we hold and to delete it; "Erase all data" in the app performs the deletion directly, or you can email us at support@eatsleep.app.
Users in the EU/UK (GDPR)
Our lawful basis for processing is performance of the service you've asked for (delivering AI estimates, enforcing usage limits) and our legitimate interest in operating EatSleep reliably. You may request access to or deletion of your data via the in-app tools above or by emailing us. Because EatSleep collects no name or email by default, most requests are fully self-served by the in-app export/erase tools.
Children
EatSleep requires you to confirm you are 18 or older during setup and is not directed at children. We do not knowingly collect data from anyone under 18.
Health information
EatSleep is not a medical device and the guidance it gives — calorie targets, macro breakdowns, exercise estimates — is not medical advice. See the disclaimer shown during setup. Health, medication, and body-measurement data you enter is treated with the same handling described above: stored locally, never sold, and included in "Erase all data."
Changes to this policy
If we change what we collect or how we use it, we'll update this page and change the effective date above. Material changes will be surfaced in the app before they take effect.
Contact us
Questions or requests about your data: support@eatsleep.app, or through the feedback form in Settings.