EatSleep Privacy Policy

Effective date: September 20, 2026

EatSleep is operated by Pinotech LLC ("Pinotech," "we," "us"), a company organized in California, USA. This policy explains what EatSleep collects, why, where it goes, and how to delete it.

The short version

EatSleep is built to keep your data on your phone. Your food log, weight, sleep, exercise, medication records, and progress photos are stored locally. They leave your phone only when a feature needs them: for example, when you ask AI to analyze a meal or recipe, request an AI exercise estimate, scan a barcode, use dictation, connect a Health service, or contact support. We also record a limited amount of account, subscription, usage, and import-diagnostic data to operate the service, and keep reports you choose to send about AI output. The details are below. We do not sell your data, and we do not use advertising or tracking SDKs.

What we collect, and where it goes

Your diary and Health connections

Your profile (age, sex, height, weight, activity level), food and exercise log entries, weigh-ins, sleep sessions, saved recipes, GLP-1/medication records, and progress photos are stored locally on your phone. Your diary is not uploaded to our servers; the specific feature inputs described below are the exceptions. Your operating system or a backup service you enable may back up app data under its own settings and policy. If you connect Apple Health or Health Connect, the app can read the health data you permit, including body measurements, activity, sleep and available overnight vitals. With your permission and the corresponding sync settings enabled, it can also write nutrition, weight and manually logged sleep to Health. Records already written to Health remain there when you erase EatSleep's data; manage those records in Health separately.

Your choice to enable AI

Before sending inputs for AI processing, EatSleep asks you to allow sharing with Google Gemini through EatSleep. This covers selected food and recipe photos, text and video links, plus exercise descriptions, duration and body weight used for estimates, including estimates for imported Health workouts. Declining keeps manual tracking available. You can withdraw permission in Profile → Data & privacy. Withdrawal stops new AI requests; requests already sent may finish, and withdrawal does not delete data already received by a provider. Erasing EatSleep data resets this permission.

Sent to make a specific feature work

Recorded on our server

How long data is kept

How we protect data

Requests to our hosted service and Gemini use HTTPS to protect data in transit. Our hosted endpoints authenticate account requests, and database access rules restrict access to account-linked records. Your local diary and photos use your device's app storage; device access and backup settings also affect their protection.

What we don't do

We don't run advertising or analytics SDKs, we don't sell personal information, and we don't use your data for anything beyond making the features above work.

Who we share data with

We do not sell personal information or share it for cross-context behavioral advertising. We do not send your diary or health data to advertising services. Independent services you use, including device speech recognition and app-store accounts, also have their own privacy terms and settings. See Apple's privacy policy, Google's privacy policy, RevenueCat's privacy policy, Supabase's privacy policy, and Open Food Facts' privacy policy. Gemini processing is governed by the Gemini API terms and abuse-monitoring rules described above.

Your choices

California residents (CCPA/CPRA)

We do not sell or share personal information for cross-context behavioral advertising, so there is no "opt out of sale" to exercise. California residents may request access to, correction of, or deletion of personal information we hold, subject to applicable law and legal exceptions. You can use the controls and contact method under “Your choices.” We do not discriminate against you for exercising applicable privacy rights. The retention exceptions above also apply to the in-app erasure control.

Washington consumer health data

See our separate Consumer Health Data Privacy Policy for health-data categories, sources, recipients, and Washington rights.

Children

EatSleep requires you to confirm you are 18 or older during setup and is not directed at children. We do not knowingly collect data from anyone under 18.

Health information

EatSleep is not a medical device and the guidance it gives — calorie targets, macro breakdowns, exercise estimates — is not medical advice. See the disclaimer shown during setup. Health, medication, and body-measurement data you enter is stored locally, with the feature-specific sharing described above, including body weight and workout details sent for AI exercise estimates when you allow AI processing. Health information you choose to include in AI inputs, content reports, or support messages is handled as described for those features. We do not sell this information. The deletion controls and retention exceptions under “Your choices” apply.

Changes to this policy

If we change what we collect or how we use it, we'll update this page and change the effective date above. Material changes will be surfaced in the app before they take effect.

Contact us

Questions or requests about your data: support@eatsleep.app, or through the feedback form in Profile.