Your local profile
The app saves your onboarding answers, language, food preferences, goals and saved meal identifiers on your device. Profile answers can include age, gender, height, current and goal weight, activity level, allergies and dietary preferences. These answers are not uploaded as a complete profile.
The current beta does not connect to Apple Health or HealthKit. Nutrition records describe restaurant source portions; they are not records of your personal food intake. GoodEats provides information, not medical advice.
Optional AI, with your consent
Browsing source menus and saving meals do not send an AI question. Before the iPhone app sends your first question, it asks for your permission. You can turn this permission off in You → Permissions & privacy.
When you use Ask, GoodEats receives the question you type, Canada as the market, your selected language, selected food goals, allergy or ingredient exclusions and dietary requirements. On the website, it also receives the restaurant you selected; the website does not send an onboarding profile.
For a supported AI answer, GoodEats sends your question, selected goals and a shortlist of source menu records to OpenAI. The shortlist includes restaurant and item names, descriptions, listed servings and available nutrition. GoodEats does not add your anonymous account identifier, device location, age, gender, height or weight to that OpenAI request. Information you type into the question itself will be included.
If the request includes allergies or dietary requirements, the current assistant returns a restaurant verification message before calling OpenAI. Source records cannot establish allergy safety.
GoodEats does not save question text or generated replies in its server database. The app displays the conversation in memory; it does not upload a saved chat history. OpenAI requests have response storage disabled, but OpenAI may retain data for abuse monitoring under its own policies. Avoid putting personal or medical details in a question. See OpenAI’s privacy policy.
Accounts and service records
You do not need to enter an email or password to browse the beta. When you use AI, Supabase creates or refreshes an anonymous authentication session. The iPhone app keeps its session credentials in the device Keychain; the website keeps them in browser session storage.
GoodEats uses the anonymous user identifier to authenticate AI requests and stores the date and request count for daily usage limits. These counts can include unsuccessful requests. Supabase processes authentication records, and supplies the public restaurant catalog. See Supabase’s privacy policy.
Connecting to the website, catalog or authentication services sends ordinary network information, such as your IP address and request timing, to the service receiving the connection. The GoodEats web server keeps access and error logs for operating the service. These logs can include IP addresses, requested paths and response status; the application does not deliberately log AI question bodies.
GoodEats, OpenAI, Supabase and Apple process the information needed for the features described here. Their services may process information outside Canada. “Canada only” describes the restaurant market supported by the product, not a guarantee that every provider stores data in Canada.
Permissions and tracking
Nearby restaurant search asks for location permission while you use the app. It uses Apple’s location and Maps services to find places and display your area. GoodEats does not include your device coordinates in the AI request. You can deny location permission and browse the restaurant catalog, or change it in iOS Settings → Privacy & Security → Location Services. See Apple’s Maps privacy information.
Camera and photo scanning are labelled previews in this beta. They do not capture or upload your photos. Voice input is not active. The beta does not request microphone or HealthKit access.
The current app and website do not contain advertising trackers or cross-app tracking. The app’s “Share anonymous usage” switch is currently a local preference; it does not send analytics in this build.
Website and beta updates
Joining the website waitlist is optional. With your signup consent, GoodEats stores your email, the signup section of the page, launch market, language, consent version and signup time in Supabase. We use this information for beta and launch updates and do not sell waitlist data. Use the unsubscribe option in an update email to withdraw from updates.
The website uses browser session storage for the optional AI session. The current website does not set advertising or analytics cookies. Restaurant catalog requests send the selected restaurant and paging or filter information to Supabase, not your iPhone profile.
TestFlight and feedback
Apple manages TestFlight distribution and beta diagnostics. If you choose Send Beta Feedback, Apple provides GoodEats with the feedback you submit and relevant beta information. A screenshot may include personal information visible on your screen, so review it before sending. Apple’s handling of TestFlight diagnostics and feedback is described in its TestFlight privacy information.
Your choices and retention
- Edit or clear your local profile. In You, edit Personal details, Goals or Food preferences. “Reset local profile” removes onboarding answers and saved meals from the device.
- Stop future AI requests. Turn off “Allow questions and food preferences to GoodEats AI / OpenAI” in You. This does not undo processing of questions already sent.
- Manage permissions. Change location access in iOS Settings. Clearing browser session storage removes the website’s saved AI session.
- Ask about server records. Local reset does not delete Supabase authentication records, waitlist entries or server usage counts. The app has no server account deletion control in this beta. Use the contact route below for a privacy or deletion request.
Local profile records remain until you reset or remove the app’s local data. Authentication credentials are stored separately in the iPhone Keychain; resetting the profile does not clear them. GoodEats does not currently set a fixed deletion period for server authentication, waitlist, usage-count or operational-log records. Provider retention is governed by the relevant provider’s policies and service settings. We do not promise that these records disappear when you close the app or reset your profile.
Privacy questions
For this beta, contact the GoodEats team through TestFlight → GoodEats → Send Beta Feedback. Say that your message is a privacy question or request. Do not include passwords, session credentials or unnecessary medical information. The support page explains how to send feedback.
This policy describes the current beta. Material changes to its data handling will be reflected here with an updated effective date.