Privacy policy
AddPlate is a strength log and food tracker that keeps your log on your phone. There is no account, and no server holds your workouts, meals or weight. This policy says exactly what stays on your phone, what leaves it, who else is involved, and what you can ask of us.
The short version
- Your log (workouts, meals, weigh-ins, water, body stats) stays on your phone.
- A photo, a meal description or plan answers leave your phone only when you send them to be read by AI. We don't store them.
- Data from Health Connect stays on your phone and is never uploaded.
- This website sets no cookies and runs no analytics. If you join the waitlist, we keep your email until early access opens.
- We don't sell data, show ads, or share data with advertisers.
- Questions or requests: brmbota14@gmail.com
- 1. Who is responsible
- 2. What stays on your phone
- 3. What leaves your phone
- 4. Health Connect
- 5. Permissions the app asks for
- 6. What we don't collect
- 7. This website and the waitlist
- 8. Why we may use it
- 9. Who else is involved
- 10. Transfers outside Serbia and the EU
- 11. How long we keep it
- 12. Your rights
- 13. Children
- 14. Security
- 15. Changes
- 16. Contact
1. Who is responsible
AddPlate is published on Google Play by CodeInnovate, an independent developer in Serbia, which is the controller of the personal data described here. In this policy, "we" and "us" mean CodeInnovate.
Contact for anything in this policy: brmbota14@gmail.com
2. What stays on your phone
Everything you log: workouts and sets, programs, meals and foods, weigh-ins, water, body stats (height, weight, age, sex), your goal and calorie target, your ranks and XP, and anything brought in from Health Connect. It is stored in the app's private storage on your device, works without an internet connection, and is not sent to us. We can't see it.
It leaves your phone only in a backup file you choose to export, which goes wherever you save it. Uninstalling the app, or clearing its storage in Android settings, deletes all of it.
Some of this is information about your health. That is the reason it stays on your device.
3. What leaves your phone, and only when you use it
| Feature | What is sent | Where it goes |
|---|---|---|
| Food photo, describe a meal | The photo or the text you submit for that one request | Our server, which passes it to Anthropic (Claude) to read it and returns the result. We don't store the photo or the text. |
| AI plan builder | Your answers to the plan questions | Our server, then Anthropic. Not stored. |
| Barcode lookup | The barcode number | Our server, which asks Open Food Facts and caches the product. A product is not personal data. |
| Adding a missing product | The barcode and the product details you typed | Stored on our server and shown to other users who scan that product. |
| Ideas board | Ideas you post and votes you cast | Stored on our server. Ideas are shown to other users once reviewed. |
Nothing from your log is sent with these requests, apart from what you put into the request yourself. Label scanning and barcode scanning read the camera image on your phone. The image is not sent anywhere.
The install ID
Each request carries an install ID: a random code created by the app on your phone and deleted with the app's data. It is not linked to your name, email, advertising ID or hardware. We use it only to count AI uses against the free allowance and the daily limits, to stop one phone voting twice, and to stop someone confirming their own product entry.
Your IP address
Like any server, ours sees your IP address. We don't store it. To stop one person flooding product contributions or the waitlist, the server keeps a short, salted hash of the address (8 characters) for daily counting. The salt changes whenever the server restarts, so the hash can't be turned back into the address or linked across restarts.
No AI result in AddPlate is a decision with legal or similarly significant effects on you. Estimates are shown to you to accept, change or ignore.
4. Health Connect
On Android, AddPlate can connect to Health Connect, the shared health store that Google Fit, Samsung Health, Honor Health and other apps use. It is off until you turn it on in Profile → Integrations, and you choose each permission in Android's own dialog.
AddPlate reads
- Weight and body fat: a reading from a smart scale or another app becomes a weigh-in in AddPlate, so it moves your weight trend and calorie target.
- Steps: your daily total, shown on the Food tab.
AddPlate writes
- Workouts: strength sessions you finish, with start and end time and the workout's name.
- Food: calories, protein, carbs and fat for each item you log.
- Weight: the weigh-ins you enter in AddPlate.
- Water: what you log.
AddPlate reads only the last 30 days, and only while the app is open: when you open it and when you tap Sync now. It does not ask for background access or for older history.
Data read from Health Connect stays on your phone. It is never sent to our server or anyone else's, never sold, never used for advertising, never used to train AI models, and never shared, except in a backup file you export yourself. Nobody reads it but you, in the app.
AddPlate's use of information received from Health Connect adheres to the Health Connect Permissions policy, including the Limited Use requirements.
To stop: Profile → Integrations → Disconnect removes every permission, or change them in Health Connect at any time. Records AddPlate wrote stay in Health Connect until you delete them there. Weigh-ins it brought in stay in AddPlate until you delete them.
5. Permissions the app asks for
| Permission | Why |
|---|---|
| Camera | Scanning a barcode or a nutrition label, and taking a food photo, only while you have that screen open. A photo you choose from your gallery instead comes through Android's photo picker, which needs no permission. Barcode and label images are read on your phone and not sent anywhere. A food photo is sent only when you choose to have it read. |
| Notifications | The rest timer's alert between sets. Nothing else is sent as a notification. |
| Alarms, foreground service, start at boot, vibration | Keep the rest timer on time with the screen off, survive a restart or an app update mid-rest, and buzz when the rest ends. All of it runs on your phone. |
| Internet | Only the features in section 3: AI reading, barcode lookup, product entries, ideas, and the plan builder. Logging works offline. |
| Health Connect (weight, body fat, steps, exercise, nutrition, hydration) | Only if you connect it, as described in section 4. |
When you say a meal instead of typing it, AddPlate hands the request to Android's speech recognition (usually Google's), which handles the audio and returns text. AddPlate itself has no microphone permission and never receives audio.
6. What we don't collect
- No account, name, email or phone number in the app. There is no login.
- No location, precise or approximate.
- No contacts, and no access to your photo library or files. If you pick a food photo or a backup file, Android's own picker gives the app only that one item.
- No advertising ID, ads or tracking SDKs, and no analytics of our own.
- No payment details. If Premium is added, payments will go through Google Play, and we will never see your card.
7. This website and the waitlist
This website sets no cookies and runs no analytics, tracking pixels or third-party scripts. Its fonts and images are served from our own server, so a visit doesn't send your IP address to Google or anyone else.
The early-access waitlist
If you enter your email address, we store the address, the date, which form you used, and the wording you agreed to. We use it only to email you about AddPlate early access. We don't share it, sell it, or add it to other lists. Every email will tell you how to unsubscribe, and you can ask to be removed at any time by writing to brmbota14@gmail.com.
Hosting logs
Our hosting provider records standard request data, such as IP address, time, the page requested and browser type, for security and troubleshooting. These logs are kept for a short period under the provider's retention rules and are not used for anything else.
8. Why we may use it (legal bases)
| What | Legal basis |
|---|---|
| Reading a photo, description or plan answers you send; barcode lookups; product entries and ideas you submit | To provide the feature you asked for (GDPR Art. 6(1)(b)) |
| Health Connect reads and writes | Your consent, given and withdrawn through Android's permission settings (GDPR Art. 6(1)(a) and 9(2)(a)) |
| Waitlist emails | Your consent, which you can withdraw at any time (GDPR Art. 6(1)(a)) |
| Install ID counters, the IP hash and hosting logs | Our legitimate interest in keeping the service available, secure and within its costs (GDPR Art. 6(1)(f)) |
The ZZPL contains equivalent grounds, and we rely on those for people in Serbia. Withdrawing consent doesn't affect anything done before you withdrew it.
9. Who else is involved
- Railway Corporation (United States) hosts our server, its database and this website.
- Anthropic, PBC (United States) reads food photos, meal descriptions and plan answers and returns the result. Under Anthropic's commercial terms, data sent through its API is not used to train its models.
- Open Food Facts (France) receives barcode numbers from our server, never from your phone, to look up products.
- Google provides Health Connect and ML Kit, which run on your phone. ML Kit, used for barcode and label scanning, may send Google anonymous diagnostics about the scanner itself, such as performance and errors (see ML Kit's terms). Emails you send us are handled by Gmail.
We share nothing with anyone else, except where the law requires it.
10. Transfers outside Serbia and the EU
Railway and Anthropic are based in the United States, so data handled by them may be processed there. Where that happens, it is protected by the safeguards these providers offer for transfers under the GDPR and the ZZPL, such as standard contractual clauses.
11. How long we keep it
| Data | Kept for |
|---|---|
| Your log on your phone | Until you delete it or uninstall the app |
| Photos, descriptions and plan answers | Not stored by us. Held only while the request runs. |
| AI scan counts per install ID | 13 months, deleted automatically |
| AI usage counters per install ID | 90 days, deleted automatically |
| Daily limit counters, including the IP hash | 30 days, deleted automatically |
| Products you added | While useful to other users, or until you ask us to remove them |
| Ideas and votes | Until you withdraw them in the app, or the ideas board closes |
| Waitlist email | Until early access opens and the invite is sent, then deleted within 30 days. Sooner if you ask. |
| Hosting logs | A short period under the hosting provider's retention rules |
12. Your rights
You can ask us to give you access to your personal data, correct it, delete it, restrict or object to its use, or give it to you in a portable format, and you can withdraw consent at any time. Write to brmbota14@gmail.com. We answer within one month.
Because there are no accounts, we can't look you up by name. Server records are tied only to the random install ID. To find or delete them, tell us what you submitted, such as the product you added or the idea you posted, or simply uninstall the app: the install ID is deleted from your phone, and the remaining counters expire on the schedule above. Everything you logged is on your phone, under your control.
You also have the right to complain to a supervisory authority. In Serbia that is the Commissioner for Information of Public Importance and Personal Data Protection (poverenik.rs). In the EU or EEA, it is the data protection authority where you live or work.
13. Children
AddPlate is not directed at children under 16, and we don't knowingly collect personal data from them. If you believe a child has sent us personal data, write to us and we will delete it.
14. Security
All traffic between the app, this website and our server is encrypted (HTTPS). The keys to the AI provider live only on our server, never in the app. We keep as little as possible on the server in the first place, and access to it is limited to the developer.
15. Changes
If this policy changes, the date at the top changes with it. Anything that affects what leaves your phone will also be announced in the app before it takes effect.
16. Contact
CodeInnovate, Serbia · brmbota14@gmail.com