FreshFolio FreshFolio
Help & FAQ Pricing
About ▾
🛡️ Privacy Policy 📜 Terms of Service 📄 Open Source Licenses 🗑️ Account Deletion ✉️ Contact Support ⚙️ Admin
Help & FAQ Pricing Privacy Policy Terms of Service Open Source Licenses Account Deletion Contact Support Admin

Privacy Policy

Effective and Last Updated: August 24, 2026

ILLYRIA Solutions LLC ("FreshFolio," "we," "us," or "our") operates the FreshFolio mobile application and the FreshFolio marketing, help, invitation, contact, and account-deletion websites (together, the "Services"). This Privacy Policy describes the personal information we collect, where it comes from, how we use and disclose it, how long we keep it, and the choices available to you.

Information We Collect

The information we collect depends on the features you use:

  • Account and profile information: Email address, display name, authentication provider and identifiers, language, notification preferences, onboarding status, subscription tier and status, app version, and recent account activity. Password authentication is handled by Supabase; we do not have access to your plaintext password.
  • Pantry and household content: Pantry names, members and invitations, food and product names, barcodes, brands, categories, quantities, units, storage locations, expiration and opened dates, purchase prices and stores, shopping lists, inventory activity, notes, recipes, ingredients, meal plans, and related preferences. Recipe preferences you choose to provide may reveal dietary, allergy, or other health-related information.
  • Images, scans, and extracted information: Product images you upload, barcodes you scan, receipt images, expiration-date images, locally recognized text, and information extracted from those images. If you select a photo, the App accesses only the photo you select, not your full photo library.
  • AI and assistant content: Questions and conversation history submitted to the in-app help assistant, recipe-generation settings, ingredient lists, pantry summaries, dietary preferences, and other content needed to provide an AI feature.
  • Purchases and subscriptions: Marketplace product and transaction identifiers, purchase and renewal dates, subscription status, and entitlement information from Apple, Google, and RevenueCat. Apple or Google processes your payment method; we do not receive your full credit- or debit-card number.
  • Communications: Your name, email address, subject, message, language, and related correspondence when you contact support, request account deletion, or communicate with us.
  • Device, usage, and diagnostics: A FreshFolio account identifier used with Firebase Analytics and Crashlytics, device and operating-system information, screen views, feature interactions, view preferences, subscription events, inventory-size range, pantry role, crash reports, stack traces, sync errors, IP address, push-notification token, and a device identifier used to prevent repeat-trial abuse. Email and device signals used for the trial-abuse check are stored in hashed form.
  • Age signals: On supported Android devices and in supported regions, the App may receive an age range or supervised-account status from Google's app-marketplace age-signal service. We use it to apply age-appropriate restrictions. We store a yes/no minor-restriction flag on the device; we do not receive or store your birth date through this feature.
  • Website technical data: Hosting and security providers may process IP address, browser type, requested page, referring page, timestamps, and similar server-log information when you visit our websites.

Information we do not collect: FreshFolio does not request or track precise GPS location, access your contacts, capture Cooking Mode screen content, or use the camera when you are not using a camera feature. Cooking Mode may request a screen wake lock only to keep the display on.

How We Collect Information

We collect information directly from you; automatically from the App, your device, and our websites; from pantry owners or members who invite or collaborate with you; from authentication providers and app marketplaces; and from service providers and product databases. When you import a recipe, we receive the URL you submit and retrieve content from that website on your behalf.

How We Use Information

  • Provide, synchronize, personalize, and support pantry, shopping-list, recipe, meal-planning, sharing, notification, and account features.
  • Authenticate users, manage trials and subscriptions, process account-deletion requests, and maintain account security.
  • Look up, categorize, and improve product and barcode information.
  • Process images and text for expiration-date recognition, product-label extraction, and receipt import.
  • Generate recipes, normalize ingredients, suggest substitutions, and answer help questions through configured AI services.
  • Send requested transactional messages, pantry invitations, push alerts, weekly pantry summaries, subscription notices, and service-related communications. Notification preferences can be changed in the App.
  • Measure feature use, diagnose crashes and sync problems, improve reliability, and develop the Services.
  • Detect fraud, enforce rate limits, prevent repeat-trial abuse, protect users and the Services, comply with law, and enforce our agreements.

Camera, OCR, Receipts, and Product Images

  • Barcode scans: The camera reads the barcode on your device. The barcode number is then sent to FreshFolio and one or more product-data providers to retrieve or improve product details.
  • Expiration-date scans: Text recognition first runs on your device. If local recognition is insufficient, recognized text and/or the selected image may be sent through our server to an AI service provider for date extraction. FreshFolio does not store the expiration image as a user file after that request, although providers may keep limited service or safety logs under their terms.
  • Receipt scans: The receipt image is sent through our server to an AI service provider for extraction. FreshFolio does not save the original receipt image. We do save the extracted store name, purchase date, line-item descriptions, item codes if printed, quantities, prices, matching results, image dimensions and size, model name, quality metrics, and token-usage metadata so that you can review and complete the import. Do not submit receipts containing information you do not want processed.
  • Product images: A product photo may be sent to an AI service provider to read the label. If you save it as an item image, optimized versions are stored in Supabase Storage. A barcode-linked product image and associated product name, brand, category, and package facts may be promoted to the FreshFolio community catalog and shown to other users. Do not upload people, private documents, payment cards, or other personal or confidential content as product images.

AI Processing

FreshFolio uses third-party AI service providers to provide AI-assisted features. Current or recently configured providers include Google Gemini and OpenAI, but the provider used for a particular feature or request may vary. We may add, remove, or replace AI providers as models, reliability, privacy protections, availability, cost, and feature quality change. We will update this Policy when a provider change materially affects the personal-information practices described here.

The data sent depends on the feature and may include a receipt or product image, recognized text, a structured pantry summary, item names and quantities, recipe preferences (including dietary or allergy preferences you provide), recipe content, or your help question and recent conversation history.

We do not use your AI inputs to train a FreshFolio general-purpose model. Each AI provider processes inputs and outputs under its applicable API terms, data-processing terms, and privacy commitments. Depending on the provider, service tier, feature, and account configuration, a provider may retain content for a limited period for abuse monitoring, safety, legal compliance, debugging, or service operation, and its terms may permit additional uses. For current examples, review Google's Gemini API Terms, Google's Privacy Policy, and OpenAI's Privacy Policy. Do not submit secrets or unrelated sensitive personal information to an AI feature.

For efficiency, a help question submitted without conversation history and its generated answer may be stored in a response cache that is not linked to your FreshFolio user ID and may be reused to answer a substantially similar question from another user. Do not put names, contact details, pantry secrets, or other personal information in help-assistant questions.

How We Disclose Information

We do not sell personal information, and we do not share personal information for cross-context behavioral advertising or targeted advertising. We have not sold or shared personal information for those purposes in the preceding 12 months. We may disclose information in these circumstances:

  • Pantry collaborators: Owners and members of a shared pantry can see and change content according to their role. Activity records may identify which member performed an action.
  • Community catalog: Barcode-linked product contributions may be visible to other users. Community catalog content is intended to describe a product, not the contributor, and may remain after the contributor deletes an account.
  • Service providers:
    • Supabase — authentication, database, file storage, server functions, and backend hosting.
    • PowerSync — offline-first data synchronization between Supabase and your devices.
    • Google — Google Sign-In, Firebase Analytics, Firebase Crashlytics, Firebase Cloud Messaging, Firebase Hosting, app-marketplace age signals, Google Fonts on our websites, and, when configured, Gemini AI processing.
    • Apple — Sign in with Apple and App Store subscription processing.
    • RevenueCat — subscription and entitlement management using the FreshFolio user ID and marketplace transaction information.
    • OpenAI — AI processing when configured for a feature.
    • Other AI service providers — we may use or replace model providers to improve quality, reliability, availability, privacy, or cost. They receive only the content needed for the requested feature, subject to their applicable terms and this Policy.
    • ZeptoMail / Zoho — delivery of support, invitation, deletion, weekly-summary, and other transactional emails.
    • Product-data providers — Open Food Facts, UPCItemDB, and other configured product-data sources receive a barcode and technical request data to return product details.
    • Apple and Google app marketplaces — payment processing, subscription administration, fraud prevention, and platform compliance.
  • User-directed third parties: We retrieve a recipe URL you submit from the originating website and disclose information when you direct the App to share content through your device.
  • Legal, safety, and business purposes: We may disclose information when reasonably necessary to comply with law or legal process, protect rights and safety, investigate abuse, obtain professional advice, or complete a merger, financing, acquisition, reorganization, bankruptcy, or sale of assets, subject to appropriate protections.

Legal Bases for Processing

Where laws such as the GDPR require a legal basis, we process information as necessary to perform our contract with you and provide the Services; to comply with legal obligations; with your consent, where requested; and for legitimate interests such as securing, supporting, and improving the Services, preventing fraud, and communicating with you, provided those interests are not overridden by your rights. You may withdraw consent at any time, but withdrawal does not affect earlier lawful processing.

Data Retention

We keep personal information only for as long as reasonably necessary for the purposes described above, including these operational periods:

  • Account and active pantry content: Generally until you delete the content or account. If you are only a member of another person's pantry, deleting your account removes your access but does not delete the owner's pantry content. If an owner schedules deletion, access is disabled and account deletion normally completes after a 30-day grace period; the confirmation page also offers immediate permanent deletion.
  • Inventory history: Pantry lots represent individual batches of current stock and may be removed when depleted or disposed of. Pantry transactions are not deleted merely because of age; they are retained with the pantry so its audit trail, reports, item statistics, and price history remain complete, and are deleted when the pantry is permanently deleted.
  • Receipt imports: The original receipt image is not stored by FreshFolio. Extracted receipt records remain while an import is active; completed or abandoned imports are scheduled for deletion after 60 days.
  • Pantry invitations: Accepted, declined, or expired invitation records are scheduled for deletion after 30 days.
  • Locally stored data: Synced data, settings, authentication sessions, and a minor-restriction flag may remain on your device until removed by the App, sign-out, account deletion, clearing app data, or uninstalling. Optional on-device debug log files are scheduled for seven-day cleanup.
  • Community contributions: Product facts and images promoted to the community catalog may be retained after account deletion so the shared catalog remains useful. Contact us if a contribution contains personal information or should be reviewed.
  • Security and trial-abuse records: Hashed email and device signals, rate-limit records, and security logs may be retained as reasonably necessary to prevent fraud and repeat-trial abuse, including after account deletion where permitted by law.
  • Help-assistant cache: Eligible questions, vector representations, and answers may remain until they are no longer useful for operating the response cache. They are not stored with the asking user's FreshFolio ID.
  • Support, legal, analytics, crash, and subscription records: Retained for the time reasonably needed to resolve the matter, meet legal or accounting obligations, operate the service, or under the applicable provider's retention settings and policy.

Deletion from active systems may not immediately remove limited copies from encrypted backups or provider logs. Those copies are isolated from ordinary use and expire or are overwritten under applicable backup and retention schedules unless law requires longer retention.

Your Privacy Rights and Choices

Depending on where you live and subject to legal exceptions, you may have the right to request access to or a portable copy of personal information; correction; deletion; restriction; objection; withdrawal of consent; and information about collection, use, and disclosure. You may also have rights to opt out of sale, targeted advertising, or certain profiling; limit certain uses of sensitive personal information; appeal our response; use an authorized agent; and receive equal service without unlawful discrimination.

FreshFolio does not sell personal information or use it for targeted advertising, so there is no sale or targeted-advertising opt-out necessary for our current practices. You can change alert preferences in the App, revoke device permissions in operating-system settings, leave a shared pantry, delete individual content, or use our Account Deletion page. To make another privacy request or appeal, use our Contact page or email admin@illyriasolutions.com. We may need to verify your identity and authority before completing a request.

If you are in the European Economic Area, United Kingdom, or Switzerland, you may lodge a complaint with your local data-protection authority. We encourage you to contact us first so we can address your concern.

California and Other U.S. State Disclosures

In the preceding 12 months, we collected the categories described above, which may correspond to identifiers; customer-record and commercial information; internet or electronic-network activity; electronic or visual information; inferences and preferences; and sensitive information such as account credentials or dietary/allergy information you choose to provide. Sources, purposes, retention periods, and categories of recipients are described in this Policy. We did not sell these categories or share them for cross-context behavioral advertising. We do not knowingly sell or share personal information of consumers under 16.

Automated Processing

FreshFolio uses rules and AI to estimate expiration dates, categorize and match products, recommend recipes and substitutions, detect repeat-trial abuse, apply age-related restrictions, and manage subscription access. These tools can be wrong. We do not use solely automated processing to make decisions that produce legal or similarly significant effects about you. Contact us if you believe an automated access, age, trial, or subscription decision is incorrect.

Data Security

We use reasonable administrative, technical, and organizational safeguards designed to protect personal information, including encrypted network connections, provider encryption at rest, authentication, access controls, Row Level Security, least-privilege service access, and security reviews. No method of storage or transmission is completely secure, and we cannot guarantee absolute security.

Food Safety Disclaimer

Important: FreshFolio is a tracking and organization tool only — it is not a food safety authority. Expiration dates may be user-entered, OCR-scanned, retrieved from third-party databases, or calculated from estimated default shelf life values, and may not be accurate. The App records storage locations (such as Fridge or Freezer) as entered by you but does not verify, monitor, or validate actual storage conditions or temperatures. Always use your own judgment — when in doubt, discard the item — and follow FDA and USDA guidelines when determining whether food is safe to consume. We are not responsible for foodborne illness, allergic reactions, or food waste. See our Terms of Service for the full food safety, estimated expiration date, and AI content disclaimer.

International Data Transfers

FreshFolio is operated from the United States. We and our providers may store or process information in the United States and other countries where privacy laws may differ from those where you live. Where required, we rely on legally recognized transfer mechanisms and contractual safeguards. Service providers may also process information in the locations described in their policies.

Cookies and Tracking

Our public marketing and legal pages do not currently use advertising cookies or third-party analytics scripts. Firebase Hosting processes ordinary access logs, and Google Fonts receives technical request information such as IP address and browser information when your browser downloads a font. The contact and account-deletion pages send the information you enter to Supabase functions. Authenticated web administration tools may use browser storage or authentication tokens necessary to keep an administrator signed in. We do not use these technologies for cross-site targeted advertising.

Children's Privacy

The Services are not directed to children under 13, and we do not knowingly collect personal information from a child under 13 without legally required authorization. If you believe a child under 13 has provided personal information, contact us so we can investigate and take appropriate action. On supported platforms, age signals indicating a minor are used to disable Firebase analytics and crash reporting and to restrict in-app purchasing. Age signals are not used for advertising.

Changes to This Policy

We may update this Policy to reflect changes to the Services, providers, or law. We will change the date above and, when required or when a change is material, provide additional notice through the App, email, or website.

Contact Us

ILLYRIA Solutions LLC is the controller or business responsible for the personal information described in this Policy. If you have a question, complaint, or privacy request, visit our Contact page or contact:

ILLYRIA Solutions LLC
Email: admin@illyriasolutions.com

ILLYRIA Solutions LLC
© 2026 ILLYRIA Solutions LLC. All rights reserved.
https://illyriasolutions.com/