Last updated October 7, 2026
Bunlo is a weekly dinner planner for iPhone and iPad. This policy explains what the app collects, why, and who receives it.
Bunlo has no sign-up. When you first open the app it creates an anonymous identifier that has no name, email address or password. The same identifier is used by our backend, RevenueCat, Mixpanel and Sentry, so the data each of them receives is linked to it.
Your household size, budget, meal styles, dietary needs, allergies, loved and avoided foods, kitchen tools, pantry, meal plans and grocery lists are stored on your device. Reset app data in Profile deletes them from the device.
When you ask for AI dinners (a weekly plan, a swapped dinner or recipes from what is in your fridge), the app sends your household size, budget, meal styles, dietary needs, allergies, loved and avoided foods, kitchen tools and, depending on the request, pantry or fridge items and recipes to skip to our backend, which is hosted by Supabase. The backend sends them to OpenAI to write recipes for you, and uses your dietary needs and allergies to filter out recipes that do not fit.
When you scan your fridge or pantry, the app sends the photo to our backend, which sends it to OpenAI to name the food in it. We do not store the photo.
OpenAI receives these requests from our servers, not from your device, with storage turned off. It may still keep API data for a limited time under its API data policies. Our backend does not store your preferences. It keeps the returned recipes or scanned item names with your identifier for up to 8 days, to apply usage limits and recover interrupted requests, and then deletes them automatically.
Analytics is on by default. The app sends product interactions, such as onboarding steps, plans viewed, recipes opened, paywall views and purchase results, to Mixpanel with your identifier, a device identifier, the app version and build, the platform and your locale. The app turns off Mixpanel's automatic events and its IP-based location. Mixpanel may still derive an approximate location (city, region and country) from your IP address for some events sent while the app starts. We use analytics only to understand and improve Bunlo. Mixpanel also records screen recordings of app sessions (session replays) so we can see where the app is hard to use. Replays hide all text, images and anything you type, and fully hide your dietary needs, allergies and avoided foods.
Crash reports are on by default. Sentry receives crash data, performance data and technical diagnostics such as device model, operating system and app version, with your identifier, so we can fix problems. We do not add your preferences, pantry or meal plans to crash reports.
Apple processes payments; we never see your payment details. RevenueCat receives your identifier, product identifiers, purchase history and subscription status to manage your subscription. Our backend checks your subscription status with RevenueCat and keeps it with your identifier to apply AI usage limits. Purchase events are also sent to Mixpanel for analytics.
All of the following is linked to your anonymous identifier. None of it is used to track you.
Health (dietary needs and allergies): app functionality and personalized recipes
Other user content (household, preferences, pantry and fridge items): app functionality and personalized recipes
Photos (fridge and pantry scans): app functionality
Coarse location (approximate location derived from your IP address): analytics
User ID and device ID: app functionality and analytics
Purchase history: app functionality and analytics
Product interaction: analytics
Crash data, performance data and other diagnostic data: app functionality
Bunlo shows no third-party advertising. We do not sell personal data, share it with data brokers or track you across other companies' apps and websites.
Supabase (backend hosting), OpenAI (writing recipes and recognizing food in photos), RevenueCat (subscriptions), Mixpanel (analytics), Sentry (crash reports) and Apple (payments). Each processes data only to provide its service to us.
Data on your device stays until you use Reset app data or delete the app. Our backend deletes AI results after 8 days. Subscription records are kept by Apple and RevenueCat as needed to provide purchases and meet legal obligations. Analytics and crash data are kept by Mixpanel and Sentry under their retention settings. To ask us to delete the data linked to your identifier, email us and we will help you find it.
Bunlo is not directed to children under 13, and we do not knowingly collect personal information from them.
If this policy changes, we will update it here and change the date above.
Questions or deletion requests: topnotch.stdio@gmail.com.