Effective date: 5 July 2026
NutriScan ("the app") is a nutrition tracking app published by Techtenstein ("we", "us"). This policy explains what data the app handles, where it goes, and the choices you have. The short version: your food history lives on your device; a cloud backup exists only if you sign in and turn it on; we never sell your data.
The following data is stored locally on your device and is not transmitted to us: your food scan history and nutrition logs, weight entries, water intake, mood logs, progress photos (photo journal), streaks, challenges, coins, app settings, and your personalization profile (age, height, weight, goals). Deleting the app deletes this data. You can also erase it any time via Settings → Clear All Data.
When you scan a meal, the photo (or the text you dictate or type, or text extracted from a photo of a recipe) is sent over an encrypted connection to an AI inference provider to estimate its nutrition:
Groq Cloud (Groq, Inc.) — primary provider.
Google Gemini API (Google LLC) — fallback provider.
The image or text is processed to produce the nutrition estimate and is not used by us for any other purpose. We do not attach your name, email, or account identity to these requests. AI results are estimates, not medical advice.
Voice meal logging uses your device's built-in speech recognition (Apple Speech / Android SpeechRecognizer). Recipe text extraction (OCR) runs on-device via Google ML Kit. Neither sends your audio or images to our servers.
When you scan a product barcode, the barcode number (only) is sent to the public Open Food Facts database to retrieve product nutrition information.
You can use NutriScan without an account. If you sign in (Google Sign-In or email/password via Firebase Authentication, Google LLC), we store your account email, display name, and profile photo. Premium subscribers can back up their food history (including meal photos) to Cloud Firestore and Firebase Storage, scoped to their account. Backups exist so you can restore your data on a new device.
If you use referrals, friends, or the leaderboard, we store in Firestore: your referral code, friend connections, weekly scan counts, and your display name and profile photo. Your display name, photo, and scan count (never the contents of your meals) are visible to friends you have accepted. If you don't use these features, nothing is shared.
If you enable health sync, the app writes your logged nutrition and weight to Apple HealthKit or Android Health Connect, and reads sleep and menstrual cycle data to show insights. Health data stays on your device inside the system health store. We never upload health data to our servers, never use it for advertising, and never sell it.
The free tier shows ads served by Google AdMob (Google LLC). AdMob may process your device's advertising identifier and coarse ad-interaction data to serve and measure ads. In the EEA/UK you will see a consent dialog (Google UMP) before any ad is requested; on iOS the app asks for App Tracking Transparency permission and personalized ads are used only if you allow tracking. Premium subscribers see no ads. See Google's advertising policy for details.
We use Firebase Crashlytics (crash diagnostics) and Firebase Analytics (aggregate feature-usage and ad-lifecycle events) to keep the app stable. These do not build advertising profiles and are not linked to your identity by us. Firebase Remote Config delivers configuration flags (for example, an ads kill-switch) and receives no personal data.
Premium subscriptions are processed entirely by Google Play Billing or Apple StoreKit. We never see or store your payment details. Your subscription status is stored on your device and, if you are signed in, in your Firestore account record so it can be restored across devices.
All reminders (meals, streaks, summaries) are scheduled locally on your device. The app does not send server push notifications.
On-device data stays until you delete it or uninstall the app. Cloud backups and account records are kept until you delete them or delete your account. Crash and analytics data is retained by Firebase for a limited period per Google's standard retention schedules.
In-app: Settings → Clear All Data removes all local data. Settings → Delete Account permanently deletes your Firebase account, cloud backup, uploaded images, and social records. You can also email us at contact@techtenstein.com to request deletion.
Depending on where you live you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. The in-app deletion tools cover most requests instantly; for anything else contact contact@techtenstein.com. We do not sell or share personal information as defined by the CCPA.
NutriScan is not directed at children under 13 (or the equivalent minimum age in your region), and we do not knowingly collect data from them.
The service providers above (Google, Groq) may process data on servers outside your country, protected by standard contractual safeguards those providers maintain.
All network traffic uses TLS encryption. Cloud data is protected by Firebase security rules scoped to your account. No method of transmission or storage is 100% secure, but we follow industry-standard practices.
We will update this page when the policy changes and update the effective date above. Material changes will be highlighted in the app.
Techtenstein — contact@techtenstein.com