Privacy Policy
1. Information we collect
Information you provide directly
Information collected automatically
When you use the Nutri app or website, we automatically collect:
- Device information (device type, operating system, app version)
- Usage data (features used, screens viewed, session duration)
- Log data (IP address, access timestamps, error logs)
- Performance data (crash reports, load times)
Information from third parties
If you connect a third-party service (such as a grocery retailer for real-time pricing), we receive only the data necessary for that integration. We do not purchase data from data brokers or advertising networks.
Health data promise
2. How we use your information
We do not use your health or nutrition data to build advertising profiles, sell to data brokers, or make automated decisions that have legal or significant effects on you.
3. Children's privacy
COPPA compliance: Nutri is designed for use by adults managing family nutrition. Child profiles (under age 13) are created and managed exclusively by a verified parent or guardian. We comply with the Children’s Online Privacy Protection Act (COPPA).
How child profiles work
- Child profiles under 13 may only be created by the primary account holder (a verified adult)
- We collect only the minimum information needed for the child's profile: name or nickname, age, dietary restrictions, and allergens
- Child profile data is never used for advertising or marketing purposes
- Child profiles cannot participate in sponsored content, promotional offers, or sweepstakes
- Child profile data is isolated from third-party analytics and advertising systems
- No behavioral data from child profiles is shared with any partner
Parental rights
Parents and guardians may at any time:
- Review all data collected about their child's profile
- Request deletion of a child's profile and all associated data
- Withdraw consent for collection of a child's personal information
- Receive a copy of a child's profile data
To exercise any of these rights, contact us at privacy@nutrismarts.ai. We will respond within 5 business days.
Child-safe UI
When a child profile is the active session, the app automatically shows age-appropriate content (Wellness Stars instead of calorie scores), suppresses all sponsored content, and restricts community features. No advertising is shown to any profile identified as under 13.
5. Sponsored content & retail partners
Nutri shows native sponsored recipes and ingredient suggestions from food brand partners. This is how we keep the app free for families. Here is exactly how it works and what data is involved.
What sponsored content looks like
Sponsored items appear as native list items or recipe cards with a small “Partner” label. They are visually similar to organic recommendations — but always clearly identified. We never show banner ads, pop-ups, or interstitials.
How we select sponsored content
Sponsored content is matched to your dietary profile — a vegan user sees vegan brands, a gluten-free household sees gluten-free products. We use your dietary preferences only for this matching. We do not use:
- Specific health conditions (diabetes, allergies beyond basic dietary preference)
- Child profile data of any kind
- Behavioral data unrelated to dietary preferences
- Location data more precise than ZIP code
Retail partners
We partner with grocery retailers to provide real-time pricing, availability, and pickup/delivery options. When you choose to connect a retailer account, we share only your grocery list (not health data) with that retailer to fulfill your order. Each retail partner’s use of your data is governed by their own privacy policy.
Your control
You can opt out of sponsored content at any time in Settings → Privacy → Sponsored Content. Turning this off removes all partner items from your feeds and recipe suggestions.
6. Data retention
When you delete your account, we delete or anonymize your personal data within 30 days, except where retention is required by law. You can request immediate deletion by contacting privacy@nutrismarts.ai.
7. Security
We build Nutri with healthcare-grade security principles, because your family’s health data deserves that standard of care.
All data encrypted in transit (TLS 1.3) and at rest (AES-256). Health and allergen data encrypted with separate keys.
Role-based access controls ensure only authorized systems and personnel can access personal data. Child data is isolated in a separate access tier.
All data access is logged and audited. Anomalous access patterns trigger automatic alerts to our security team.
In the event of a data breach affecting your personal information, we will notify you within 72 hours, consistent with applicable law.
No method of transmission or storage is 100% secure. If you discover a security vulnerability, please report it responsibly to security@nutrismarts.ai.
8. Your rights
Depending on your location, you may have the following rights regarding your personal information. We honor these rights for all users regardless of location.
Request a copy of all personal data we hold about you and your family members.
Correct inaccurate or incomplete information in your account or member profiles.
Delete your account and all associated personal data. We honor this within 30 days.
Export your data in a machine-readable format (JSON or CSV) to take it elsewhere.
Opt out of sponsored content, marketing communications, and non-essential analytics at any time.
Request that we restrict processing of your data in certain circumstances while a dispute is resolved.
To exercise any right, email privacy@nutrismarts.ai from the email address associated with your account. We will respond within 30 days. California residents have additional rights under CCPA — see the full CCPA disclosure.
10. Changes to this policy
We may update this policy from time to time. For material changes — those that affect how we use your health data or your rights — we will notify you by email at least 30 days before the change takes effect and require your affirmative consent before proceeding. Non-material updates (fixing typos, adding clarifications) will be noted in the “Last updated” date at the top of this page.
Previous versions of this policy are available upon request.
11. Contact us
For privacy questions, data requests, or to report a concern, reach us at:
- Email: privacy@nutrismarts.ai
- Response time: Within 5 business days for urgent matters; 30 days for general requests
- Mailing address: Nutri, Inc. · [Address] · [City, State, ZIP]
Questions about your privacy?
Our team responds to all privacy inquiries within 5 business days.
privacy@nutrismarts.ai