Privacy Policy
Effective July 10, 2026; last updated July 16, 2026
This Privacy Policy explains how Guy William Suter, an individual doing business as Fritter ("Fritter," "I," "me," or "my"), handles information when you use the Fritter mobile application, the fritter.app website, and related nutrition-estimation and support services (collectively, the "Services").
Your use of the Services is also governed by the Fritter Terms of Use.
Privacy at a glance
- Fritter does not require a Fritter account.
- Food logs, weight entries, goals, and profile information are stored on your device and, when iCloud synchronization is available, in your private Apple CloudKit database.
- If you connect Apple Health, Fritter reads logged workouts and their Active Energy only on your device to calculate the exercise bonus percentage you choose. General daily Active Energy outside logged workouts is not included. Fritter does not send Apple Health data to its servers, telemetry, or service providers.
- Fritter does not sell personal information or use your food, weight, or nutrition information for advertising.
- Meal photographs and barcode queries are sent only when you choose to use the corresponding nutrition feature.
- Meal photographs are resized and stripped of embedded camera and location metadata before transmission.
- Fritter's nutrition proxy is designed not to retain photographs, barcodes, food search text, or request bodies after completing a request.
- Fritter collects limited first-party operational telemetry using a random installation identifier. It does not include food, weight, calorie, barcode, photograph, or profile content.
- Fritter's OpenAI project shares API inputs and outputs with OpenAI, which may use processed meal photographs and generated estimates to evaluate, improve, and train its models.
Information Fritter handles
Information you enter and create
To provide calorie-tracking and goal features, Fritter may process information you enter or create in the app, including:
- birth year or age range;
- sex selection, height, current weight, activity level, weight-loss goal, calorie target, and related profile settings;
- weight entries and their dates;
- food-log entries, food names, calories, macronutrients, serving information, meal notes, and dates;
- favorite foods;
- product barcodes and cached product nutrition information; and
- app preferences and feature settings.
This information may reveal details about your diet, body measurements, routines, or health-related interests. Fritter treats it as sensitive information even when a particular law does not classify it as protected health information.
Fritter is not a healthcare provider, health plan, or healthcare clearinghouse, and the Services are not designed to receive or maintain medical records on behalf of such entities. Do not submit information that you are legally required to protect under a healthcare-provider agreement.
iCloud and device storage
Fritter uses Apple's SwiftData framework to store app records on your device. On supported physical devices, Fritter uses Apple's private CloudKit database to synchronize those records among devices signed in to the same Apple Account.
CloudKit data is governed by your Apple Account settings and Apple's privacy policy. By default, Fritter does not receive your Apple Account email address or password through CloudKit. Apple provides Fritter with app-specific technical identifiers needed to operate synchronization.
You can control iCloud access in your device settings. Disabling iCloud may stop future synchronization but may not automatically delete copies already stored on your devices or in iCloud.
Apple Health and logged workouts
The Apple Health exercise-bonus feature is optional and requires Fritter Pro. If you choose to connect it, Fritter requests read-only access to Workouts and Active Energy. Fritter totals the active calories attached to workouts logged for each day and applies the exercise-recognition percentage you select to adjust that calendar day's calorie target and burn rate. Active calories that are not attached to a logged workout are excluded. Fritter does not write data to Apple Health.
Apple Health data is queried and calculated on your device. Fritter does not upload workout calories, daily exercise bonuses, or HealthKit authorization choices to Fritter's cloud proxy, website, operational telemetry, RevenueCat, OpenAI, or other service providers. The selected recognition percentage is stored as an app preference on your device.
You can decline the request, set the recognition percentage to zero, or change Fritter's access later in the Health app. Apple may prevent apps from determining whether read access was denied, so Fritter may display zero workout calories when access is denied or when no matching workout data exists.
Camera, meal photographs, and barcode scans
Fritter requests camera permission only to provide camera-based features. The live camera view is used on your device to detect barcodes. A meal photograph is captured and transmitted only after you choose to take a photograph for a nutrition estimate.
Before transmission, Fritter resizes the photograph and removes embedded metadata such as location, device, and camera details. The processed image is sent through Fritter's nutrition proxy to OpenAI for analysis. The proxy requests that OpenAI not store the response as application state and is designed not to save the photograph after completing the request.
Fritter's OpenAI project is opted in to sharing API inputs and outputs. OpenAI may therefore use the processed meal photograph, Fritter's nutrition-estimation prompt, and the generated estimate to evaluate, improve, and train its models under OpenAI's terms and data-handling practices. Do not include people, identifying documents, screens, or other sensitive information in a meal photograph.
Fritter does not use meal photographs for advertising, biometric identification, facial recognition, or training a Fritter-owned artificial-intelligence model.
When you scan a product barcode, Fritter may send the barcode, your device locale, and country or region setting to the nutrition proxy. The proxy may query Open Food Facts or USDA FoodData Central for corresponding product and nutrition information. Fritter may store the returned product information on your device and in your private CloudKit database to improve later lookups.
Food searches and nutrition catalog data
Fritter downloads nutrition catalog information for local food search. When a live search or fallback lookup is needed, the search text may be sent to Fritter's nutrition service and to a nutrition-data provider. The proxy is designed not to retain the search text or request body after the request is completed.
Subscription and purchase information
Fritter uses Apple's In-App Purchase system and RevenueCat to offer and manage Fritter Pro. Fritter does not receive your full payment-card number.
RevenueCat may process an automatically generated anonymous app-user identifier, Apple receipt and transaction information, product and entitlement status, purchase and restore activity, app version, device type, operating-system information, network information, first-seen and last-seen times, and an approximate country inferred from an IP address. Fritter does not provide your food logs, weight entries, profile measurements, or meal photographs to RevenueCat.
Subscription information is used to complete purchases, restore purchases, validate receipts, prevent fraud, provide paid features, and provide customer support. RevenueCat's processing is described in the RevenueCat Privacy Policy.
App telemetry and operational analytics
Fritter creates a random installation identifier and a new random session identifier when the app runs. The app may send these identifiers with limited operational events such as an app launch, subscription-status refresh, nutrition-catalog refresh, online food search, barcode lookup, or meal-photo estimate. An event may also include whether the installation currently has the Free or Pro plan, the Fritter version and build, operating-system version, locale, API route, response status, success or failure outcome, and request duration. Fritter does not include a StoreKit or RevenueCat transaction, receipt, product, entitlement, or account identifier in these operational events.
The telemetry collector converts the random installation identifier into a one-way keyed value before storage. Fritter does not use Apple's advertising identifier and does not attach an Apple Account, email address, IP address, food name, search text, barcode, calories, macros, weight, profile value, meal photograph, prompt, or API response body to an operational event. The information is used only to measure app usage, understand feature adoption, diagnose failures, monitor service performance, and plan improvements. It is not used for advertising or cross-service tracking.
Website and network information
When you visit fritter.app or connect to Fritter's online services, hosting and network providers may process standard request information such as IP address, browser or device type, operating system, requested page or endpoint, date and time, response status, and security or diagnostic information. This information is used to deliver the Services, prevent abuse, diagnose failures, and maintain security.
Fritter does not use third-party behavioral advertising on the website or in the app. The first-party app telemetry described above does not use advertising cookies or browser tracking. If the website later introduces optional analytics or nonessential cookies, this policy and any legally required consent controls will be updated before those tools are used.
Communications and support
If you contact Fritter, I receive the information you provide, such as your name, email address, message, attachments, and diagnostic details you choose to include. Messages submitted through the website contact form are validated by Fritter's server and delivered through Google Workspace to Fritter's support inbox. Please do not include meal photographs, detailed health information, payment-card numbers, or Apple Account passwords in a support request.
How information is used
Fritter uses information only as reasonably necessary to:
- provide calorie tracking, nutrition estimates, goals, favorites, history, and cross-device synchronization;
- retrieve food and nutrition information;
- process, verify, and restore subscriptions;
- respond to support, privacy, and security inquiries;
- maintain, troubleshoot, secure, and improve the Services;
- measure aggregate app usage, feature adoption, API reliability, and performance;
- permit OpenAI to evaluate, improve, and train its models using shared meal-photo API inputs and outputs;
- prevent fraud, abuse, or unlawful activity;
- enforce the Terms of Use; and
- comply with legal obligations and protect users, Fritter, or others.
Where applicable law requires a legal basis, these activities are performed as necessary to provide the Services you request, pursue legitimate interests such as security and product reliability, comply with legal obligations, or act with your consent. You may withdraw consent where processing depends on consent, but doing so does not affect processing already completed lawfully.
Service providers and disclosures
Fritter discloses limited information to service providers for the purposes described in this policy. Current categories and providers include:
- Apple: app distribution, payment processing, receipt information, device services, private iCloud/CloudKit synchronization, and on-device Apple Health access you authorize;
- RevenueCat: anonymous subscription management, receipt validation, entitlement status, and purchase restoration;
- Google Cloud and Google Workspace: hosting and securing Fritter's stateless nutrition proxy and nutrition catalog infrastructure and delivering support email;
- OpenAI: processing meal photographs to produce requested nutrition estimates and using shared API inputs and outputs to evaluate, improve, and train its models;
- Open Food Facts and USDA FoodData Central: product, barcode, food-search, and nutrition information; and
- Cloudflare and other website hosting, email, and network providers: delivering fritter.app, storing limited operational telemetry, routing communications, preventing abuse, and maintaining service reliability.
These providers process information under their own terms and privacy policies and may process information in the United States or other countries. Fritter requires providers to handle information consistently with their contractual and legal obligations.
Fritter may also disclose information when reasonably necessary to comply with law, legal process, or enforceable governmental requests; protect the rights, safety, and security of users, Fritter, or others; investigate fraud or abuse; or complete a reorganization, transfer, or sale of the Services. If ownership changes, the successor must continue to handle personal information under this policy unless it provides legally required notice and obtains any required consent.
No sale or targeted advertising
Fritter does not sell or rent personal information. Fritter does not share personal information for cross-context behavioral advertising or use food logs, weight entries, profile measurements, meal photographs, or nutrition requests to target advertisements.
Retention and deletion
Retention depends on the kind of information and where it is stored:
- App and CloudKit records: remain on your device and, when synchronization is enabled, in your private iCloud database until you delete records, delete applicable app data, or manage the data through Apple-provided controls. Deletions may take time to synchronize across devices and service backups.
- Apple Health data: is read from Apple Health when the feature is enabled and is kept only in temporary app memory for current calculations. Fritter does not retain Apple Health values in CloudKit or on its servers. Apple controls retention of the underlying records in the Health app.
- Meal photographs and nutrition requests: are processed transiently by Fritter's proxy, which is designed not to persist request bodies, photographs, barcodes, or food-search text after responding. Because Fritter's OpenAI project shares API inputs and outputs, OpenAI may retain and use the processed photograph, prompt, and generated estimate for model evaluation, improvement, and training under its own policies. Infrastructure and other downstream providers may also retain limited security, abuse-prevention, diagnostic, or billing records under their own policies.
- Nutrition-service operational records: may include aggregate AI token usage, estimated processing cost, timestamps, error details, and other non-content service metrics. Fritter's proxy is designed not to log photographs, prompts containing photographs, barcodes, food names, or request bodies.
- App operational telemetry: retained for up to 90 days. Installation identifiers are converted to one-way keyed values before storage, and event records do not contain nutrition or profile content.
- Subscription records: are retained by Apple and RevenueCat as needed to manage subscriptions, restore purchases, prevent fraud, comply with financial or legal requirements, and resolve disputes.
- Support communications: are retained while reasonably necessary to respond, maintain a record of the request, protect the Services, and comply with law.
Fritter may retain information longer when required by law, necessary to resolve a dispute, or needed to protect legal rights. Information that has been aggregated or de-identified so it can no longer reasonably identify you may be retained for product reliability and service planning.
Your choices and rights
Depending on where you live, you may have rights to request access, correction, deletion, restriction, portability, or an explanation of personal-information processing, and to object to or withdraw consent from certain processing.
You can also:
- edit or delete food, weight, favorite, and profile information in Fritter;
- deny or revoke camera permission in device settings;
- disable Fritter's iCloud access in device settings;
- manage or cancel a Fritter Pro subscription through your Apple Account subscription settings;
- delete the app from a device;
- reinstall the app to replace its locally generated telemetry installation identifier; and
- contact policies@fritter.app with a privacy request.
Because Fritter does not require an account and much of your information is stored only on your device or in your private iCloud database, I may not be able to identify or retrieve that information on your behalf. Apple controls access to private CloudKit data through your Apple Account. I may ask for reasonable information to verify a request relating to support or subscription records and will not discriminate against you for exercising a privacy right.
Residents of the European Economic Area, United Kingdom, or Switzerland may also have the right to complain to their local data-protection authority. California residents may have rights under applicable California privacy law, including rights to know, correct, or delete certain information and to opt out of sale or sharing. Fritter does not sell personal information or share it for cross-context behavioral advertising.
Security
Fritter uses reasonable technical and organizational safeguards appropriate to the nature of the information, including Apple's app sandbox and code-signing protections, encrypted network connections, private CloudKit storage, metadata removal and resizing for submitted photographs, restricted service credentials, and a stateless nutrition proxy designed not to retain request content.
No storage or transmission system is completely secure. You are responsible for securing your device and Apple Account. If you believe you have found a security issue, contact policies@fritter.app.
International processing
Fritter and its providers may process information in the United States and other countries whose data-protection laws may differ from those where you live. Where required, Fritter relies on legally recognized transfer mechanisms or provider commitments for international transfers.
Children
Fritter is intended for users age 12 and older and is not directed to children under 12. If you are under the age of majority where you live, a parent or legal guardian should review these policies and supervise your use of the Services. Fritter does not knowingly use information from children for advertising or marketing.
If you believe a child under 12 submitted personal information to an online Fritter service, contact policies@fritter.app so the situation can be reviewed and appropriate action can be taken.
Links and third-party services
The Services may link to websites or services not controlled by Fritter. Their privacy practices are governed by their own policies. A link does not mean Fritter controls or endorses the third party's privacy practices.
Changes to this policy
This policy may be updated to reflect changes to Fritter, its providers, or applicable law. The updated policy will be posted at fritter.app/privacy with a revised date. Material changes will also be communicated in the app or through another appropriate channel when required by law. If a change requires consent, it will not apply until the required consent is obtained.
Contact
Questions, privacy requests, or complaints may be sent to:
Guy William Suter, an individual doing business as Fritter Email: policies@fritter.app Website: fritter.app