Privacy Policy

Effective August 6, 2026

Your privacy matters. This policy explains what LabelFacts collects, how we use it, and the choices you have. We keep it short because our data practices are straightforward — we need the minimum to make the app work, and we never sell your information.

What We Collect

Account data: your email, display name, and a profile photo if you choose to upload one (stored with your account).

Scan history: barcodes, product names, images and scores of items you scan. Stored on your device and in your Firebase account so your history syncs across devices.

Preferences: categories and health priorities you select during onboarding. Used to personalize your rankings and alerts.

Usage data: app events (screens viewed, features used, crashes and errors) sent to our analytics and crash-reporting partners, linked to your account ID so we can debug account-specific problems. Used only to fix bugs and improve the app — never sold and never used to build advertising profiles of you.

Subscription status: provided by Apple or Google via RevenueCat so we know whether to unlock Pro features.

How We Use It

To deliver the core service (scanning, scoring, alternatives), to personalize your experience (rankings that match your goals), to improve the app (analytics and crash reports), to process purchases (through the App Store or Play Store), and to communicate with you about important updates. We do not show ads in the app. If — and only if — you allow tracking in the iOS App Tracking Transparency prompt, we also send Meta a small set of ad-attribution events (described under Third-Party Services) to measure our own advertising; if you decline, nothing is sent to Meta.

Third-Party Services

LabelFacts relies on a small number of trusted partners:

• Firebase (Google) — authentication, database, cloud functions, crash reporting

• RevenueCat — subscription management and receipt validation

• PostHog — product analytics (screens viewed, features used), linked to your account ID

• Sentry — crash and error reporting, which may include your account ID and device details

• Meta (Facebook) — only if you allow tracking in the iOS App Tracking Transparency prompt: ad-attribution events (app install and launch, registration, a scan-completed count, and subscription purchases) so we can measure our own ads. These events never include the products you scan. If you decline tracking, the Meta SDK is never activated and nothing is sent to it

• Open Food Facts, NIH DSLD, USDA FoodData Central, Go-UPC, FatSecret — public product databases we query to look up ingredient and nutrition data

• Anthropic (Claude AI) — only when you use Photo Scan; the image is sent for product identification and ingredient analysis, then discarded

Each partner has its own privacy practices; we only share the minimum required to deliver the service.

We Do Not Sell Your Data

We never sell your personal information to advertisers, data brokers, or third parties. We never share your scan history — the specific products you scan — with anyone for marketing purposes; the consent-gated Meta attribution events described above are counts and purchase events that never identify a scanned product. Product data queries to public databases include only the barcode or product name — never your account identity.

Your Rights

You can view or delete your account and data at any time from the Profile tab. Deletion is permanent and covers account info, scan history, and preferences. To request a copy of your data, or if you live in a jurisdiction that grants additional rights (EU / UK / California), you may request access, correction, or portability by emailing us.

Data Retention

Account and scan data remain until you delete your account. Anonymized analytics may be retained longer for trend analysis. Cached product lookups are stored on your device for faster performance and are cleared when you uninstall the app.

Children

LabelFacts is not intended for children under 13, and we do not knowingly collect data from them. If you believe a child has created an account, please contact us and we will delete it.

Security

We use industry-standard encryption in transit (HTTPS) and at rest (Firebase managed). No system is perfectly secure, so please use a strong password and enable device-level protections like Face ID or fingerprint unlock.

Changes to This Policy

If we change how we handle your data, we will update this page and notify you in-app or by email when the change is material. Continued use after the effective date means you accept the new policy.

Privacy questions? Email support@labelfacts.app.