Skip to content

Your information

Privacy Policy

This draft explains the information BudgetBite handles, why it is needed, and the choices available to people who use the service.

Last updated:

Scope

This policy applies to the BudgetBite website and meal-planning service. It does not apply to websites or services operated by grocery retailers, Google, Supabase, Vercel, or other third parties.

Information we collect

BudgetBite may collect information that you provide or generate while using the service, including:

  • account information such as your name and email address;
  • ZIP code, household size, preferred grocery chain, and selected store reference;
  • food preferences, foods to avoid, cooking skill, nutrition goal, and allergy information you choose to provide; and
  • meal-plan inputs, generated plans, grocery lists, estimated totals, and saved-plan activity.

Allergy and food-preference details are user-provided planning inputs. BudgetBite does not treat them as a medical diagnosis or verify their completeness.

How we use information

We use information to authenticate accounts, save preferences, discover nearby supported stores, generate and save meal plans, provide grocery estimates, maintain security, troubleshoot failures, and improve service reliability. We do not currently use personal information for behavioral advertising, and no advertising or product analytics service is currently integrated.

Authentication, storage, and service providers

Supabase provides production authentication and database storage. Vercel hosts the web application. Their systems process information as needed to provide those services and are governed by their own terms and privacy notices.

Store discovery sends a validated ZIP code and a BudgetBite-controlled retailer query to Google Maps Platform from the server. Google returns location information used to show nearby stores. BudgetBite stores only the durable provider reference, retailer, and search ZIP for a selected store; display details and distance are retrieved for the current search.

Cookies and browser storage

BudgetBite uses authentication tokens and essential browser storage to maintain sessions and application state. A versioned local-storage fallback is available only in nonproduction development and test environments. The service does not currently use advertising cookies or third-party behavioral tracking.

Sharing and sale of information

We share information only with service providers needed to operate BudgetBite, when directed by you, or when required to protect the service, users, or comply with applicable law. BudgetBite does not sell personal information as of the date of this policy. Store discovery does not create or imply a retailer partnership.

Retention, access, correction, and deletion

Account and saved-plan information is retained while needed to provide the service and meet legitimate security or legal obligations. Account Settings lets you review and correct supported profile fields.

BudgetBite does not yet offer self-service account deletion or data export. A verified contact channel must be configured before public launch so users can request access, correction, or deletion. Some records may be retained when required by law, security, fraud prevention, or backup-restoration constraints.

Security

BudgetBite uses access controls, authenticated requests, and database row-level security intended to limit each user to their own profile, store preference, and plans. No service can guarantee absolute security, and users should use a unique password and protect access to their account and devices.

Children

BudgetBite is not directed to children under 13, and we do not knowingly collect personal information from children under 13. A parent or guardian who believes a child provided information should use the published contact method once it is available.

Changes to this policy

We may update this policy as the service changes. The revised page will show a new last-updated date. If a change materially affects how information is handled, BudgetBite will provide additional notice when reasonably practical.

BudgetBite has not yet published a legal-contact channel. The product owner must configure a verified, monitored contact method before accepting public users. Until then, legal or privacy requests cannot be submitted through the application.