Privacy Policy
Last updated: October 1, 2026
PocketChomp is built to keep your food log on your phone. This page explains exactly what leaves it, when, and why. It applies to the PocketChomp Android app and to pocketchomp.com.
The short version
- Everything you log is stored on your device first. You can use the whole app as a guest with no account.
- Cloud sync is opt-in. It only happens if you sign in.
- We show no ads and we never sell, rent, or trade personal data.
- Usage analytics are off by default. Crash reports are on, and they never include your food log or identity.
- A few features need a server. Each one is listed below, along with the third party involved.
- You can export or delete everything at any time.
Who we are
PocketChomp is built and operated by Josh Del Vecchio, an independent developer in Ontario, Canada. For anything in this policy, email josh@pocketchomp.com.
Data on your device
The app keeps a local database on your phone. It holds your food diary, custom foods, recipes, favourites, water and weight logs, goals and targets, nutrient preferences, and the profile details you enter during setup (sex, date of birth, height, weight, activity level and goal). A bundled copy of the Health Canada and USDA food tables ships inside the app, and any food you search, scan or log is cached locally so it works offline.
In guest mode none of this leaves your phone. Uninstalling the app deletes it.
Accounts and cloud sync
You can create an account with an email address (we send a one-time code) or with Google Sign-In. When you sign in, the data listed above is synced to our database so it can be backed up and restored on another device. Your local copy stays on your phone.
Our database and authentication are hosted by Supabase. Google Sign-In shares your name and email address with us. We use the first name as a display name and nothing else.
Signing out keeps your data on the server until you delete your account. Deleting your account removes it from our servers immediately. See how to delete your account.
Features that use a server
Each of these sends a small, specific request. None of them upload your diary.
Barcode lookup
If a barcode is not in our database, the barcode number is sent to Open Food Facts to find the product. Only the barcode is sent.
AI photo logging (PocketChomp+)
The photo you take is sent to our server and then to the Gemini API from Google, which returns a list of foods and estimated portions. We do not store the photo. The request is tagged with the app's anonymous device id so we can measure cost and accuracy, never with your name or account. Google describes its handling of API requests in the Gemini API terms.
Recipe import from a URL (PocketChomp+)
The web address you paste is fetched by our server and the ingredient list is sent to the Gemini API to estimate nutrition. We do not keep the page or the address.
Label scanning
Nutrition-label scanning runs entirely on your phone using Google ML Kit. The image never leaves the device.
Voice and typed logging
Speech recognition uses the speech service built into your phone, and the text is parsed on the device. Depending on your Android settings, your phone may send audio to Google for recognition.
If usage analytics are on, we keep a copy of the text (what you typed, or what your phone transcribed), the foods and portions the app matched, and what you finally logged, so we can measure and improve matching. It is stored without your name, account or device id, so it cannot be tied back to you. With analytics off, none of it leaves your phone.
CSV export
Exporting your food log generates a file from the data on your device or, when signed in, from your synced data. The file is handed to you and not kept by us.
PocketChomp+ verification
When you subscribe, our server checks your entitlement with our billing provider so Plus features unlock. See Purchases.
Health Connect
On Android you can optionally connect PocketChomp to Health Connect. If you grant permission, the app reads the following data types: steps, exercise sessions, heart rate, weight, height and active calories burned. Access is read-only. PocketChomp never writes to Health Connect.
We use this data only to:
- estimate your daily activity level and, if you choose, add exercise calories back to your target;
- pre-fill your weight and height so you do not have to type them.
Raw Health Connect records stay on your phone. If you are signed in, a summary (your computed activity level, average daily steps and average active calories) is synced with your profile so your targets match across devices. Health Connect data is never used for advertising, never sold, and never shared with third parties except as part of that synced summary in our database. You can revoke access at any time in Android settings or in Health Connect, and deleting your account removes the synced summary.
Analytics and crash reports
We use PostHog, identified by a random per-install device id rather than your name, email or account.
- Crash and error reports are always on. They contain the error, the app version and device model. They never contain your food log, profile or screen content.
- Usage analytics are off by default. If you turn on "Share usage analytics" in Settings, we also record which features you use, how the app performs, the words you type into food search, and (described above) your voice and typed meal descriptions. Turning it off stops collection immediately.
- We count app opens. Each launch sends one event carrying only the random per-install device id, so we can tell how many people use PocketChomp. It carries no food log, profile or behaviour, and it is not affected by the analytics switch.
While usage analytics are on, the same anonymous per-install id is also shared with our billing provider, RevenueCat, so a purchase can be matched to its analytics record. Turning analytics off removes it from RevenueCat.
The website itself sets no cookies and runs no analytics or tracking scripts. Your theme choice is stored in your browser only.
Purchases
PocketChomp+ is sold through Google Play. Google handles payment and holds your billing details. We never see your card. We use RevenueCat to confirm the subscription is active. RevenueCat receives your account id and purchase status. If you have an account, it also holds your email so we can find you for a receipt, a refund or a billing dispute. Guests are never asked for one. Your name is never sent.
The beta email list
If you join the list on this website, we collect your email address through Kit and use it only for PocketChomp beta and launch news. You confirm your address before you are added. Every email has an unsubscribe link, and unsubscribing removes you from the list.
Where data is processed
Some of the providers above store or process data outside Canada, including in the United States. We choose providers with published privacy commitments and send them the minimum each feature needs. In guest mode with analytics off, the only data that ever leaves your phone is a barcode number, a crash report, an anonymous app-open count, and whatever you send when you use a Plus feature.
How long we keep data
- Synced account data: until you delete your account, then removed immediately.
- Photos and recipe pages sent to Plus features: not stored.
- Voice and typed meal descriptions (analytics on only): kept with no account or device id, so they cannot be traced to you or singled out for deletion.
- Crash and analytics events: retained by PostHog under our account, tied to the device id only.
- Email list: until you unsubscribe.
Your choices and rights
- Stay a guest. The full app works without an account.
- Export. Download your food log as CSV from Settings.
- Delete. Delete all local data from Settings, or delete your account and synced data. Details on the account deletion page.
- Turn things off. Analytics, cloud sync and Health Connect are each independent switches.
- Ask us. Under Canadian privacy law (PIPEDA) you can ask what personal information we hold about you, have it corrected, or withdraw consent. Email us and we will respond within 30 days.
Children
PocketChomp is not directed at children and is not intended for anyone under 18. We do not knowingly collect data from children. If you believe a child has created an account, email us and we will delete it.
Changes to this policy
If we add a feature that changes what leaves your phone, we will update this page and change the date at the top. Material changes will also be noted in the app.
Contact
Questions, requests or complaints: josh@pocketchomp.com. You may also contact the Office of the Privacy Commissioner of Canada.