Privacy Policy
Effective Date: February 7, 2026 | Last Updated: March 24, 2026
Introduction
Bhansa ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
Please read this privacy policy carefully. By using the app, you agree to the collection and use of information in accordance with this policy.
Information We Collect
1. Account Information
When you create an account, we collect:
- Email address (required for account identification)
- Name (when provided by your authentication provider)
- Profile picture (when provided by your authentication provider)
- Authentication provider ID (Google or Apple)
2. User Preferences
To personalize your experience, we collect:
- Dietary restrictions and allergies
- Cuisine preferences
- Flavor and taste preferences
- Cooking skill level and time preferences
- Household size
3. User-Generated Content
We store content you create:
- Pantry inventory (ingredients, quantities, expiration dates)
- Saved recipes and meal plans
- Shopping lists
- Recipe ratings and feedback
- Recipe modifications and notes
4. Voice and AI Assistant Data
When you use Mira, our in-app cooking assistant:
- Voice input is processed on-device by your operating system's speech recognition. We do not record or store audio.
- Text queries are sent to our server and forwarded to OpenAI for processing. Queries are not permanently stored — they are held in temporary server memory for the duration of your cooking session (up to 10 exchanges) and are cleared when you start a new recipe or the server restarts.
- Recipe context (current recipe, step number, ingredients) is shared with OpenAI alongside your query to provide relevant answers.
- We do not use Mira conversations to train AI models or for any purpose beyond providing you with an immediate response.
5. Usage Data
We automatically collect:
- Recipe searches and interactions
- Feature usage patterns
- Time of day and day of week usage patterns
- App performance metrics
6. Location Information
We collect coarse location only:
- Country and region (for seasonal recipe recommendations)
- Timezone (for meal timing suggestions)
We do NOT collect:
- Precise GPS coordinates
- City or street address
- IP address storage
7. Device Information
We collect limited device data:
- Device type (iOS/Android)
- Operating system version
- App version
- Anonymized device identifier (hashed)
8. Camera and Microphone
- Camera: Used only for barcode scanning and receipt scanning. Images are processed and discarded — we do not store photos.
- Microphone: Used only for voice input to Mira and for adding ingredients by voice. Audio is processed on-device by your operating system's speech recognition. We do not record, store, or transmit audio data.
Subscription and Payment Information
We use RevenueCat to manage subscriptions and Apple/Google to process payments.
- We do not collect or store your credit card number, billing address, or other payment details.
- Payment processing is handled entirely by Apple (App Store) or Google (Google Play).
- We receive only: subscription status, product identifier, expiration date, and a RevenueCat customer identifier.
How We Use Your Information
We use the information we collect to:
1. Provide Core Services
- Generate personalized recipe recommendations
- Create meal plans based on your preferences
- Manage your pantry and shopping lists
- Provide real-time cooking assistance via Mira
2. Personalization
- Learn your taste preferences over time
- Suggest recipes matching your dietary needs
- Recommend seasonal and regional dishes
3. Service Improvement
- Analyze usage patterns to improve features
- Fix bugs and optimize performance
- Develop new features
4. Communication
- Send service-related notifications
- Respond to support requests
- Provide account-related updates
Third-Party Services
We use the following third-party services:
OpenAI
- Purpose: Recipe generation, meal planning, nutrition estimation, and cooking assistance (Mira)
- Data Shared: Your ingredients, dietary preferences, allergy information, meal requirements, and cooking queries
- Data NOT Shared: Your email, name, account ID, or any personally identifiable information
- Nutrition and Health Data: Nutritional values (calories, protein, carbohydrates, fat, fiber, sugar, sodium) and health grades (A-E) displayed in the app are AI-generated estimates produced by OpenAI based on standard food composition data. These values are not sourced from a certified nutritional database and should not be relied upon for medical or dietary decisions. Health grades are calculated using an algorithm based on the publicly available Nutri-Score system developed by Sante Publique France.
- Allergy and Dietary Information: When you provide allergy or dietary restriction information, it is sent to OpenAI to filter recipe recommendations. However, AI-generated allergy filtering is not guaranteed to be complete or accurate. Always independently verify ingredient lists for allergens before preparing or consuming any recipe.
- Retention: OpenAI processes data according to their Privacy Policy. We use the API with data not used for training.
- Privacy: OpenAI Privacy Policy
RevenueCat
- Purpose: Subscription management and purchase validation
- Data Shared: Anonymous user identifier, purchase receipts
- Privacy: RevenueCat Privacy Policy
Sentry
- Purpose: Error tracking and crash reporting
- Data Shared: Anonymous error logs, device type, app version
- Privacy: No personally identifiable information is shared
Authentication Providers
- Google Sign-In: We receive your email, name, and profile picture
- Apple Sign-In: We receive your email and name (if you choose to share)
Data Storage and Security
Storage
- Your data is stored in secure PostgreSQL databases
- We use Redis caching for performance optimization
- Data is stored on secured servers
Security Measures
- All data transmission uses HTTPS encryption
- Authentication uses industry-standard OAuth 2.0
- Device identifiers are hashed before storage
- Sensitive information is redacted from logs
- Regular security audits and updates
Data Retention
| Data Type | Retention Period |
|---|---|
| Account data | Until account deletion |
| User preferences | Until account deletion |
| Saved content (recipes, meal plans) | Until you delete them or account deletion |
| Mira conversations | Session only (not permanently stored) |
| Subscription records | Until account deletion |
| Usage analytics | 1 year |
| Search history | 90 days |
| Anonymous analytics | 30 days |
Your Privacy Rights
For All Users
You have the right to:
- Access your personal data
- Export your data in a portable format
- Delete your account and all associated data
- Update your preferences and consent settings
- Opt-out of analytics and personalization
GDPR Rights (EU Users)
Under GDPR, you have additional rights:
- Right to rectification
- Right to restrict processing
- Right to object to processing
- Right to data portability
- Right to lodge a complaint with a supervisory authority
CCPA Rights (California Users)
Under CCPA, you have the right to:
- Know what personal information is collected
- Know whether your data is sold or disclosed
- Opt-out of the sale of personal information
- Access your personal information
- Request deletion of your data
- Non-discrimination for exercising your rights
We do not sell your personal information.
Managing Your Privacy
In the App
- Go to Settings > Privacy to manage your preferences
- Export your data at any time
- Delete your account and all data
Consent Settings
You can control:
- Analytics: Usage data collection
- Personalization: Taste learning and recommendations
- Marketing: Promotional communications (off by default)
Children's Privacy
Our app is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy in the app
- Updating the "Last Updated" date
- Sending a notification for significant changes
Contact Us
If you have questions about this Privacy Policy or your data:
- Email: privacy@bhansa.app
- In-App: Settings > Help > Privacy Inquiry
Data Protection Officer
For GDPR-related inquiries:
- Email: dpo@bhansa.app
This privacy policy is effective as of the date stated above and will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page.