Privacy Policy
Effective August 5, 2026
XYK LLC (“XYK,” “we,” “us,” or “our”) provides GlizzyScan. We designed the app so your diary and saved photos stay on your device. We do not sell personal data, serve third-party ads, or track you across other companies’ apps or websites.
- Your diary, goals, profile, weights, saved foods, and saved meal photos are stored locally.
- When you affirmatively request an AI analysis, the request is sent through our authenticated server to OpenAI.
- Apple handles payment; RevenueCat helps validate subscription access.
- You can erase local data and delete your cloud account from Settings.
1. Scope and controller
This Policy covers the GlizzyScan iOS app, website, support, and related services. XYK LLC is the controller or business responsible for the personal data described here. It does not govern third-party services you visit or use under their own policies.
2. Information we process
| Category | Examples | Where it goes |
|---|---|---|
| On-device diary and health-related data | Meals, nutrients, goals, age, biological sex, height, weight, activity, objective, saved foods, recent searches, and saved meal photos | Stored on your device; included in an AI request only as described below |
| AI request content | Meal description, optional compressed photo, meal category, locale, names of frequent meals, corrections, and a previous estimate when refining | Sent through Firebase Functions to OpenAI when you request analysis; not written to GlizzyScan’s cloud database |
| Account data | Firebase user ID; if linked, Apple or Google provider ID and the name or email those providers supply | Firebase Authentication; chosen sign-in provider |
| Subscription data | GlizzyScan user ID, App Store receipt and transaction or purchase history, entitlement status, trial eligibility, and subscription events | Apple and RevenueCat |
| Usage and security data | Daily AI request count, device or app-instance identifiers, App Check attestation, IP address and service logs | Firebase/Google Cloud, RevenueCat, and OpenAI as needed to operate and protect their services |
| Food search | A packaged-food search you submit | Sent directly to Open Food Facts |
| Support data | Email address, message, device/iOS details, and any content you choose to include | Our support mailbox and email provider |
3. AI meal analysis
Before the first AI request, the app explains what will leave your device and asks you to allow the transfer. Manual logging remains available if you do not allow it. Each time you choose AI analysis, GlizzyScan sends only the data needed to answer that request through an authenticated Firebase backend to OpenAI. The request uses an irreversible, pseudonymous safety identifier rather than your email or name.
GlizzyScan sends OpenAI requests with response storage disabled and does not use your meal content to train an XYK model. Under OpenAI’s API data practices, API inputs and outputs are not used to train OpenAI models by default; OpenAI may retain abuse-monitoring logs containing request content for up to 30 days unless stricter controls apply, and may retain data longer when legally required.
4. How and why we use information
- Provide requested features: authenticate access, produce meal estimates, save local entries, search food data, validate Pro access, restore purchases, and answer support requests.
- Protect the service: enforce limits, verify genuine app requests, prevent fraud or abuse, investigate errors, and maintain reliability.
- Comply with law: respond to lawful requests, enforce our terms, protect rights and safety, and meet legal reporting duties.
Where the EEA or UK GDPR applies, our legal bases are performance of our contract for core service and account functions; your consent and explicit, affirmative submission for optional AI processing of health-related content; our legitimate interests in security, fraud prevention, support, and service reliability; and compliance with legal obligations. You may withdraw AI consent at any time in Settings; withdrawal does not affect earlier lawful processing.
5. When we disclose information
We disclose data only as needed to the following categories of recipients:
- Google/Firebase: authentication, app integrity, server functions, database, and operational security.
- OpenAI: AI meal analysis you request.
- Apple: App Store distribution, purchases, subscription management, and optional Sign in with Apple.
- RevenueCat: subscription validation, entitlement management, fraud prevention, support, and subscription analytics.
- Google: optional Google sign-in.
- Open Food Facts: packaged-food searches you submit.
- Professional advisers, authorities, or transaction parties: only when reasonably necessary for legal compliance, protection of rights and safety, or a merger, financing, reorganization, or sale, subject to appropriate safeguards.
We require service providers to process data for authorized purposes and provide protections appropriate to the data. We do not sell personal or consumer health data, share it for cross-context behavioral advertising, or allow third-party advertising SDKs in the app.
6. Retention
- Local data: remains on your device until you erase it in Settings, delete individual entries, or remove the app. Apple device backups may retain app data under your Apple settings.
- Account data: Firebase identifiers remain while your cloud account is active and are deleted when in-app account deletion completes, subject to security backups and legal requirements.
- AI quota data: the per-account daily count contains no meal content and is configured to expire approximately 45 days after creation.
- AI request content: is not stored in our application database. OpenAI may retain API abuse-monitoring data for up to 30 days as described above.
- Subscription data: RevenueCat retains customer and transaction records while needed to provide entitlements, address fraud or support, and meet legal duties. We request deletion of its GlizzyScan customer record when you delete your cloud account.
- Support communications: generally remain for up to 24 months after the issue closes, unless a longer period is needed for security, a dispute, or law.
- Service logs: are retained under configured provider schedules and may be kept longer for security incidents or legal obligations.
7. Your choices and rights
In GlizzyScan Settings you can:
- erase the diary, goals, profile, weights, saved foods, searches, and meal photos stored by the app on that device;
- delete your Firebase cloud account and associated GlizzyScan RevenueCat customer record;
- withdraw future AI-data consent without losing manual logging;
- link or change optional sign-in, restore purchases, and manage your Apple subscription.
Depending on where you live, you may have rights to know, access, correct, delete, obtain a portable copy of, restrict, or object to processing of personal data; withdraw consent; and appeal a denial. Email xyklabs@gmail.com with “Privacy Request” in the subject. To appeal, reply with “Appeal.” We may verify your request and will respond within the period required by applicable law. You may also complain to your local data-protection, consumer-protection, or attorney-general authority.
Authorized agents may submit requests where law permits, but we may require proof of authority and identity. We will not discriminate against you for exercising a privacy right. Subscription cancellation and refunds remain managed by Apple.
8. Consumer health data
Meal, nutrition, weight, profile, goal, photo, and related inference data may qualify as consumer health data under certain U.S. state laws. Our separate Consumer Health Data Privacy Policy describes categories, sources, sharing, and additional rights. It is incorporated into this Policy.
9. International transfers
XYK and its providers may process data in the United States and other countries where they operate. Those countries may have different privacy laws. Where required, we rely on recognized safeguards such as adequacy decisions, standard contractual clauses, or another lawful transfer mechanism.
10. Security and breach response
We use safeguards designed for the nature of the data, including encryption in transit, authenticated callable functions, Firebase App Check, access controls, pseudonymous identifiers, bounded uploads, and server-side secret storage. No system is perfectly secure. If a breach triggers notification duties, we will provide notices to affected people and authorities as required, including under applicable health-data breach laws.
11. Adults only
GlizzyScan is intended for adults 18 and older and is not directed to children. We do not knowingly collect personal data from anyone under 18. If you believe a minor has provided data, contact us so we can investigate and delete it.
12. Changes and contact
We may update this Policy to reflect product, provider, or legal changes. We will update the effective date and provide additional notice or seek consent where required. Materially different uses of consumer health data will follow the consent rules described in the Consumer Health Data Privacy Policy.
Privacy questions or requests: xyklabs@gmail.com.
Open GlizzyScan → Settings → Privacy to erase local data, withdraw AI consent, or open these policies. Open Settings → Account & Subscription to delete cloud account data or manage your subscription.
Consumer Health Data Privacy · Terms · Support · Made by XYK Labs