⚠️ DRAFT — review with US counsel before production. Effective date: TBD.

Privacy Policy

How AIVI collects, uses, and protects your information.

Effective date: 2026-05-30 (placeholder)

1. Introduction

This Privacy Policy explains how AIVI ("AIVI," "we," "us," or "our") collects, uses, and shares information when you use our nutrition and calorie tracking app and website at aivi.life (together, the "Service").

By using the Service, you agree to the practices described here. If you do not agree, please do not use the Service.

AIVI is a wellness and consumer fitness app. We are not a HIPAA-covered entity, and the information you provide in the Service is not Protected Health Information under HIPAA. Do not use AIVI as a substitute for medical care or professional advice.

2. Information We Collect

We collect the following categories of information:

  • Account information — your email address, name, and (if you sign in with a third party) the user identifier from that provider.
  • Profile and health-related inputs — age, sex, height, weight, body measurements, activity level, goal weight, and dietary preferences that you enter so we can calculate your personalized plan.
  • Food logs — the meals, ingredients, portions, barcodes, voice notes, and text descriptions you record.
  • Photos — images of food you submit for AI recognition. Photos are processed to estimate the meal and may be stored with your log so you can review history.
  • Payment information — subscription status and transaction identifiers. We do not store full payment card numbers; those are handled by Apple, Stripe, or another payment processor.
  • Device and push tokens — device push notification tokens, app version, OS, and basic diagnostic data so we can deliver notifications and fix bugs.
  • Usage data — pages viewed, features used, and timestamps, used to operate and improve the Service.

3. How We Use Information

  • Provide the Service — create your account, calculate your calorie and macro targets, log your meals, recognize food from photos, and generate menus.
  • Personalize your plan — adjust targets and recommendations based on your inputs and progress.
  • Send notifications — meal reminders, weekly summaries, and account-related messages. You can disable push notifications in your device settings.
  • Process payments and manage subscriptions.
  • Provide support and respond to your requests.
  • Improve the Service — analyze aggregate usage, debug, and develop new features.
  • Comply with law and protect rights — meet legal obligations, enforce our Terms, and prevent fraud or abuse.

4. Third Parties Who Process Your Data

We share information only with service providers who help us operate the Service, and only as needed to do their job:

  • Cloud hosting — providers such as Vercel and Supabase host the app, the database, and uploaded photos.
  • AI providers for food recognition — when you submit a photo or text description, we send the content (without your name or email) to AI providers such as Google (Gemini) to estimate the meal.
  • Payment processor — Apple (for in-app purchases on iOS), Stripe, and similar processors handle subscription billing and store payment instruments.
  • Push notification services — Apple Push Notification service, Firebase Cloud Messaging, and the Web Push protocol to deliver alerts.
  • Email delivery — transactional email providers send you sign-in links, receipts, and account messages.
  • Analytics and crash reporting — privacy-respecting tools that help us understand aggregate usage and diagnose errors.

5. We Do Not Sell Your Data

We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We do not use your food logs, photos, or health inputs to target ads.

6. Apple App Tracking Transparency

On iOS, AIVI does not track you across other apps and websites owned by other companies. We do not access the Identifier for Advertisers (IDFA) and we do not present an App Tracking Transparency prompt because we do not engage in tracking as Apple defines it.

7. Data Retention

  • Account and profile data — kept while your account is active.
  • Food logs and photos — kept while your account is active, so you can review history.
  • Payment and tax records — kept for the period required by applicable law.
  • Backups — residual copies may persist in encrypted backups for a limited window after deletion.
  • When you delete your account, we delete or de-identify your personal information within a reasonable period, except where retention is required by law or to resolve disputes.

8. Your Choices and Rights

You can access, export, correct, or delete your data at any time:

  • Edit your profile and food logs in the app.
  • Export your data — email us at info@aivi.life and we will send you a copy.
  • Delete your account — use the in-app delete option, or email info@aivi.life.
  • Turn off push notifications in your device settings.

9. California Residents (CCPA/CPRA)

If you live in California, you have the right to know what personal information we collect, to request access or deletion, to correct inaccurate information, to limit the use of sensitive personal information, and to opt out of "sale" or "sharing" of personal information.

We do not sell or share personal information as those terms are defined under the CCPA/CPRA. To exercise your rights, email info@aivi.life with the subject "California Privacy Request." We will not discriminate against you for exercising these rights. You may designate an authorized agent to act on your behalf, subject to verification.

10. Children

AIVI is intended for users 13 years of age and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us information, please contact info@aivi.life and we will delete it.

Some features may be restricted to users 18 or older where required by law.

11. Security

  • All connections to the Service use HTTPS/TLS.
  • Passwords and authentication tokens are stored using modern cryptographic hashing.
  • Access to production data is restricted to authorized personnel.
  • We use row-level security at the database layer so users can only access their own records.
  • No system is perfectly secure. If we learn of a security incident that affects your personal information, we will notify you as required by applicable law.

12. International Users

AIVI is operated from the United States. If you use the Service from outside the United States, your information will be transferred to, stored, and processed in the United States and other countries where our providers operate.

13. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will notify you in the app or by email. The current version is always available at aivi.life/privacy.

14. Contact Us

If you have questions about this Privacy Policy or your data, contact us at info@aivi.life.

Contact

Company
[Company name]
Mailing address
[Mailing address]
Email
info@aivi.life
Website
aivi.life

For any privacy question, including data access, export, or deletion, email us at the address above.

See also: Terms of Service · Refund Policy