Legal

Privacy —
plain English.

Last updated: July 2026

What we collect

When you create an account we store your email address and an encrypted password. Once you start using HomeMenu we also store the ingredients you add to your pantry, recipes you save or generate, meal plans you build, cook history, and optional price/store data you choose to record.

We also keep short-lived operational logs to run the service and troubleshoot problems — records of API requests and errors that include your user ID, the feature involved, and timing. These logs are automatically deleted after 90 days and are never used for advertising or analytics.

During beta, we record which features you use — pages you visit, buttons you tap, and how far you get through key flows (onboarding, adding a recipe, cooking). We do not record what you type into text fields, we do not record video of your session, and we never sell or share this data. This helps us find usability bugs and see which features people actually use. You can turn it off any time in Settings → Privacy & data → “Help improve HomeMenu.”

Why we collect it

Your pantry and saved recipes power recipe generation and meal planning — the core of what HomeMenu does. Cook history powers the “last cooked” card on Home. Price and store data, when enabled, powers Insights aggregations (spending this month, pantry value, spend by category).

Who can see it

Only you. Row-level security in our database enforces this at the engine level — even our application code can't read another user's rows when authenticated as you. Recipe content you generate is stored in a shared recipe library so other users with similar ingredients can be matched to the same recipe, but no personal data (email, pantry contents, cook history) is ever shared.

Third parties

We send recipe-generation prompts to Anthropic's Claude API. Those prompts contain the ingredients you selected for that request but no account identifier and no other personal data. We use Supabase for authentication and data storage, Vercel for hosting, Sentry for error reporting, and PostHog for the anonymized product analytics described above. We do not sell data to advertisers.

How long we keep it

For as long as your account is active. If you delete your account, every row owned by your user ID is removed from our database, and your authentication record is wiped. There is no soft-delete or recovery window.

Deleting your account

Sign in, open Settings, and tap “Delete my account.” You'll be asked to confirm by typing your email address. The deletion is immediate and not reversible.

Contact

Questions or requests: hello@thehomemenu.com.