Legal version 2026-08-07
KcalTap Privacy Policy
Effective August 7, 2026
This Privacy Policy explains how KcalTap (“KcalTap,” “we,” “us,” or “our”) collects, uses, stores, and discloses information when you use the KcalTap iPhone app, website, support channels, and related services. KcalTap is intended for adults age 18 and older.
Data-minimization principles
KcalTap is designed to keep server storage limited to information needed to operate an account, provide a feature you selected, verify paid access, protect the service, or respond to a request. A database table or planned feature does not by itself mean KcalTap will collect that information.
- Unfinished forms and active workout drafts stay on the device and are not promised as cloud backup.
- A record should synchronize only when the app identifies that feature as supported for synchronization.
- Free use should not create unnecessary server copies of nutrition, health, body, training, or product-analytics data.
- Local product analytics are not remotely uploaded unless KcalTap separately introduces and discloses an appropriate analytics system.
- When less information can reasonably operate a feature, KcalTap should use the smaller amount.
Information you provide
Depending on the features you use, you may provide:
- Account information, such as email address, authentication records, and account identifiers.
- Nutrition and wellness records, including foods, servings, calories, macros, water, weight, goals, reminders, and notes.
- Training and body information, including exercises, loads, repetitions, routines, estimated performance trends, and body-composition entries.
- Support communications, feedback, contact information, and any text you choose to submit.
- Subscription status and product identifiers. Apple processes payment-card information for iPhone purchases; KcalTap does not receive your full Apple payment-card number.
Terms and safety acceptance receipt
Before signed-in use, KcalTap may require you to open and accept a concise Terms and Safety Agreement. For the active account, KcalTap stores the legal version, acceptance time, agreement language, the exact agreement text shown, a SHA-256 fingerprint of that text, the applicable policy links, app version, build number, and confirmation of the required adult, Terms, Privacy, and safety statements.
The receipt is used to document the agreement you accepted. It is not used for advertising or profiling, is included in the complete account export, and is tied to the account rather than kept in a separate permanent post-deletion identity archive.
Apple Health and device permissions
Apple Health access is optional. When you grant permission, the current app may read steps, walking and running distance, active energy, and body weight to show activity history and optional calorie context. KcalTap does not currently write information to Apple Health.
HealthKit information is not used for advertising, marketing, cross-app tracking, sale to data brokers, or determining advertising eligibility. You can change Apple Health permissions in iOS settings.
Camera access is used only when you choose to scan a packaged-food barcode. The camera image is used to recognize the barcode and is not automatically added to your diary.
Information collected automatically
- App and device details needed for operation or support, such as app version, build number, operating-system version, device class, locale, and error information.
- Limited on-device product events, such as app sessions and first-use milestones. The current local analytics design does not include food names, body measurements, workout notes, AI prompt text, or full HealthKit samples.
- Server records needed for security, abuse prevention, authentication, supported synchronization, and reliability, such as request time, network metadata, response status, and account identifier.
How we use information
- Provide, calculate, personalize, synchronize, restore, and support the features you request.
- Authenticate accounts, verify subscription access, prevent fraud and abuse, and protect the service.
- Generate estimates, progress summaries, and optional AI-assisted general-wellness responses.
- Investigate bugs, respond to support requests, improve usability, and determine whether core features work.
- Comply with law, enforce our Terms, and protect users, KcalTap, and others.
KcalTap does not sell personal information. KcalTap does not use HealthKit information for targeted advertising or share it with data brokers.
AI-assisted features
When you use KcalTap Coach, your request and a limited snapshot of relevant KcalTap goals and recent trends may be sent through KcalTap’s secured service to an AI model provider to generate a response. Do not submit passwords, payment information, unnecessary identifiers, or medical records that are not needed for a general-wellness question. AI responses may be retained in service logs only as needed for security, reliability, abuse prevention, and support, subject to provider and KcalTap controls.
Service providers and disclosures
We may disclose information to service providers that process it for KcalTap, including:
- Supabase or equivalent providers for authentication, databases, and supported synchronization.
- Hosting and delivery providers, such as Vercel or equivalent infrastructure.
- Apple for App Store subscriptions, transaction verification, and Apple Health permissions.
- Food-data providers for database and barcode results.
- AI infrastructure providers only when you use an AI-assisted feature.
- Professional advisers, authorities, or other parties when reasonably necessary to comply with law, protect rights or safety, investigate abuse, or complete a business transaction subject to appropriate safeguards.
Providers may process information in countries other than where you live.
Storage and synchronization scope
Some information is stored only on your iPhone. Unfinished food forms, active workout drafts, incomplete sessions, local reminders, and any feature identified as device-only or not synchronized are not cloud backup and may be lost when app or device data is removed.
Supported signed-in features may store or synchronize completed records with KcalTap’s service providers. Not every data type is guaranteed to synchronize or restore. The app should not describe a feature as synchronized until its upload, download, deletion, conflict, and second-device behavior are supported. Use KcalTap’s complete-data export for records you need to keep.
Retention
Active account records are retained only while reasonably needed to provide the selected feature, protect the service, respond to support, meet legal obligations, or resolve a dispute. Support requests are kept only as long as reasonably needed for investigation, follow-up, security, or legal requirements and should then be deleted or de-identified when practical.
Local information generally remains until you delete it, delete your account through KcalTap, remove the app, or erase the device. KcalTap does not promise permanent retention or restoration of unsynchronized data.
Account deletion
You can request deletion from Account & Sync. KcalTap treats deletion as complete only after the server confirms deletion of the Supabase Auth user. User-owned synchronized rows, including the active legal acceptance receipt, are designed to be deleted through user-scoped database relationships. After confirmed deletion, the app clears known local diary, wellness, training, body, shortcut, routine, check-in, reminder, legal-receipt, device-identifier, queued-sync, and local-product-event records.
Limited temporary provider backups, fraud-prevention records, security logs, accounting records, or records required by law may remain for the shortest applicable period. They are not used to continue the deleted account and are removed or isolated under provider and KcalTap retention processes when permitted.
Deleting a KcalTap account does not cancel an Apple subscription.
Your choices and rights
- Review, correct, or delete supported entries in the app.
- Create a complete local export and a diary CSV.
- Change Apple Health, camera, and notification permissions in iOS.
- Manage or cancel Apple subscriptions in Apple’s subscription settings.
- Delete your KcalTap account from Account & Sync.
- Contact us to ask about access, correction, deletion, or privacy rights that apply in your jurisdiction.
We may need to verify your identity before fulfilling a request. Some information may be retained where required by law or needed for security, fraud prevention, accounting, or legal claims.
Children
KcalTap is not directed to anyone under 18, and we do not knowingly permit minors to create accounts. Contact us if you believe a minor provided information so we can investigate and take appropriate action.
Security and health-data incidents
We use administrative, technical, and organizational safeguards designed to protect information, but no device, transmission, or storage system is completely secure. Contact us promptly if you believe your account or health-related information was accessed or disclosed without authorization. We will investigate and provide notices when required by applicable law.
Changes to this policy
We may update this policy as KcalTap changes. The current version and effective date appear above. When a material update requires renewed acknowledgment, the app may ask you to review and accept the updated terms before continuing.
Contact
Privacy or data request: support@proairesume.com
Also review the Terms of Use and Health and Safety Disclaimer.