Legal
Privacy Policy
Last updated: May 21, 2026
Overview
macroprep ("we", "us", or "our") operates the macroprep meal planning application. This policy explains what data we collect, why we collect it, and how we protect it. We are committed to handling your personal information with care and transparency.
What we collect
- Account information — your email address and name when you register.
- Body metrics — height, weight, age, and biological sex, which you voluntarily provide to generate calorie and macro targets.
- Health & lifestyle data — activity level, training habits, dietary restrictions, and food preferences you enter during onboarding or in settings.
- Meal plans — the AI-generated weekly meal plans associated with your account.
- Food logs — meals and snacks you log within the app, including estimated macros.
- Weight logs — body weight entries you record over time.
- Usage data — standard server logs (IP address, browser type, pages visited) collected automatically for security and performance monitoring.
How we use your data
- To generate personalised weekly meal plans tailored to your goals and preferences.
- To calculate and display macro targets, progress, and nutritional summaries.
- To authenticate your account and maintain your session securely.
- To look up verified nutritional data from the USDA FoodData Central API using ingredient names (no personal data is transmitted in these lookups).
- To send transactional emails (account confirmation, password reset) via your authentication provider.
- To improve our service based on aggregate, anonymised usage patterns.
We do not sell your personal data. We do not use your data for advertising.
Third-party services
- Supabase — authentication, database storage, and file storage. Your data is stored on Supabase's infrastructure. See supabase.com/privacy.
- OpenAI — our AI meal plan generation uses the OpenAI API. Meal plan prompts include your dietary preferences and targets but not your name, email, or biometrics. See openai.com/privacy.
- USDA FoodData Central — ingredient names are sent to this free, government-operated API to retrieve nutritional data. No personal data is transmitted.
Data retention
We retain your data for as long as your account is active. You may delete your account at any time from the Settings page, which permanently removes all your personal data, meal plans, logs, and preferences from our systems. Deletion is irreversible.
Your rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data (available directly via Settings → Delete Account).
- Withdraw consent for data processing where consent is the legal basis.
- Lodge a complaint with your local data protection authority.
To exercise any of these rights, contact us at the email below or use the in-app account deletion feature.
Children's privacy
macroprep is not intended for users under 16 years of age. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
Security
All data is transmitted over HTTPS. Your password is hashed and never stored in plain text. We use row-level security policies in our database so that each user can only access their own data. Despite these measures, no system is completely secure — please use a strong, unique password.
Changes to this policy
We may update this policy from time to time. When we do, we will update the "Last updated" date at the top of this page. Continued use of the app after changes constitutes acceptance of the updated policy.
Contact
Questions about this policy? Reach us at privacy@macroprep.app.