Privacy Policy
Last updated: 11 September 2026
VitaCal ("we", "our", or "us") is committed to protecting your privacy. This policy explains what VitaCal collects, where it goes, and what you can do about it. It covers the app and its three optional features: Health Sync, the Ask VitaCal AI coach, and VitaCal Connect.
Information We Collect
Account and Profile
- Sign-in: your email address and an account identifier from Apple Sign-In or Google Sign-In.
- Profile: optional name, age, weight, height and activity level, used to calculate your calorie and macro targets.
Nutrition and Tracking Data
- Food log entries, with their calorie and macro figures
- Meal descriptions you type for AI analysis
- Favourite meals
- Water intake
- Weight history
- Calorie, macro and water goals
- Logging streaks, notification preferences and app settings
Meal Photos
When you log a meal from a photo, a copy of that photo is uploaded to our file storage so it can be analysed, and sent to Google Gemini, which identifies the foods and estimates the nutrition. This analysis copy is deleted as soon as the analysis finishes. If the AI needs to ask you a clarifying question first, the analysis copy is held until that exchange ends and deleted then. A job runs every five minutes and deletes any analysis copy older than ten minutes, so nothing is left behind if an analysis fails partway.
When you save the meal, we also save the same photo with it in our file storage, so it can be shown with that meal on your Today screen. If saving the photo fails, the meal is logged without it. The app loads the photo through a download link, and anyone holding that link can open the photo. A saved meal photo is kept until you delete your account, and deleting your account deletes it with the rest of your data. Deleting a single meal from your log does not delete its photo: the photo stays in our file storage until you delete your account.
We do keep a short record of each analysis: which file was analysed, its image type, which model ran, and the foods and calories that came back. That record never contains the photo itself, the prompt, or the model's raw output.
Health Data (Health Sync)
Health Sync is off until you turn it on and grant permission on your device. Once connected, VitaCal reads from Apple Health on iOS or Health Connect on Android, and stores what it reads in your account. It can read around 150 data types, and it reads only the ones your platform grants and your devices actually record. They include:
- Heart and circulation: heart rate, resting and walking heart rate, heart rate variability, ECG readings, atrial fibrillation burden, VO2 max, blood pressure and blood oxygen
- Activity: steps, distance, active and basal energy, flights climbed, exercise and stand time, running and cycling metrics, and workouts
- Body: weight, height, body fat percentage, lean body mass and waist circumference
- Sleep: time in bed and time in each sleep stage
- Reproductive health: menstruation flow and basal body temperature
- Metabolic and clinical: blood glucose, insulin delivery and blood alcohol content
- Hearing and mindfulness: audiogram results, headphone and environmental audio exposure, and mindful minutes
Android reads less. Health Connect exposes a narrower set, and VitaCal asks Android only for workouts, sleep, heart rate, resting heart rate, heart rate variability, steps, distance, floors climbed, active, total and basal energy, weight, height, and the nutrition and water it wrote itself. The heart-and-circulation, reproductive, metabolic, hearing and mindfulness items above are read on iOS only.
Date of birth. On iOS, VitaCal asks Apple Health for your date of birth and uses it once, to estimate your maximum heart rate from your age. Only that estimate is stored; your date of birth is not. Android's Health Connect does not expose it, so nothing is read there. VitaCal's permission request also covers gender and blood type because they sit in the same Apple Health category, but it does not read either.
Workout routes. When a workout has a GPS route, VitaCal uploads the raw latitude, longitude and altitude points to your own folder in our file storage, and derives route segments from them. That is precise location data about where you exercised, and it is kept for as long as the workout is in your account.
Writing back. On Pro, VitaCal writes your nutrition back into Apple Health or Health Connect: energy, protein, carbohydrate, fat and water. It never writes workouts.
Ask VitaCal (AI Coach)
When you send the coach a message, the app sends your recent chat history along with your message. We then send Google Gemini the date, your device locale, the names of the health metrics you have synced, the last four turns of the conversation, and your message. The model can then ask for the data it needs to answer: your health metrics, workouts, sleep, heart rate profile, heart rate zones and timezone.
The coach does not receive your food log, your weight log or your meal photos.
Your coach conversations are saved to your account so the chat history is there when you come back.
VitaCal Connect
VitaCal Connect is off until you set it up. It publishes an endpoint at api.vitacal.app/mcp, and anything holding a valid token for your account can read:
- Your synced health metrics and their history
- Your sleep, including stages
- Your workouts, and the route segments derived from your GPS data
- Your heart rate profile, heart rate zones and timezone
It does not expose your nutrition or food log, your meal photos, or your raw GPS coordinates. A token holder can also change settings on your account: maximum heart rate, heart rate zones, threshold heart rate, timezone and training load model.
There are two kinds of token. One you mint in the app lasts 365 days. If you connect claude.ai, Anthropic is issued an access token that lasts one hour and a refresh token that lasts 90 days, which it uses to keep the connection alive.
Purchases
Subscriptions and AI credit packs are bought through the App Store or Google Play and recorded by RevenueCat, which receives your store purchase receipt and an app user identifier. We never see your card details. Your remaining credit balance is stored on your account record.
Collected Automatically
- Device Information: device type, operating system version, and device identifiers, for app functionality and troubleshooting.
- Usage Data: which screens and features you use, through Firebase Analytics (Google Analytics for Firebase), to improve the app.
How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the VitaCal app
- Analyse the meal photos and meal descriptions you submit
- Calculate personalised calorie and macro recommendations
- Answer your questions in Ask VitaCal from your own data
- Serve the data you request through VitaCal Connect
- Sync your data across devices when logged in
- Send important updates about the app or your account
- Respond to your support requests
- Analyse usage patterns to improve the app experience
We do not use your data to advertise to you, and we do not train AI models on it.
Data Storage and Security
Your data is stored in Firebase, a Google Cloud service, under an identifier unique to your account. Google Cloud encrypts it in transit and at rest. Sign-in is handled by Apple and Google rather than by a password we hold.
Data Sharing
We do not sell your personal information. Your data goes to the following processors, each receiving only what it needs:
- Firebase (Google Cloud): authentication, database, file storage and the server functions the app calls. It holds everything described above.
- Google Gemini: the meal photo or meal description you submit, and the health data a coach question needs to be answered.
- RevenueCat: your store purchase receipts and an app user identifier.
- Anthropic: only if you connect claude.ai or Claude Code through VitaCal Connect. It can then read the data that endpoint exposes, listed above.
- Apple and Google: sign-in, and payment for subscriptions and credit packs.
We may also disclose information if required by law or to protect our rights and safety, and your information may transfer to a new entity in a merger or acquisition.
Your Rights and Choices
Export
Profile > Tracking > Export Data gives you a JSON file containing your food log, water log, weight log, favourites and nutrition goals. A food log entry with a saved photo includes that photo's storage path and download link; the image files themselves are not in the file. It does not include your synced health metrics, workouts, sleep, workout routes or coach conversations. For a copy of those, email support@vitacal.app and we will send them to you.
Deletion
You can delete your account from Profile > Account > Delete Account, or by emailing support@vitacal.app. Deleting your account erases every document and file we hold under it: your food, water and weight logs, favourites, goals and settings, your meal analysis records, your saved meal photos, your synced health metrics, sleep sessions and workouts, your workout route files and derived segments, your coach conversations, your notification schedule, and your VitaCal Connect tokens, including those issued when you connected claude.ai. Deletion is permanent and cannot be undone.
One thing is not covered: deleting your account does not cancel an active subscription. Cancel that in your App Store or Google Play subscription settings.
Access and Correction
You can edit your profile, goals and logged entries in the app at any time. For anything you cannot reach yourself, email support@vitacal.app.
Turning Health Sync Off
Health Sync can be revoked from Apple Health or Health Connect on your device, which stops VitaCal reading anything new. Data already imported stays in your account until you delete your account or ask us to remove it.
Revoking VitaCal Connect Access
Tokens you minted yourself are listed in the app, and you can revoke any of them there.
A connection you authorised from claude.ai is not shown in that list and cannot be revoked from inside the app. To end it, disconnect the VitaCal connector in the connected application's own settings, which is where you authorised it. If you cannot get to those settings, email support@vitacal.app and we will revoke it for you. Its access token expires an hour after it was issued, and its refresh token 90 days after.
Data Retention
- Meal photo analysis copies: deleted as soon as the analysis finishes, and in any case within fifteen minutes of upload.
- Meal photos saved with a meal: kept until you delete your account, including after you delete the meal itself, and deleted when you delete your account.
- Expired VitaCal Connect access tokens: deleted by a daily sweep.
- Everything else: kept for as long as your account is active, and deleted when you delete your account.
- Backups: We keep no scheduled database backups and point-in-time recovery is switched off, so the only history that exists is the past hour of document versions. Once that hour passes, deleted data cannot be recovered by us. Google removes deleted data from its own systems within a maximum of 180 days under its Cloud Data Processing Addendum.
Children's Privacy
VitaCal is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.
International Users
VitaCal runs on Google Cloud, and your data is processed on Google Cloud infrastructure. Your data is stored in the United States: the database sits in Google's United States multi-region and uploaded files in its Iowa (us-central1) region. If you are in the United Kingdom, the European Union or Switzerland, using VitaCal therefore transfers your data to the United States. For that transfer we rely on the data transfer commitments in Appendix 3 of Google's Cloud Data Processing Addendum, which covers the EU GDPR, the UK GDPR and the Swiss FADP.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by posting the new policy in the app or via email.
Contact Us
If you have questions about this Privacy Policy or our practices, please contact us at:
Email: support@vitacal.app
Website: https://vitacal.app