Privacy Policy
Last updated: August 13, 2026
AutoCal is made by Stackcurious LLC ("we," "us"). This policy explains what data AutoCal handles and why. The short version: AutoCal has no accounts and no server-side user database. Your food log, weight, and history live on your device and, if you have iCloud enabled, in your own private iCloud account — not on our servers. The only things that pass through infrastructure we operate are the specific requests described below, and none of them are linked back to you as an identified person.
Data we handle, and where it goes
- Your food log, profile, and history — device + your private iCloud only. Meals, plate photos, scan results, weight, macro targets, streaks, and restaurant memory are stored locally using Apple's SwiftData framework. If you have iCloud syncing on, this data also syncs to your private CloudKit database — the same private-to-you iCloud storage Apple gives every app, which we cannot read, query, or access. We never see this data. There is no AutoCal account, login, or password, and no copy of your log sits on a server we run.
- Menu, plate, and label photos — sent transiently to our proxy, then to an AI provider. When you scan a menu, plate, or nutrition label, the photo is sent to our own lightweight relay server (which holds the AI vendor API keys so the app itself never does) and forwarded to Anthropic or OpenAI to identify the food and estimate nutrition. That image is used only to generate your result and is not stored by our relay after the request completes; we don't keep a copy, and it isn't tied to your name, email, or any account (because there isn't one). Anthropic's and OpenAI's own privacy policies govern their transient processing of that request on their infrastructure.
- Usage analytics — anonymous, via TelemetryDeck. We use TelemetryDeck to understand aggregate usage (e.g., how many scans happen, which screens get used) so we can improve the app. TelemetryDeck is built to be anonymous by design — it does not use device identifiers like the IDFA, does not track you across apps or websites, and the signals we send contain event names and coarse counts, not your food log, photos, or identity. You can see TelemetryDeck's own privacy approach at telemetrydeck.com.
- Location — optional, used on-device, never sent to us. If you grant "When In Use" location access, AutoCal uses your device's location locally to recognize when you're back at a restaurant you've scanned before, so it can skip a rescan and show your saved picks. If you separately opt in (off by default, behind Settings → "Picks ready when you arrive"), AutoCal can use "Always" location access the same way, in the background, to notice when you arrive at a remembered restaurant. In both cases the location math happens on your device — we do not receive, log, or store your location on any server.
- Health data — read and written locally through Apple HealthKit. With your permission, AutoCal reads your weight from Apple Health to keep your calorie and macro targets current, and writes the meals you log back to Apple Health so they show up alongside your other health data. This happens through Apple's HealthKit framework on your device; we do not receive or store your HealthKit data on any server.
- Voice input for refining picks — transcribed by Apple's speech recognition. If you use voice to tweak a result (e.g., "no dairy," "under 600 calories"), your speech is transcribed using Apple's
SFSpeechRecognizer, which uses on-device transcription when available on your device and language, and otherwise Apple's own server-based speech recognition as a fallback. We don't operate this transcription and never receive the raw audio — we only receive the resulting text you asked to apply, exactly as if you'd typed it. - Purchases — handled by Apple via StoreKit. AutoCal Pro purchases and subscriptions go through Apple's StoreKit. Apple processes your payment; we never see your card number or billing details. We store your entitlement status (which product you own and, for subscriptions, whether it's active) locally on your device to unlock Pro features, and Apple's App Store account handles all purchase/subscription management, receipts, and refunds.
- Restaurant chain data.The 30-chain verified nutrition database ships inside the app and is not personalized — looking up a chain's menu doesn't send anything identifying you.
What we don't do
- We don't require or offer account creation, so there's no username, password, or profile we hold on a server.
- We don't sell your data. We have none to sell.
- We don't run ad tracking, and we don't share data with data brokers or advertising networks.
- We don't build cross-app or cross-site tracking profiles.
Children
AutoCal is not directed at children under 13, and we don't knowingly collect data from them (there's nothing to collect, since there's no account).
Your choices
You can disable camera, photo library, location, microphone/speech, and HealthKit access at any time in iOS Settings → AutoCal. Turning these off disables the corresponding feature (e.g., no location means no restaurant-memory auto-detection) but the rest of the app keeps working. Because your log lives in your own iCloud, deleting the app (and, if you want, turning off iCloud sync for AutoCal beforehand) removes your data from your devices; iCloud retention/deletion for synced data is governed by your own Apple ID / iCloud settings.
Changes to this policy
If this policy changes, we'll update the "Last updated" date above and, for material changes, note it in the app's release notes.
Contact
Stackcurious LLC — support@stackcurious.com — stackcurious.com
AutoCal is a product of Stack Curious, LLC · Florida, USA