Privacy policy
Updated September 20, 2026 · Local diary with optional accounts
Your MyPiatto food journal stays on your device unless you choose to export or back it up. Optional sign-in stores account information separately from your journal.
Who operates MyPiatto
MyPiatto is operated by cloudkeyconsulting LLC. Contact us at contact@cloudkeyconsulting.com with privacy questions.
Your journal
Food entries, recipes, favorites, water logs, goals and preferences are stored on your device. We do not upload your journal when you sign in. Guest and signed-in diaries are separate; signing out returns you to your guest diary. The app does not include tracking or advertising software.
Meal-prep previews are held for the current session. The current standard app does not offer live subscriptions, cloud synchronization, HealthKit access or cloud photo analysis.
Optional accounts
MyPiatto offers optional Sign in with Apple and Google through Supabase. Guest use remains available. If you sign in, Apple or Google supplies an account identifier and verified email address, which may be an Apple private relay address. Google may also supply basic profile details, such as your name and profile-photo address. Supabase stores your account record, provider identity, session information and authentication events to operate and secure sign-in. These records are linked to your account.
We use this information for account access, account deletion and security. We do not request access to your contacts, mail, calendars or social posts. We do not receive your Apple or Google password, sell account information, use it for advertising or use it to train AI models. Session credentials are stored in the device Keychain. The authentication service is currently hosted in the United States. Apple, Google and Supabase also process connection information, including IP addresses and technical request details, under their own privacy practices.
Signing in does not back up your diary or transfer it to another device. Google sign-in uses our verified MyPiatto application registration.
Account service records
Authentication and gateway logs retain sign-in and account actions, connection addresses, user-agent information, request timings and errors. The gateway also records approximate city and country information derived from the connection address, and connection fingerprints used for service security. MyPiatto does not request GPS access. These records support account operation, security and troubleshooting.
Google profile-photo addresses may be retained as account metadata; the app does not display or download those photos. Our current Supabase Free plan gives us access to the last day of service logs. This is an access window, not a promise that every provider copy is erased after one day. Logs and provider backups may remain under the providers’ retention schedules after account deletion.
Nutrition-label photos
If you choose a label photo or use the camera, Apple’s text-recognition framework processes the image on your iPhone. MyPiatto does not upload the image or save it as part of your journal. A photo you selected from your library remains in that library. You review the extracted nutrition values before saving an entry.
Camera access is optional and can be changed in iPhone Settings. You can use manual entry instead.
Exports and device backups
A CSV diary or full JSON backup contains your food and related personal history. You decide where to save or share it. We do not receive exports automatically. A receiving app, cloud drive or other recipient handles its copy under its own practices. Your device’s backup service may also store app data.
Deleting your data and account
Choose You → Reset this diary to clear the current on-device diary, recipes, favorites, water logs and goals. This does not delete an online account. Choose You → Your account → Delete account to request permanent removal of your MyPiatto authentication record. After the server confirms deletion, the app removes that account’s diary on the device making the request. Your guest diary and other accounts are separate.
For an Apple-linked account, Apple may ask you to authorize again. Our server temporarily stores the revocation credential in a restricted deletion record so an interrupted request can be retried. It revokes the Apple connection before deleting the account and removes the temporary record when deletion completes. An interrupted request may retain that record until deletion is completed; contact support if retrying does not resolve it. You can also manage MyPiatto’s connection in your Apple or Google account settings.
We retain active account records while your account exists. Deletion removes the live authentication record; security logs, service backups if present, support correspondence and records required by law may remain under their applicable retention schedules. Files you exported, copies you shared, other devices and device backups are not removed by account deletion. Manage those copies separately. We cannot remotely access or delete your local diary. Contact contact@cloudkeyconsulting.com if you cannot access the in-app deletion flow; we will need to verify account ownership.
Support messages
If you email us, we receive your email address, message and any attachments you choose to send. We use them to respond and investigate your request. Messages are handled through our email service; they are separate from your local journal. Please send only what is necessary and remove sensitive information from screenshots.
Contact the same address to request deletion of support correspondence. Some information may need to be kept to resolve the request or meet applicable legal requirements. We do not automatically attach your diary to support messages.
This website and external links
This support website has no forms, advertising scripts or app analytics added by us. Its hosting service processes normal connection information, such as your IP address and requested page, to deliver and protect the site. Hosting and access services may have their own operational logs.
The app includes reference nutrition data from USDA FoodData Central. Opening a source link takes you to an external website whose privacy practices apply. Email, backup and external website providers process information under their own terms.
Changes to this policy
We will update this page and relevant in-app disclosures when data practices change. New cloud or paid features will require an updated policy before release.