Privacy Policy
Last Updated: March 7, 2026
This Privacy Policy explains how FRINEO (“Frineo,” “we,” “us,” or “our”) collects, uses, shares, and protects personal data when you use the Frineo app, website, and related services (the “Service”).
1. Data We Collect
A. Data you provide directly
- Account details (email, password auth handled by provider, login method).
- Profile data (name, language, country, age range, gender if provided).
- Dietary preferences (e.g., vegan, vegetarian, gluten-free, etc.).
- Product/inventory inputs (manual entries, shopping list items, preferences).
- Suggestions/feedback forms and support messages.
- Waitlist email (website).
B. Data from your use of features
- Receipt image data you choose to capture/upload for item extraction.
- Text submitted in “voice command”/product parsing flows.
- Parsed product metadata (item names, quantities, estimated prices, product matches).
- Timestamps and basic usage metadata needed to operate the Service.
C. Data from third parties
- Authentication providers (e.g., Google/Apple sign-in) may share basic account profile info per your settings.
- Payment/subscription providers (when activated) may share purchase status and transaction metadata.
D. Device permissions
- Camera permission (for receipt scanning).
- Notification permission (for reminders).
You can manage permissions in your device settings.
2. How We Use Data
We use personal data to:
- create and manage your account;
- authenticate users and secure access;
- process receipts and text inputs into inventory/shopping items;
- provide inventory, suggestions, and personalization features;
- operate household-sharing and collaboration features (where enabled);
- send service notifications (if permitted);
- provide support, troubleshoot, and maintain security;
- comply with legal obligations;
- improve product quality and feature performance.
3. Legal Bases (EEA/UK/Similar Regions)
Where required, we rely on:
- Contract: to provide the Service you requested.
- Legitimate interests: to secure, maintain, and improve the Service.
- Consent: for optional permissions (e.g., notifications/camera where required by platform rules).
- Legal obligation: where processing is required by law.
4. AI and Automated Processing
We use AI/ML and language models (including third-party providers) to process product-related inputs (e.g., receipt parsing, product metadata enrichment/translation, text parsing). These outputs can contain errors. We recommend user review before relying on results.
5. Sharing and Third-Party Processors
We share data only as needed with service providers, such as:
- Supabase (authentication, database, backend hosting/functions).
- OpenAI (AI processing for supported features).
- Apple/Google (authentication and platform services).
- PAYMENT PROCESSOR NAME (subscription billing, if enabled).
- HOSTING/INFRA PROVIDER NAME (app/web hosting, if separate).
We may also disclose data:
- if required by law, legal process, or government request;
- to protect rights, safety, and security;
- in a merger, acquisition, or asset transfer (with appropriate safeguards).
6. International Data Transfers
Your data may be processed outside your country. When required, we use lawful transfer mechanisms (e.g., Standard Contractual Clauses or equivalent safeguards).
7. Data Retention
We retain personal data only as long as needed for the purposes above, including legal, accounting, and security needs.
Typical retention periods should be documented in an internal schedule (e.g., account data while active + RETENTION PERIOD, logs for LOG RETENTION PERIOD, waitlist for WAITLIST RETENTION PERIOD).
When no longer needed, data is deleted or anonymized.
8. Your Rights
Depending on your location, you may have rights to:
- access your personal data;
- correct inaccurate data;
- delete your data;
- restrict or object to processing;
- data portability;
- withdraw consent (where processing is based on consent);
- lodge a complaint with a data protection authority.
To exercise rights, contact PRIVACY CONTACT EMAIL.
For identity verification/security, we may request additional information before fulfilling requests.
9. Data Processing Addendum (DPA) Requests
Business customers or partners can request a DPA by emailing DPA CONTACT EMAIL with subject line: “DPA Request – Frineo”.
10. Children’s Privacy
The Service is not intended for children under CHILDREN MINIMUM AGE (e.g., 13 or 16 depending on jurisdiction).
We do not knowingly collect personal data from children below that age. If you believe a child provided data, contact us so we can delete it.
11. Security
We use reasonable technical and organizational measures to protect personal data (e.g., access controls, encrypted transport, role-based permissions). No system is 100% secure, and we cannot guarantee absolute security.
12. Account Deletion and Privacy Requests
You may request account deletion and related data erasure by:
- in-app request path (if available), or
- emailing contact@frineo.app from your account email address.
We may retain limited data where required for legal, fraud prevention, security, or legitimate business purposes.
13. Do Not Sell / Share (if applicable)
If laws in your region require it (e.g., certain U.S. state laws), you may have rights to opt out of certain “sale” or “sharing” definitions of personal data.
Frineo does not sell personal data for money. If this changes, we will update this Policy and provide required controls.
14. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will update the “Last Updated” date.
15. Contact
Contact: contact@frineo.app
Company: FRINEO
Address: soon