Privacy Policy
Last updated: March 3, 2026
Nosh AI ("we," "us," or "our") is operated by Kartikeya Tiwari, an individual developer based in India. This Privacy Policy explains how we collect, use, store, and protect your information when you use the Nosh AI mobile application ("App") and related services ("Services"). This policy is published in compliance with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 ("SPDI Rules"), and other applicable laws of India.
By using Nosh AI, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the App.
1. Information We Collect
1.1 Information You Provide
| Data Type | Examples | Purpose |
|---|---|---|
| Account Information | Name, email address, profile photo | Account creation and authentication |
| Dietary Preferences | Vegetarian/non-vegetarian, allergies, cuisine preferences, food dislikes | Personalizing meal recommendations |
| Health Data | Age, weight, height, health goals, medical dietary restrictions, activity level | Generating nutritionally appropriate meal plans |
| Location Data | City, region, or precise location (with your permission) | Regional food recommendations, seasonal ingredient availability, local cuisine suggestions |
1.2 Information Collected Automatically
| Data Type | Examples | Purpose |
|---|---|---|
| Device Information | Device model, operating system, unique device identifiers | App compatibility and troubleshooting |
| Usage Data | Features used, meals viewed, interaction patterns, session duration | Improving the App and user experience |
| Log Data | IP address, access times, app crashes and errors | Security, debugging, and analytics |
1.3 Payment Information
When you make purchases through the App, payments are processed by the Apple App Store or the Google Play Store. These storefronts may collect billing information, transaction history, and related purchase metadata needed to complete your transaction. We do not directly store your complete payment credentials. Payment processing is handled by the relevant app store in accordance with its security standards and privacy policy.
1.4 Sensitive Personal Data or Information (SPDI)
Under the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, certain categories of data we collect — including health data, medical history, dietary restrictions related to medical conditions, and physiological information (such as weight, height, BMI) — are classified as Sensitive Personal Data or Information (SPDI). We collect and process this SPDI only with your explicit consent, which you provide at the time of registration and when entering such information into the App. You may withdraw your consent at any time by contacting us, though this may limit your ability to use certain features of the App.
2. How We Use Your Information
We use the information we collect to:
- ● Generate personalized, AI-powered meal recommendations tailored to your dietary preferences, health data, and location
- ● Improve the accuracy and relevance of our AI models and recommendation engine
- ● Provide customer support and respond to your inquiries
- ● Send you service-related notifications (e.g., meal reminders, app updates)
- ● Analyze usage patterns to improve the App's features and performance
- ● Detect and prevent fraud, abuse, or security incidents
- ● Comply with legal obligations
Nosh AI uses artificial intelligence to process your dietary preferences, health data, and location to generate personalized meal recommendations. Your data is sent from the App to our own backend servers, where it is processed using third-party AI services, including Google's Gemini API, to generate meal plans and nutritional insights. Only anonymized dietary preferences, health goals, and meal-related data are sent to these AI services — no personally identifiable information such as your name, email address, phone number, or device identifiers is shared with them. We do not use your personal data to train general-purpose AI models shared with third parties.
4. Data Storage and Security
Your data is stored on Google Cloud Platform servers. We implement industry-standard security measures including:
- ● Encryption of data in transit (TLS/SSL) and at rest
- ● Access controls and authentication for internal systems
- ● Regular security assessments and monitoring
- ● Secure API communication between the App and our servers
While we strive to protect your information, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
Encryption at Rest
All biometric and health data is encrypted using AES-256 standards before being stored in our databases.
Secure Access
Access to sensitive data is strictly limited to authorized personnel and requires multi-factor authentication.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide you with the Services. If you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain it for legal or regulatory purposes.
Anonymized and aggregated data (which cannot identify you) may be retained indefinitely for analytical and product improvement purposes.
6. Your Rights and Choices
You have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your account and associated personal data.
- Data Portability: Request your data in a structured, machine-readable format.
- Withdraw Consent: Withdraw consent for optional data processing (e.g., location access) at any time through your device settings.
- Opt-out: Opt out of promotional communications via the unsubscribe link in our emails or through App settings.
To exercise any of these rights, contact us at contact@noshai.app. We will respond within 30 days.
7. Location Data
Nosh AI requests access to your location to provide region-specific meal recommendations and suggest locally available ingredients. Location access is optional — you can deny or revoke location permissions at any time through your device settings. If you choose not to share your location, you can manually set your city or region within the App.
8. Third-Party Services
The App may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies independently.
9. Children's Privacy
Nosh AI is not intended for use by children under the age of 18 without parental or guardian consent. We do not knowingly collect personal information from children under 13. If we become aware that we have collected data from a child under 13 without parental consent, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal data, please contact us at contact@noshai.app.
10. International Users
If you are accessing the App from outside India, please be aware that your information may be transferred to, stored, and processed in India or other countries where our service providers operate. By using the App, you consent to this transfer. We take steps to ensure your data is treated securely and in accordance with this Privacy Policy regardless of where it is processed.
For Users in the European Economic Area (EEA):
If you are in the EEA, our legal bases for processing your personal data include your consent, the performance of our contract with you (providing the Services), and our legitimate interests in improving and securing the App. You have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with your local data protection authority.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy within the App or by sending you a notification. The "Last updated" date at the top of this page indicates when the policy was last revised. Your continued use of the App after changes are posted constitutes your acceptance of the updated policy.
12. Grievance Officer
In accordance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, the details of the Grievance Officer are provided below for the purpose of addressing any discrepancies or grievances related to the processing of your information:
- Grievance Officer: Himanshu Prasad
- Email: feedback@noshai.app
- Address: Sun City Apartments, Iblur Village, Bengaluru - 560102, India
The Grievance Officer shall acknowledge your grievance within 24 hours and endeavor to resolve it within 15 days of receipt.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: contact@noshai.app
- Developer: Kartikeya Tiwari
- Location: India