Privacy Policy

Last updated: March 3, 2026

Nosh AI ("we," "us," or "our") is operated by Kartikeya Tiwari, an individual developer based in India. This Privacy Policy explains how we collect, use, store, and protect your information when you use the Nosh AI mobile application ("App") and related services ("Services"). This policy is published in compliance with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 ("SPDI Rules"), and other applicable laws of India.

By using Nosh AI, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the App.

database

1. Information We Collect

1.1 Information You Provide

Data Type Examples Purpose
Account Information Name, email address, profile photo Account creation and authentication
Dietary Preferences Vegetarian/non-vegetarian, allergies, cuisine preferences, food dislikes Personalizing meal recommendations
Health Data Age, weight, height, health goals, medical dietary restrictions, activity level Generating nutritionally appropriate meal plans
Location Data City, region, or precise location (with your permission) Regional food recommendations, seasonal ingredient availability, local cuisine suggestions

1.2 Information Collected Automatically

Data Type Examples Purpose
Device Information Device model, operating system, unique device identifiers App compatibility and troubleshooting
Usage Data Features used, meals viewed, interaction patterns, session duration Improving the App and user experience
Log Data IP address, access times, app crashes and errors Security, debugging, and analytics

1.3 Payment Information

When you make purchases through the App, payments are processed by the Apple App Store or the Google Play Store. These storefronts may collect billing information, transaction history, and related purchase metadata needed to complete your transaction. We do not directly store your complete payment credentials. Payment processing is handled by the relevant app store in accordance with its security standards and privacy policy.

1.4 Sensitive Personal Data or Information (SPDI)

Under the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, certain categories of data we collect — including health data, medical history, dietary restrictions related to medical conditions, and physiological information (such as weight, height, BMI) — are classified as Sensitive Personal Data or Information (SPDI). We collect and process this SPDI only with your explicit consent, which you provide at the time of registration and when entering such information into the App. You may withdraw your consent at any time by contacting us, though this may limit your ability to use certain features of the App.

bar_chart

2. How We Use Your Information

We use the information we collect to:

  • Generate personalized, AI-powered meal recommendations tailored to your dietary preferences, health data, and location
  • Improve the accuracy and relevance of our AI models and recommendation engine
  • Provide customer support and respond to your inquiries
  • Send you service-related notifications (e.g., meal reminders, app updates)
  • Analyze usage patterns to improve the App's features and performance
  • Detect and prevent fraud, abuse, or security incidents
  • Comply with legal obligations
smart_toy About our AI

Nosh AI uses artificial intelligence to process your dietary preferences, health data, and location to generate personalized meal recommendations. Your data is sent from the App to our own backend servers, where it is processed using third-party AI services, including Google's Gemini API, to generate meal plans and nutritional insights. Only anonymized dietary preferences, health goals, and meal-related data are sent to these AI services — no personally identifiable information such as your name, email address, phone number, or device identifiers is shared with them. We do not use your personal data to train general-purpose AI models shared with third parties.

share

3. How We Share Your Information

We do not sell your personal information. We may share your information only in the following circumstances:

  • Service Providers: We use third-party services for cloud hosting (Google Cloud Platform), analytics and engagement (such as Firebase Analytics, Crashlytics, or similar tools), crash reporting, and email delivery. These providers process data on our behalf under contractual obligations to protect your information.
  • AI Processing Services: Our backend servers use Google's Gemini API to generate personalized meal recommendations and nutritional insights. When processing your requests, only anonymized data — such as dietary preferences, health goals, meal descriptions, and food images — is sent to Google's Gemini API. No personally identifiable information (such as your name, email, phone number, or device identifiers) is transmitted to this service. Google processes this data in accordance with its own privacy policy and API terms of service. Your data is not used by Google to train general-purpose AI models.
  • Payment Processors: When you make payments, your transaction and payment information is shared with the Apple App Store or Google Play Store solely for the purpose of processing your payment. We do not store your complete payment credentials.
  • Legal Requirements: We may disclose your information if required by law, regulation, legal process, or governmental request, including requests from Indian authorities under the Information Technology Act, 2000.
  • Safety: We may share information if we believe it is necessary to protect the safety, rights, or property of Nosh AI, our users, or the public.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
lock

4. Data Storage and Security

Your data is stored on Google Cloud Platform servers. We implement industry-standard security measures including:

  • Encryption of data in transit (TLS/SSL) and at rest
  • Access controls and authentication for internal systems
  • Regular security assessments and monitoring
  • Secure API communication between the App and our servers

While we strive to protect your information, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.

lock

Encryption at Rest

All biometric and health data is encrypted using AES-256 standards before being stored in our databases.

vpn_key

Secure Access

Access to sensitive data is strictly limited to authorized personnel and requires multi-factor authentication.

schedule

5. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you with the Services. If you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain it for legal or regulatory purposes.

Anonymized and aggregated data (which cannot identify you) may be retained indefinitely for analytical and product improvement purposes.

account_circle

6. Your Rights and Choices

You have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your account and associated personal data.
  • Data Portability: Request your data in a structured, machine-readable format.
  • Withdraw Consent: Withdraw consent for optional data processing (e.g., location access) at any time through your device settings.
  • Opt-out: Opt out of promotional communications via the unsubscribe link in our emails or through App settings.

To exercise any of these rights, contact us at contact@noshai.app. We will respond within 30 days.

location_on

7. Location Data

Nosh AI requests access to your location to provide region-specific meal recommendations and suggest locally available ingredients. Location access is optional — you can deny or revoke location permissions at any time through your device settings. If you choose not to share your location, you can manually set your city or region within the App.

link

8. Third-Party Services

The App may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies independently.

child_care

9. Children's Privacy

Nosh AI is not intended for use by children under the age of 18 without parental or guardian consent. We do not knowingly collect personal information from children under 13. If we become aware that we have collected data from a child under 13 without parental consent, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal data, please contact us at contact@noshai.app.

public

10. International Users

If you are accessing the App from outside India, please be aware that your information may be transferred to, stored, and processed in India or other countries where our service providers operate. By using the App, you consent to this transfer. We take steps to ensure your data is treated securely and in accordance with this Privacy Policy regardless of where it is processed.

For Users in the European Economic Area (EEA):

If you are in the EEA, our legal bases for processing your personal data include your consent, the performance of our contract with you (providing the Services), and our legitimate interests in improving and securing the App. You have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with your local data protection authority.

edit

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy within the App or by sending you a notification. The "Last updated" date at the top of this page indicates when the policy was last revised. Your continued use of the App after changes are posted constitutes your acceptance of the updated policy.

gavel

12. Grievance Officer

In accordance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, the details of the Grievance Officer are provided below for the purpose of addressing any discrepancies or grievances related to the processing of your information:

  • Grievance Officer: Himanshu Prasad
  • Email: feedback@noshai.app
  • Address: Sun City Apartments, Iblur Village, Bengaluru - 560102, India

The Grievance Officer shall acknowledge your grievance within 24 hours and endeavor to resolve it within 15 days of receipt.

mail

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

support_agent Contact Support