Privacy Policy
Last Updated: March 9, 2026
MyPetCal ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website at https://app.mypetcal.com, our iOS mobile application, and all related services (collectively, the "Service"). Please read this policy carefully.
We comply with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and Apple's App Store Guidelines. All customer data is hosted on secure servers located in Stockholm, Sweden (within the EU). We do not sell your personal data.
For details about how we protect your account and data in transit and at rest, see our Security page.
If you do not agree with the terms of this privacy policy, please do not access the Service.
Table of Contents
1. Information We Collect
We collect information from and about you when you use our Service. The types of information we collect include:
a. Personal Information
This includes information that identifies you as an individual, such as:
- Name (first and last)
- Email address
- Username / display name
- Profile photo (avatar)
- Account login credentials (email + password, or OAuth provider tokens)
- Payment or billing information (processed by Stripe; we do not store card details)
b. Pet Information
We collect pet-related data you voluntarily provide, including:
- Pet name, breed, species, age, gender, and weight
- Pet photos (uploaded or captured via camera)
- Health conditions, dietary restrictions, and medical notes
- Meal logs, nutrition data, calorie tracking, and feeding schedules
- Activity logs, weight history, and wellness check-in records
- Reminders, goals, and recipe preferences
c. Device & Technical Information
We automatically collect non-personal technical data, such as:
- IP address
- Browser type and version
- Operating system and device type
- Screen resolution and viewport size
- Pages visited, time spent, and referring URLs
d. Location Data
If you opt in to the Wellness Check feature and enable location sharing, we collect your approximate or precise geolocation at the time of check-in. Location data is used solely to confirm your check-in and share it with your designated emergency contacts. You can disable location sharing at any time from your Wellness Settings.
e. Cookies and Local Storage
We use cookies and browser local storage to:
- Maintain your authentication session
- Store user preferences (e.g., theme, dismissed prompts)
- Cache data for offline functionality
You can manage your cookie preferences through your browser settings.
2. Why We Collect Each Data Type
In accordance with Apple's App Privacy requirements, here is the purpose for each category of data we collect:
| Data Type | Purpose | Linked to Identity? |
|---|---|---|
| Email Address | Account creation, authentication, notifications | Yes |
| Name | Personalization, profile display | Yes |
| Profile Photo | Account personalization | Yes |
| Pet Data | Core app functionality (tracking, recommendations) | Yes |
| Photos (pet/meal) | AI-powered breed/meal analysis, pet profile display | Yes |
| Location | Wellness check-in verification (opt-in only) | Yes |
| Usage Data | Analytics, app improvement, debugging | Yes |
| Payment Info | Subscription processing (via Stripe / Apple IAP) | Yes |
We do not use any collected data for tracking or advertising purposes. We do not participate in data broker networks, and we do not share data with ad networks.
3. How We Use Your Information
We use the information we collect for the following purposes:
- To provide the Service: Enable you to register, log in, manage pet profiles, log meals, track health metrics, and use all core features.
- To maintain and improve the Service: Analyze usage patterns to enhance user experience, fix bugs, and improve performance.
- To communicate with you: Send transactional emails (e.g., password resets, wellness alerts), and promotional content if you opt in.
- For AI-powered features: Process pet photos for breed recognition, generate meal plans, provide nutrition recommendations, and answer nutrition questions.
- For security and fraud prevention: Protect against unauthorized access and misuse of the platform.
- To comply with legal requirements: Ensure adherence to applicable laws and regulations.
4. Third-Party Services & SDKs
MyPetCal uses the following third-party services. Each processes data as described:
Authentication & Database
- Supabase (supabase.com) — Authentication, database, file storage, and serverless functions. Stores user accounts, pet profiles, meal logs, and all app data. Hosted in EU (Stockholm). Supabase Privacy Policy
Payments
- Stripe (stripe.com) — Payment processing for Pro subscriptions. We do not store credit card numbers; Stripe handles all payment data. Stripe Privacy Policy
- Apple In-App Purchase — For subscriptions purchased through the iOS App Store. Apple processes all payment data. Apple Privacy Policy
AI & Machine Learning
- OpenAI (openai.com) — Powers AI features including nutrition Q&A, recipe generation, and meal planning. Pet data and queries are sent to OpenAI's API for processing. OpenAI Privacy Policy
- Google Gemini (ai.google.dev) — Used for pet image analysis (breed detection, health indicators). Pet photos are sent to Google's API for analysis. Gemini API Terms
- Anthropic (anthropic.com) — Used for advanced nutrition recommendations. Anthropic Privacy Policy
Food & Nutrition Data
- FatSecret (fatsecret.com) — Food search and nutritional information lookup. Search queries are sent to FatSecret's API. FatSecret Privacy Policy
- Open Food Facts (openfoodfacts.org) — Barcode-based food product lookup. Open Food Facts Privacy Policy
- Mailjet (mailjet.com) — Transactional emails (wellness alerts, check-in confirmations). Your email address is shared with Mailjet for email delivery. Mailjet Privacy Policy
Cloud Storage
- AWS S3 / Cloudflare R2 — Stores meal log photos, pet images, backups, and user avatars. Files are stored securely with access controlled by signed URLs. AWS Privacy Policy, Cloudflare Privacy Policy
Affiliate Products
- Impact (impact.com) — Affiliate product catalog for the pet store. Click data (product ID, timestamp) may be shared. Impact Privacy Policy
We do not use any advertising SDKs, analytics trackers (e.g., Google Analytics, Facebook SDK), or data brokers.
5. Sharing Your Information
We do not sell your personal information. We may share your information only in the following circumstances:
a. Service Providers
We share data with the third-party providers listed in Section 4 above, solely to provide the Service. Each provider processes data under their own privacy policy and under data processing agreements where applicable.
b. Legal Obligations
We may disclose your information if required to do so by law or if we believe such action is necessary to:
- Protect the safety of MyPetCal users.
- Respond to valid legal requests (e.g., subpoenas or court orders).
- Safeguard our rights, property, or operations.
c. Business Transfers
In the event of a merger, acquisition, or sale of assets, your personal data may be transferred. We will notify you before your data becomes subject to a different privacy policy.
6. Device Permissions
MyPetCal may request the following device permissions. Each is optional and you can deny or revoke them at any time:
- Camera: Used to take photos of your pet for profile pictures and AI-powered breed/health analysis. Also used for barcode scanning of pet food products. Photos are only captured when you explicitly tap the camera button.
- Photo Library: Used to select existing photos of your pet or meals from your device. Only photos you explicitly select are accessed.
- Location: Used only for the Wellness Check feature when you opt in to share your location with emergency contacts. Not used for advertising or tracking.
- Notifications: Used for feeding reminders, wellness check-in alerts, and appointment notifications. You control which notifications you receive.
- Microphone: Used for voice-to-text input when logging meals or entering pet data. Audio is processed and immediately discarded; we do not store voice recordings.
7. Data Location and International Transfers
By default, all customer data is stored on secure servers located in Stockholm, Sweden (within the European Union). Where strictly necessary to provide the Service (for example, AI processing via OpenAI/Google or cloud storage via AWS), limited data may be transferred outside the EU/EEA under appropriate safeguards such as Standard Contractual Clauses (SCCs) or equivalent mechanisms.
If you access our services from outside the EU/EEA or UK, your data may be accessed from those regions. We take steps to ensure an adequate level of protection consistent with GDPR requirements.
8. Your Privacy Rights
Depending on your location, you may have specific rights regarding your personal information.
General Rights (All Users)
- Access: View the data we have collected about you.
- Correction: Request corrections to inaccuracies in your personal information.
- Deletion: Delete your account and all associated data (see Section 9 below).
- Export: Request a copy of your data in a portable format.
California Residents (CCPA)
Under the California Consumer Privacy Act (CCPA), California residents have the right to:
- Know what personal data is collected and how it is used.
- Request deletion of personal information.
- Opt-out of the sale of personal data (we do not sell your data).
- Non-discrimination for exercising your privacy rights.
EU and UK Residents (GDPR)
Under the General Data Protection Regulation (GDPR), you have the right to:
- Access your personal data.
- Request rectification or erasure of your data.
- Restrict or object to processing.
- Data portability (receive your data in a machine-readable format).
- Withdraw consent at any time.
- Lodge a complaint with a supervisory authority.
To exercise any of these rights, email us at support@mypetcal.com.
9. How to Delete Your Data
You can delete your account and all associated data at any time. We offer two methods:
Option 1: In-App Account Deletion
- Log in to your MyPetCal account.
- Go to Account Settings (tap your profile icon → Account).
- Scroll to the bottom and tap "Delete Account".
- Confirm the deletion. This action is permanent and cannot be undone.
Option 2: Email Request
Send an email to support@mypetcal.com with the subject line "Account Deletion Request" and include the email address associated with your account. We will process your request within 30 days.
What Gets Deleted
When you delete your account, the following data is permanently removed:
- Your user profile (name, email, avatar)
- All pet profiles and associated data (meals, health metrics, weight entries, activities)
- Meal plans, recipes, and nutrition history
- Reminders and goals
- Uploaded photos and files
- Wellness check-in history and emergency contacts
- Feature usage data
Note: Some anonymized, aggregated data may be retained for analytics purposes but cannot be linked back to your identity. Payment records may be retained as required by law or by our payment processors (Stripe / Apple).
10. Data Retention
We retain your personal data only for as long as your account is active or as needed to provide the Service. Specifically:
- Active accounts: Data is retained as long as your account is open.
- Deleted accounts: Data is permanently deleted within 30 days of account deletion, except where legal obligations require longer retention (e.g., financial records).
- Backups: Encrypted backups may retain data for up to 90 days after deletion for disaster recovery purposes, after which it is permanently purged.
11. Security Measures
We implement industry-standard security measures to protect your personal information, including:
- SSL/TLS encryption for all data transmission.
- Encryption at rest for stored data.
- Database Row-Level Security (RLS) ensuring users can only access their own data.
- Regular security updates and vulnerability assessments.
- Secure API key management (secrets are never exposed in client-side code).
- OAuth 2.0 for third-party authentication (Google Sign-In, Apple Sign-In).
For more details on our security practices, please see our Security page.
While we strive to protect your information, no system is 100% secure. Please notify us immediately if you suspect unauthorized access to your account.
12. Third-Party Links
Our Service may include links to third-party websites (e.g., affiliate pet product stores). We are not responsible for the privacy practices or content of these external sites. Please review their privacy policies before providing any personal data.
13. Children's Privacy
MyPetCal is not intended for children under 13 years of age (or under 16 in the EU/EEA). We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected such data, we will delete it promptly. If you believe a child has provided us with personal information, please contact us at support@mypetcal.com.
14. Changes to This Privacy Policy
We reserve the right to update or modify this privacy policy at any time. Changes will be posted on this page with a revised "Last Updated" date. For material changes, we will notify you via email or an in-app notification. Your continued use of the Service after such changes constitutes your acknowledgment of the updated policy.
15. Contact
For privacy inquiries, data requests, or questions about this policy:
- Email: support@mypetcal.com
- Support Page: mypetcal.com/support
We aim to respond to all privacy-related inquiries within 30 days.
