Effective May 24, 2026
This policy explains what data Pantora collects, why we collect it, and the choices you have. We've tried to keep it readable. If anything is unclear, email us at iryamukurup@yahoo.fr.
The short version: We collect what's needed to make the app work — your Apple ID for sign-in, the fridge photos you scan, the preferences you set, and your in-app activity. We don't sell your data, we don't run ads, and you can delete your account anytime from Settings.
When you sign in with Apple, we receive a unique identifier from Apple. If you choose to share your email address through Sign in with Apple, we receive that as well (you can also choose Apple's private relay email). We use this only to identify your account.
During onboarding and in Settings, you provide information about your cooking goals, dietary preferences, household size, time budget, calorie goal, and pantry staples. This information personalizes recipe suggestions and is stored with your account.
When you scan your fridge or pantry, the photos are sent to OpenAI's API for ingredient detection. OpenAI processes the images and returns a list of identified ingredients. Pantora does not store these photos on our servers after processing. Per OpenAI's API terms, OpenAI may retain the images temporarily for abuse monitoring but does not use them to train their models.
We store the recipes generated for you, the meals you mark as cooked ("cook events"), and the ingredients we've seen in your scans. This data powers your savings tracking, calorie ring, and recipe history.
If you enable Apple Health sync in Settings, Pantora reads your daily dietary energy from Apple Health and writes the meals you cook back to Apple Health. Health data never leaves your device. It is not sent to Pantora's servers or any third party. You can revoke this access anytime in iOS Settings → Health → Data Access & Devices → Pantora.
When you purchase Pantora Pro, the transaction is processed by Apple. We use RevenueCat to verify and manage your subscription status. Apple shares the transaction with RevenueCat, which provides us with a signal that you have an active subscription. We do not receive your payment details.
We use Firebase to provide authentication, store your account data (Firestore), and collect basic analytics about how the app is used (sessions, screens viewed, anonymized event counts). This data helps us identify bugs and improve the app.
Pantora relies on the following providers. Each handles your data per their own privacy policy:
We do not sell your personal data. We share data only with the third-party services listed above, and only to the extent needed to operate the app. We do not run advertising in Pantora and do not share your data with advertisers.
Your account data persists until you delete your account. When you tap Delete Account in Settings, we delete:
Backups may retain your data for up to 30 days before being purged. Health data stored in Apple Health is unaffected by account deletion and remains under your control in the Health app.
You can:
If you are in the EU, UK, or California, you have additional rights under GDPR and CCPA, including access, correction, deletion, and portability. Email us to exercise these rights.
Pantora is not intended for users under 13. We do not knowingly collect data from children under 13. If you believe we have collected data from a child under 13, please contact us and we will delete it promptly.
We use industry-standard encryption (HTTPS in transit, encryption at rest in Firebase) to protect your data. No system is perfectly secure, but we take reasonable measures to safeguard your information.
We may update this policy as Pantora evolves. We'll post the revised policy at this URL with an updated effective date. Material changes will be announced in-app.
Questions, concerns, or data requests: