Privacy Policy

Last updated: March 30, 2026

Nave ("the app") is a food scanning and tracking app. This policy explains what data the app collects, how it is used, and your rights.

1. Information we collect

Data stored on your device

Your scan history, food logs, health scores, notification preferences, and settings are stored locally on your device using on-device storage. This data is not transmitted to our servers and is not accessible to us.

Third-party services

The app integrates with the following services to provide functionality. No personal data is shared with any of these services.

Analytics

The app collects anonymous usage events (such as "product scanned" or "screen viewed") to understand how features are used. These events do not contain personal information or the content of your scans.

2. How we use your information

3. AI data processing

When you use photo scanning or label scanning, your food images are sent to Google through a secure proxy for analysis. Images are processed in real time to generate health scores and ingredient breakdowns. We do not store your images on any server. Refer to Google's privacy policy for how they handle data sent to their APIs.

AI-generated analysis is for informational purposes only and may contain inaccuracies. It is not a substitute for professional nutritional or medical advice.

4. Data sharing

We do not sell, rent, or trade your personal data. Data is only shared with the third-party services listed above, strictly to provide app functionality. We do not share data for advertising purposes.

5. Data security

All communication between the app and our proxy servers uses HTTPS encryption. Food scan data is stored locally on your device and is protected by your device's security features. We do not maintain user databases or server-side accounts.

6. Data retention

Since all personal data is stored locally on your device, you control retention. Deleting the app removes all locally stored data. Anonymous analytics data is retained for up to 24 months. Crash reports in Sentry are retained for 90 days.

7. Your rights

Depending on your jurisdiction, you may have the following rights:

For GDPR, CCPA, or other privacy-related requests, contact us at the email address below.

8. Data we do not collect

9. Children

The app is not directed at children under 13. We do not knowingly collect data from children. If you believe a child has provided data through the app, contact us and we will address the concern.

10. International transfers

Data sent to third-party services (such as Google) may be processed in countries outside your jurisdiction. These services maintain their own data protection practices.

11. Changes to this policy

We may update this policy from time to time. Material changes will be reflected on this page with an updated date. Continued use of the app after changes constitutes acceptance of the revised policy.

12. Contact

If you have questions about this privacy policy or want to exercise your data rights, contact us at:

supa.devop@gmail.com