Privacy Policy

Last updated: March 17, 2026

1. Introduction and Scope

This Privacy Policy explains how MackCrows collects, uses, and protects information. It applies to all users, categorized as:

  • Site Visitors: Individuals browsing the public website (www.mackcrows.com).
  • App Users: Individuals who create an account and use the MackCrows Track Coach application.

2. Information We Collect

The data we collect depends on how you interact with our services.

From Site Visitors:

  • Cookies and Analytics: We use standard browser cookies to manage sessions and screen preferences.
  • Embedded Content: Articles or pages may include embedded content (e.g., videos from other platforms) that behaves as if you visited the host website.

From App Users:

  • Account Data: Name, email address, and secure authentication credentials.
  • Profile Data: Age, height, weight, gender, and personal fitness goals provided during onboarding.
  • User Inputs: Text chats, voice recordings, and photographs submitted for macronutrient and calorie tracking. (Note: All location/GPS and EXIF metadata is actively stripped from your photos on your device before they are ever uploaded to our servers.)
  • Usage Data: Client-side timestamps of logged meals, interactions with the AI Coach, and basic device information.

3. How We Use Your Information

We do not sell your personal data. We use the collected information strictly for the following operational purposes:

  • Core App Functionality: Processing your inputs through generative AI models to estimate nutritional content and stage meal logs for manual review.
  • Personalization: Tailoring AI coaching responses and dietary recommendations based on your profile and logged history.
  • Service Improvement: Analyzing aggregated, anonymized usage trends to debug, secure, and improve application performance.

4. Third-Party Data Processing and Infrastructure

MackCrows utilizes third-party infrastructure to deliver its services:

  • Generative AI Providers: Your inputs are transmitted to the Google Gemini API to generate nutritional estimates. Google’s terms prohibit the use of your application data to train their public foundational AI models.
  • Authentication & Infrastructure: We use Google Firebase to securely manage user accounts, authenticate logins, and host our application databases.
  • Analytics & Monitoring: We utilize Google Analytics, Firebase Analytics, and Firebase Crashlytics to monitor application stability and understand anonymous user behavior.
  • Communications: We use Loops.so and Firebase to deliver transactional emails and application notifications.
  • Payment Processing: We use Lemon Squeezy to handle subscription transactions. We do not collect, process, or store your credit card details on our servers.

No Protected Health Information (PHI)

MackCrows is not a HIPAA-compliant platform. You must not submit PHI, specific medical histories, or medical diagnosis codes.

5. Data Retention and Deletion

  • Image Data: Uploaded food images are retained for your history logs and troubleshooting purposes and are automatically deleted after 14 days.
  • Account Deletion: When you request to delete your account, your active data is removed from our primary databases within 30 days. Residual data may remain in secure, encrypted backups for a short additional period until routinely cycled.
  • Site Visitors: Cookie data expires automatically based on standard browser session limits.

6. State-Specific Privacy Rights

Depending on your state of residence, including protections under the Connecticut Data Privacy Act (CTDPA) and similar state laws, you have specific rights regarding your personal data:

  • The right to know what personal data we collect and its purpose.
  • The right to access, correct, or delete your personal data.
  • The right to opt out of the processing of personal data for targeted advertising (MackCrows does not use personal data for targeted advertising).

7. Age Restriction

The MackCrows Track Coach application is restricted to users who are 18 years of age or older. We do not knowingly collect personal information from minors. Accounts identified as belonging to minors will be terminated immediately, and the associated data will be deleted.

8. Security

We implement commercially reasonable security measures to protect your data, including secure database rules and encryption in transit. However, no electronic transmission or cloud storage system is entirely secure, and we cannot guarantee absolute data security.

9. Policy Updates

We may update this Privacy Policy periodically. We will notify you of any material changes by posting the revised policy on our website and updating the “Last Updated” date.