Privacy Policy
Effective Date: January 21, 2025
Version: 1.0
1. Introduction
TrueMetrics ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our nutrition and health tracking service.
2. Information We Collect
2.1 Information You Provide
Account Information:
- Email address
- Password (encrypted)
- Name (first and last)
- Username/alias
- Location (country, state/province)
- Profile picture (optional)
Health and Nutrition Data:
- Food intake and meal plans
- Nutritional goals and preferences
- Physical measurements (height, weight, etc.)
- Activity levels
- Health conditions (optional)
- Dietary restrictions
Financial Planning Data:
- Income information (for retirement planning)
- Financial goals
- Investment preferences
- Budget information
User Content:
- Meal plans you create
- Food ratings and reviews
- Comments and feedback
- Recipe submissions
2.2 Information Collected Automatically
Usage Data:
- Pages visited
- Features used
- Time spent on pages
- Click patterns
- Search queries
Device Information:
- IP address
- Browser type and version
- Operating system
- Device identifiers
- Screen resolution
- Time zone
Cookies and Tracking:
- Session cookies
- Preference cookies
- Analytics cookies
- See our Cookie Policy for details
2.3 Information from Third Parties
API Data:
- Nutritional data from USDA, Open Food Facts
- Recipe data from Spoonacular
- Location data for cost-of-living calculations
3. How We Use Your Information
3.1 Service Provision
- Create and manage your account
- Provide nutritional analysis and scoring
- Generate meal plans and recommendations
- Track your health progress
- Provide financial planning tools
3.2 Personalization
- Customize content based on preferences
- Provide relevant food suggestions
- Adapt to dietary restrictions
- Localize units and currency
3.3 Communication
- Send service updates and notifications
- Respond to support requests
- Send marketing emails (with consent)
- Provide security alerts
3.4 Analytics and Improvement
- Analyze usage patterns
- Improve service features
- Develop new functionality
- Fix bugs and issues
3.5 Legal and Safety
- Comply with legal obligations
- Enforce Terms of Service
- Protect against fraud
- Ensure platform safety
4. Information Sharing
4.1 We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties.
4.2 Service Providers
We may share information with:
- Hosting providers (AWS)
- Email service providers
- Analytics services
- Payment processors
- Customer support tools
All service providers are bound by confidentiality agreements.
4.3 Legal Requirements
We may disclose information if required by:
- Court order or subpoena
- Government investigation
- Legal proceedings
- To protect our rights or safety
4.4 Business Transfers
In case of merger, acquisition, or sale, your information may be transferred to the successor entity.
4.5 Aggregated Data
We may share anonymized, aggregated data that cannot identify you personally.
5. Data Security
5.1 Security Measures
- Encryption in transit (TLS/SSL)
- Encryption at rest for sensitive data
- Regular security audits
- Access controls and authentication
- Regular backups
- Intrusion detection systems
5.2 Incident Response
In case of a data breach:
- Affected users notified within 72 hours
- Regulatory authorities notified as required
- Investigation and remediation
- Public disclosure if required
5.3 Your Responsibilities
- Keep your password secure
- Use strong, unique passwords
- Enable two-factor authentication
- Report suspicious activity
6. Data Retention
6.1 Active Accounts
We retain your data as long as your account is active or as needed to provide services.
6.2 Deleted Accounts
- Account data deleted after 30 days
- Some data retained for legal compliance
- Anonymized data may be retained indefinitely
6.3 Specific Retention Periods
- Health tracking data: Duration of account + 1 year
- Financial planning data: 7 years (tax purposes)
- Communication logs: 2 years
- Analytics data: 3 years
7. Your Privacy Rights
7.1 Access and Portability
You can:
- Access your personal data
- Download your data in common formats
- Receive a copy of all data we hold
7.2 Correction and Update
You can:
- Update account information
- Correct inaccurate data
- Add additional information
7.3 Deletion
You can:
- Delete specific data points
- Request account deletion
- Request data anonymization
7.4 Restriction and Objection
You can:
- Restrict processing of your data
- Object to certain uses
- Opt-out of marketing
7.5 How to Exercise Rights
- Through account settings
- Email: privacy@truemetrics.org
- Response within 30 days
8. Children's Privacy
- Service not intended for children under 18
- We do not knowingly collect children's data
- Parents may contact us to remove data
9. International Data Transfers
9.1 Data Location
- Primary servers in the United States
- May process data globally
- Appropriate safeguards in place
9.2 EU-US Data Transfers
- Standard Contractual Clauses
- Appropriate technical measures
- User consent where required
10. California Privacy Rights (CCPA)
California residents have additional rights:
- Right to know categories of data collected
- Right to know sources of data
- Right to know business purposes
- Right to non-discrimination
- Right to opt-out of sale (we don't sell data)
11. European Privacy Rights (GDPR)
EU residents have additional rights:
- Legal basis for processing
- Right to lodge complaints with supervisory authorities
- Right to withdraw consent
- Right to data portability
- Special category data protections
12. Marketing and Communications
12.1 Marketing Emails
- Only with explicit consent
- Clear unsubscribe option
- Preference management available
12.2 Service Communications
- Account notifications
- Security alerts
- Feature updates
- Cannot be opted out (essential)
13. Cookies and Tracking
13.1 Types of Cookies
- Essential cookies (required)
- Functional cookies (preferences)
- Analytics cookies (with consent)
- Marketing cookies (with consent)
13.2 Managing Cookies
- Browser settings
- Cookie consent banner
- See Cookie Policy
14. Third-Party Services
14.1 API Providers
- USDA FoodData Central
- Open Food Facts
- Spoonacular
- Financial data providers
14.2 Analytics
- Google Analytics (anonymized)
- Internal analytics
- No cross-site tracking
14.3 Social Media
- Optional social sharing
- No automatic data sharing
- Governed by platform policies
15. Data Protection Officer
Contact our DPO:
- Email: privacy@truemetrics.org
- Mail: [Company Address]
- Response time: 30 days
16. Changes to Privacy Policy
- Users notified of material changes
- 30-day notice for significant changes
- Continued use constitutes acceptance
- Previous versions archived
17. Contact Information
Privacy Inquiries:
Email: privacy@truemetrics.org
Data Protection Officer:
Email: dpo@truemetrics.org
Mailing Address:
TrueMetrics Privacy Team
[Company Address]
EU Representative:
[If applicable]
Supervisory Authority:
You may lodge complaints with your local data protection authority.
Your Privacy Matters
We are committed to protecting your privacy and giving you control over your personal information. If you have any questions or concerns about our privacy practices, please contact us.