This document covers two things: how WhatsCook.ing handles your data, and the terms you agree to by using the app. It is written to be read, not to be survived. If anything here is unclear, write to support@whatscook.ing and we will explain it.
We collect what the product needs to work and nothing beyond it. Your questionnaire answers and food logs exist to compute your plan and your BioAge. Your pantry photos are analysed to identify ingredients.
| Category | What it includes |
|---|---|
| Account | Email address, and a display name if you give one. If you sign in with Apple or Google, we receive the identifier and email that service returns. We never see your password for those services. |
| Questionnaire | Sex, age, height, weight, activity level, goals, diet type, allergies and dietary needs, cuisines, appliances, household size and the meals you eat. |
| Biomarkers | Fasting glucose, HbA1c, ApoB and LDL cholesterol, only if you choose to enter them. They are used to adjust your BioAge and to steer the food we suggest. |
| Food and activity logs | Meals you mark as eaten, drinks and snacks you add, photos of meals you choose to log, and supplements or routines you track. |
| Pantry | Photographs of your shelves that you upload, and the ingredient list and quantities derived from them or typed by you. |
| Health measurements | Body weight and the rest of your body metrics, as you type them into the app. This version does not read anything from Apple Health. See section 04. |
| Subscription | Your membership status and entitlement, received from Apple and RevenueCat. We never receive or store your card details. |
| Technical | Device type, app version and crash reports, sent to Sentry with your email address, username and IP address removed and health fields such as weight and biomarkers stripped out. We also record a handful of milestone dates against your account, such as when you finished the questionnaire, so we can see where the product loses people. |
We do not collect precise location. If you set a city for seasonal produce suggestions, that is a city name you typed, not a device location.
Your questionnaire answers, body metrics, any biomarkers you entered, your pantry and your plan history are sent to Anthropic to write a week that fits your diet, your targets and the food you already own.
Logged meals are matched against a nutrition database to compute your four pillar scores and your BioAge, and to identify nutrients you are consistently short on.
Pantry and meal photographs are sent to Google Gemini to identify ingredients and quantities. Gemini also draws the recipe pictures you see in your plan. Your photographs are stored so re-analysis does not need you to photograph the same shelf twice, and they are deleted with your account.
Crash reports and error logs help us find faults. Aggregate, non-identifying counts tell us which parts of the product are used.
We do not use your data to train third-party foundation models. Content sent to our AI providers is processed to return your result and is not used by them to train their models under the enterprise terms we operate on.
This version of the app does not connect to Apple Health. It reads nothing from it, writes nothing to it, and never asks you for Health permission. Every body measurement we hold is one you typed into the app yourself.
If a future version offers an Apple Health connection, this is the commitment we are making now.
Your questionnaire answers, biomarkers and food logs are health-related information too, and carry the same restrictions on advertising, sale and retention. The one difference is that the plan you asked for cannot be written without sending them to the meal generation provider named in section 06.
If you are in the United Kingdom or the European Economic Area, we rely on the following bases under the UK GDPR and EU GDPR.
| Purpose | Basis |
|---|---|
| Providing the app you signed up for | Performance of a contract |
| Processing health-related information | Your explicit consent, which you may withdraw at any time |
| Security, fraud prevention and debugging | Our legitimate interests in operating a working, secure service |
| Meeting tax and accounting obligations | Legal obligation |
Our providers process data in the United States. Where data is transferred out of the United Kingdom or the European Economic Area, that transfer is covered by Standard Contractual Clauses or an equivalent approved safeguard in our agreements with those providers.
Wherever you live, you can do the following.
If you are in the EEA or UK you may also complain to your local data protection authority. If you are a California resident, you have the rights to know, delete, correct and to opt out of sale or sharing. We do not sell or share personal information as those terms are defined under the CCPA, so there is nothing to opt out of, and we will never discriminate against you for exercising a right.
To exercise any of these, email support@whatscook.ing. We respond within 30 days.
Data is encrypted in transit and at rest by our infrastructure providers. Access to production data is limited to those who need it to operate the service. Database rules restrict every document to its owner, and server-side checks never trust values a client could have written.
No system is perfectly secure. If a breach affects your personal data, we will notify you and the relevant regulator as required by law.
WhatsCook.ing is not intended for anyone under 16, and we do not knowingly collect data from children. If you believe a child has given us data, write to support@whatscook.ing and we will delete it.
If we change this policy we will update the date at the top. If a change materially affects how we handle your data, we will tell you in the app or by email before it takes effect.
By creating an account you agree to these terms.
WhatsCook.ing provides general nutrition information and is not a medical device and not medical advice. BioAge is a score computed from what you log; it is a motivational and directional measure, not a clinical assessment of your biological age or health status.
Do not use the app to diagnose or treat any condition. Speak to a qualified professional before making significant dietary changes, and especially if you are pregnant or breastfeeding, are managing diabetes, kidney disease, an eating disorder or any other medical condition, or are giving food to a child. Always check ingredients yourself if you have an allergy. Recipes are generated automatically and you remain responsible for what you cook and eat.
Use the app for your own personal, non-commercial use. Do not attempt to break, overload or reverse engineer it, do not resell or redistribute generated plans as your own product, and do not upload content you have no right to upload.
Your photographs, logs and pantry remain yours. You grant us only the permission needed to store and process them in order to run the service for you. We may use aggregated, de-identified information that cannot be traced back to you to improve the product.
We work to keep the service running but do not guarantee it will be uninterrupted or error free, and plans depend on third-party AI services that can fail. To the fullest extent permitted by law, the service is provided as is, and our total liability to you is limited to the amount you paid us in the twelve months before the claim. Nothing here limits liability that cannot be limited by law, including for death or personal injury caused by negligence.
You can stop at any time by cancelling and deleting your account. We may suspend or end an account that breaches these terms, and will tell you why unless the law prevents it.
These terms are governed by the laws of India, and the courts of India have exclusive jurisdiction, except that consumers keep any rights they have to bring proceedings in their own country of residence.
For anything at all, including privacy requests, data access and account deletion, write to support@whatscook.ing. It is the only address we use, and it reaches a person.