Controller and contact
Mealiva is operated by Burak Anı in Türkiye. Privacy questions and rights requests can be sent to contact@burakani.dev.
Information you provide
Mealiva asks only for meal preferences: cuisines, cooking-time range, optional food budget, meal style, disliked foods, and ingredients you want left out. No account, name, phone number, postal address, or body measurements are requested.
What stays on your iPhone
Your preferences and generated plan are stored locally on your iPhone with file protection and are excluded from device backup by the app. You can remove them in Settings. Deleting the app also removes its local data, subject to Apple’s device behavior.
Plan generation
Only when you request a plan, the relevant preferences and selected language are sent over an encrypted connection to Mealiva’s service on Google Cloud Run. Google Gemini processes them to create the plan. Mealiva does not store the preference payload or generated plan after the request finishes and does not write either into application logs.
Paid Gemini service
Mealiva uses Gemini as a paid service. Under Google’s applicable paid-service terms, prompts and responses are not used to train or improve Google’s models. Google may retain limited abuse-monitoring and operational records under its terms; zero-data-retention is not currently enabled for Mealiva’s project.
Subscription and plan-generation records
RevenueCat manages subscription access and purchase restoration. Firestore stores only a one-way hash derived from the anonymous RevenueCat identifier, the last successful generation time, successful-generation timestamps needed to enforce the rolling seven-day allowance, and a short-lived generation lock.
Aggregate product events
Mealiva records only allowlisted funnel event names as daily aggregate counts covering intro and preference-step progress, paywall interaction, subscription starts, and plan generation. No user identifier, preference value, or raw IP address is stored with these counters.
Service protection
App Check tokens, short-lived in-memory rate limits, and operational logs help protect the service. IP addresses may be processed briefly by Google Cloud and in memory for request limiting, but Mealiva does not persist raw IP addresses in its database.
Providers
The service uses Apple for App Store purchases, RevenueCat for subscription management, Google Cloud Run and Firestore for hosting and service state, and Google Gemini for plan generation. Mealiva does not sell personal information, use advertising SDKs, or track you across other companies’ apps or websites.
Legal bases and international processing
Processing needed to generate a requested plan and deliver a subscription is based on your request and the service contract. Security, subscription verification, abuse prevention, and aggregate measurement rely on legitimate interests in operating the service. Providers may process information in other countries using their applicable data-processing terms and transfer safeguards, including Standard Contractual Clauses where required.
Retention and deletion
Local preferences and plans remain until you remove them or delete the app. Successful-generation timestamps older than seven days no longer count toward the allowance and are pruned when the record is next updated. The hashed plan-generation record remains while needed to coordinate requests, operate the service, and resolve service issues. RevenueCat and Apple retain purchase records under their terms. To request deletion of a server-side record, email us and include the anonymous support ID shown in Settings.
Your choices and rights
You can avoid sending preferences, edit them before generation, delete local data, and manage subscriptions in your Apple Account. Depending on your location, you may request access, correction, deletion, restriction, portability, or object to processing, and complain to your local data-protection authority. Because Mealiva has no account and keeps only a one-way subscriber hash, the anonymous support ID may be needed to locate a record.
Changes
This policy may change when Mealiva or its providers change. The effective date is July 19, 2026. Questions can be sent to contact@burakani.dev.