Merlin's Pantry

Privacy Policy — Merlin's Pantry

Effective date: 8/1/2026

Merlin's Pantry ("the app", "we", "us") is operated by Gerald Tilghman. This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have. By creating an account or using the app, you agree to this policy.


1. A quick summary


2. Information we collect

a. Account information. When you sign up we collect your email address. If you create a password account, we also collect a password; authentication is handled by our backend provider (Supabase), which stores your password in hashed form — it is never visible to us.

If you instead choose Sign in with Apple or Sign in with Google, that provider verifies your identity and returns a signed token plus your email address (and, on first sign‑in, your name) to our authentication provider (Supabase) to create or sign you into your account. We receive only what's needed to identify your account; we do not receive your Apple or Google password. If you use Apple's "Hide My Email," we receive only the anonymized relay address Apple provides. Your use of these sign‑in options is also governed by Apple's and Google's own privacy policies.

b. Content you create.

c. Your pantry list. The ingredients you enter stay in local storage on your device. We do not upload or store your pantry list on our servers.

d. Information collected automatically. To deliver the app and provide support we (or our infrastructure providers) process standard technical data such as device type/model, operating‑system version, app version, and IP address. If you use the in‑app "Send feedback" button, your email app is opened with your app version, platform, OS version, and device model pre‑filled so you can include them — nothing is sent unless you send the email.

To protect the app's free, no‑account features (such as recipe and cocktail search) from abuse, when you use them without signing in we enforce per‑user daily usage limits keyed to a one‑way (SHA‑256) hash of your IP address. We store only that irreversible hash and a usage counter — never your raw IP address — and it is not linked to your identity or to any account. This is used solely for rate‑limiting and is never used for advertising or tracking.

e. Photos you scan (optional). If you use "Snap a recipe," you choose a photo (from your camera or photo library, with your permission) of a recipe. That image is sent to our AI provider (Google Gemini) to read the recipe into text. We do not store the photo — it is used only for that single request and then discarded. Only the extracted text (title, ingredients, steps) is kept, as a personal recipe you review and save. We never access your camera or photo library unless you tap this feature.

f. Product/usage analytics (first‑party). To understand how the app is used and improve it, we record basic in‑app events — such as opening the app, completing a recipe search, saving a recipe, or reaching the free‑tier save limit — together with non‑sensitive details like the chosen category or a count of results. These events are tied to your account and stored in our own backend (Supabase). We do not record the specific ingredients you type, recipe contents, photos, or any free text, and these events are never sold or shared for advertising.

g. What we do not collect. We do not integrate advertising SDKs, third‑party analytics services, or cross‑app tracking tools — the usage analytics in (f) are first‑party and stay in our own backend. Apart from the optional "Snap a recipe" photo above, the app does not request access to your microphone, location, contacts, or health data.


3. How we use your information

We use the information above to:

We do not sell your personal information, and we do not use it for advertising or cross‑app tracking.


4. How your information is shared

We share data only with service providers that help us run the app, and only to the extent needed. We do not sell data to anyone.

API keys for these providers are held on our server, so the providers do not receive your account credentials.

We may also disclose information if required by law, to protect our rights or users' safety, or in connection with a business transfer.


5. AI‑generated recipes — important notice

Recipes generated by the app, or read from a photo you scan (via Google Gemini / Groq), are general information, not medical, dietary, or nutritional advice. AI output — including text read from a photo — can be inaccurate or incomplete, so scanned recipes are always shown for you to review and correct before saving. Always verify ingredients and check for allergens yourself before cooking or eating. We are not responsible for the accuracy of AI‑generated content.


6. Data retention

We retain your account and content for as long as your account is active. When you delete your account (see below), your account and the data associated with it are removed from our systems. Your on‑device data (pantry list, local copies) is removed when you delete the app or clear its data. Backups and provider logs may persist for a limited period as part of routine operations.


7. Your rights and choices

To exercise any of these rights, contact [email protected].


8. Children's privacy

Merlin's Pantry is not directed to children under 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect personal information from them. If you believe a child has provided us information, contact us and we will delete it.


9. Security

We use industry‑standard measures to protect your data, including encryption in transit (HTTPS) and database access controls that restrict each user's data to that user (row‑level security). Passwords are hashed by our authentication provider. No method of transmission or storage is 100% secure, but we work to protect your information.


10. International users

The app is operated from, and stores data in, the United States. If you use the app from outside the U.S., your information will be transferred to and processed in the U.S. and other countries where our service providers operate.


11. Changes to this policy

We may update this policy from time to time. We will post the updated version with a new effective date and, where appropriate, notify you in the app. Continued use after an update means you accept the revised policy.


12. Contact

Questions about this policy or your data: [email protected], operated by Gerald Tilghman.