Updated 1 September 2026
Privacy policy
Tasteful is an iPhone meal-planning app operated by Tasteful. This policy covers the waitlist at tasteful.miami and the Tasteful iPhone app. Questions: [email protected].
What we collect
When you join the waitlist we store the email you submit. If you verify a phone number we store that number and the verification result. Cloudflare Turnstile runs on the waitlist form. Sign in with Apple on the waitlist stores an Apple subject so we can resume your place.
When you create an app account we store your email or Sign in with Apple / Google identity, display name, a ZIP and its derived approximate area when you enter one, or precise coordinates and a reverse-geocoded address when you use device location. If you connect Discord, we store your Discord account identifier, display name, avatar reference, and connection date. We also store dietary preferences and calorie target, pantry inventory, meal plans, family membership, saved recipes, ratings, grocery budget and price limits, household size, cook-time limits, and device tokens for optional notifications.
If you scan a pantry, Tasteful sends pantry photos to our API so we can identify foods. If you import a cooking video, Tasteful sends the video URL and extracted transcript through our recipe-import services. Chat and recipe-generation requests send the text you type, plus relevant pantry, preference, and plan context.
Those AI features ask first. In the iPhone app, pantry scan, Cooking with AI, and Video to recipe show Share data with Tasteful AI before anything leaves the phone. Allow AI sharing lets the request continue. Not now leaves the rest of the app usable. You can change this later in Profile under AI data sharing.
How we use it
We use this data to authenticate accounts, build and personalize meal plans, keep pantry inventory, compare grocery costs, run family planning, send optional push notifications, and operate the waitlist. Tasteful does not sell personal data, use it for third-party advertising, combine it with other companies' data for targeted advertising or advertising measurement, or share it with data brokers. Packaged SDK and provider practices are reviewed separately for the App Store privacy label.
Processors
- Our production API at prod-api.tasteful.miami, hosted in the United States.
- Cloudflare for the website, waitlist, Turnstile, and the edge proxy in front of the iPhone app API.
- SendGrid to send account and waitlist email from [email protected].
- Twilio for waitlist phone verification.
- Apple and Google for sign-in.
- Discord for optional account linking. Tasteful requests only the Discord identify scope and does not request your Discord email.
- Google Geocoding to turn a ZIP or precise coordinates into an address used for grocery-price personalization.
- Object storage for profile images and imported media.
- StreamClash AI Gateway, Tasteful's internal router for pantry identification, video-recipe extraction, chat, and recipe generation.
- OpenAI / ChatGPT, Anthropic / Claude, and xAI / Grok, reached through StreamClash. Current production chat and recipe generation use OpenAI. Claude and Grok are available on the same gateway.
SDK declarations and searches
Google Sign-In's packaged privacy manifest declares name, email address, phone number, coarse location, user ID, device ID, other usage data, and other data types as linked and not used for tracking. Tasteful requests only the email and profile Google scopes.
Tasteful does not create an in-app Search History record or use meal and cookbook search terms for analytics. The API uses those terms to return the requested results. Cloudflare receives the query-bearing request URL at the edge, and we have not verified that it discards that URL within Apple's real-time request window. Tasteful's draft App Store privacy label therefore conservatively includes Search History. If that practice changes, we will update this policy and the label before release.
Retention and deletion
The in-app deletion control is not enabled yet. To request account deletion now, email [email protected] from the address on your account. We will verify account ownership before acting on the request. Waitlist entries can be removed through the same address.
When the in-app control is enabled, it will appear at Profile > Account access > Delete account. Confirming there will deactivate the account immediately. Permanent deletion will begin seven days later, 604800 seconds after confirmation. Signing in before that deadline will present Reactivate account. After the deadline, pantry data, meal plans, private recipes, profile data, preferences, local family membership, and other account data will not be recoverable. Shared family data will remain for remaining members, and family ownership may transfer. The same email or sign-in identity may later create a new empty account with a new user ID. Old data will never be restored.
When purge completes, Tasteful will revoke Sign in with Apple tokens, delete owned object-storage prefixes, Redis keys, and video-import jobs, then send a completion email.
Full deletion instructions: Delete your account.
Location, camera, photos, and notifications
Location is optional and can be replaced with a ZIP code. Camera and photo library access are requested only when you start a pantry scan or choose a profile photo. Notifications are optional.
Children
Tasteful is not directed at children under 13. We do not knowingly create accounts for children under 13.