Privacy Policy — Mediterranean Family
Version: 1 · Effective: 2026-09-23 (draft; to be reviewed by a lawyer before public launch)
Controller: Astris Project LLC, Colorado, USA ("we", "us"), which operates Mediterranean Family, an Astris project owned by Daniel Anthony Bissey (FatStinkyPanda) · Contact: hello@bedrockignite.com
We collect what the service needs to plan safe meals for your family, and nothing to sell. We do not sell your personal information, we do not share it for advertising, and there are no advertising or tracking cookies.
1. What we collect
- Account: your email address, a password stored only as a one-way scrypt hash, and when you agreed to our terms.
- Your household: the names you give family members, their diets, portion sizes, which meals they eat, and their allergies, intolerances, foods they won't eat, likes, dislikes, carb ranges, nutrient targets and health goals; your plans, meal requests, pantry, grocery lists and prep guides; recipes and photos you add.
- Store connection (optional): if you connect a grocery store, the access tokens that store gives us (kept encrypted) and the store you chose.
- Payments: your subscription status and plan. Stripe (and Google Play on Android) handles your card; we never receive your full card number.
- Security records: sign-in sessions (stored as one-way hashes), the time and rough device description of each, and short-lived records used to limit repeated sign-in attempts.
- Trial fingerprint: a one-way, keyed fingerprint of your email address, kept even after you delete your account, only so one person cannot take the free trial again and again. It cannot be turned back into your address.
2. Health information
Allergies, intolerances, diets and health goals are consumer health data under some laws. We collect them only because you enter them to get safe meal plans, we use them only for that, and we never sell or share them for advertising. By entering them you consent to that use. You can change or delete them at any time.
3. Children
Accounts are for people 13 and over. A parent or guardian may add a child as a household member (for example their name, allergies and portion size) so the family's meals are safe for them. We do not knowingly collect information directly from a child under 13. A parent can view, change or delete their child's information at any time; if you believe a child has created an account, contact us and we will delete it.
4. How we use it
To run the service: plan meals that are safe for everyone at the table, build grocery lists and prep guides, add items to your store cart when you ask, keep your account secure, send the emails the service needs (verification, password reset, invitations, trial and billing notices), process your subscription, and follow the law. We do not use your information to train artificial-intelligence models for anyone else.
5. Who we share it with
Only the service providers that run the service for us, only what each needs, under their own privacy terms:
- Cloudflare — hosting and storage;
- Google Workspace — sending our emails;
- Stripe (and Google Play) — payments;
- your grocery store (for example Kroger-family stores) — only if you connect it, and only the items you add to your cart;
- the people you invite to your household, and — only for recipes, photos or comments you choose to make public — other users.
We may also disclose information if the law requires it, to protect people's safety, or as part of a transfer of the service, which would remain bound by this policy.
6. How long we keep it
As long as your account and household exist. When you delete a household, its information is deleted from our live systems at once; when you delete your account, your sign-in information is deleted and any family member you claimed stays in the household for the other members (so their safety information is not lost). Security and audit records keep only account ids, not email addresses. The trial fingerprint is kept as described above.
7. Your rights
Wherever you live, you can: see the information we hold about you and your household, export it,
correct it, and delete it — most of this directly in the app, or by writing to us. You can withdraw your consent to health-information use by deleting that information. We will not treat you differently for using these rights. If a law where you live gives you further rights, we honour them; contact us.
8. Security
Passwords are hashed with scrypt; sessions and email links are 256-bit random tokens stored only as BLAKE3 hashes; every family's data is kept in its own separate database; connections are encrypted; store tokens are encrypted at rest. No system is perfectly secure, and we will tell you promptly if a breach affects you.
9. Changes and contact
We will tell you about material changes in the app or by email before they take effect. The version and effective date are at the top. Questions, requests or complaints: hello@bedrockignite.com.