On this page

  1. Scope
  2. Data in the app
  3. On-device storage
  4. AI processing
  5. Nutrition quality records
  6. Coach context and consent
  7. Apple HealthKit
  8. Location
  9. Support, diagnostics, and subscriptions
  10. Retention and deletion
  11. Third-party services
  12. Security and data use
  13. Your choices
  14. Children's privacy
  15. Changes
  16. Contact

1. Scope

Calo. is developed and operated by Mini Labs FZ-LLC ("Calo", "we", "our", or "us"). This policy explains how the Calo. iOS app and its supporting services handle information. The current app requires iOS 18 or later.

2. Data in the App

You can provide or create the following information in Calo.:

Calo stores the app records listed above in a SwiftData store on your device.

3. On-Device Storage

Your profile, food logs, nutrition targets, goals, preferences, allergies, habits, recipes, meal plans, coach history, health profile, body information, weight history, HealthKit-derived records, check-ins, medication details, and progress photos remain stored on your device. An image attached to a saved food log also remains on your device.

Export before uninstalling. Removing Calo from your iPhone removes its on-device records. You can export a copy of local health data from Calo Settings first.

4. AI Processing

Calo routes AI requests through a Calo server hosted on Vercel and then to the Google Gemini API. AI-powered features include photo and text food analysis, voice transcription, meal suggestions, meal plans, and the Calo Coach.

Our proxy does not intentionally retain the raw request photo or audio file after it completes the request. Google processes prompts, files, and responses under the Gemini API terms, which describe Google's own retention practices. Raw food photos and voice recordings are not written to Supabase. An image attached to a saved food log remains on your device, as described in Section 3.

5. Nutrition Quality Records

To evaluate and improve nutrition estimates, Calo can store server-side food observations and food corrections in private Supabase tables:

These quality records do not include your raw food photo, raw voice recording, name, email address, RevenueCat account identifier, medication details, symptom check-ins, body weight, or HealthKit data. The app does not contain a Supabase client key. Only the server can write or read these tables, and database permissions deny app clients direct access.

Food observations and corrections do not currently have a fixed automatic expiry. We retain them for nutrition-quality analysis until they are no longer needed, removed through maintenance, or deleted in response to an applicable request.

6. Coach Context and Consent

Every Coach request can include the question you enter, today's meal names and macros, daily totals and targets, recent logging summaries, streak information, food preferences, dietary restrictions, selected activities, and weekly workout frequency.

Only after you consent, Calo can also send a medication-mode flag and a general wellness summary derived on your device from check-ins. This helps the Coach adjust food suggestions. If you decline or revoke consent, Calo removes those two fields before it builds the request.

Raw health details stay on the device. Coach requests do not include:

You can change Coach wellness consent in Calo Settings.

7. Apple HealthKit

If you enable Apple Health, Calo requests read-only access to steps, active calories, workouts, and body weight. It uses this information to show activity and weight context alongside your nutrition. Calo does not write nutrition or other data to Apple Health.

HealthKit boundary.

8. Location

Calo asks for location access only when you tap Find Nearby for a meal. Calo passes your current location and a restaurant search query to Apple Maps to return nearby places. We do not store your location in Calo or our server databases. You can deny or revoke location access in iPhone Settings and continue using the rest of the app.

9. Support, Diagnostics, and Subscriptions

10. Retention and Deletion

Deleting your account

The fastest way to delete your account and linked Calo service records is in the app: Settings → Account → Delete Account. This deletes device-linked server records, including nutrition-quality observations, corrections, rate limits, and subscription lookups; deletes your verified identity from our subscription-management provider; disconnects Sign in with Apple; and then erases app data stored on your iPhone. Support correspondence, runtime logs, provider diagnostics, or pseudonymous analytics may remain under the retention terms above. Account deletion does not cancel an active App Store subscription. Manage the subscription in your Apple account settings.

If you no longer have access to the app, email support@caloapp.co and we will delete your server-side records for you. We may need information that lets us locate the relevant record and verify the request. You can also use that address to request access to your server-side records.

11. Third-Party Services

12. Security and Data Use

Calo sends network requests over HTTPS/TLS. Server-side nutrition tables use row-level security and restricted service credentials, and the iOS app has no direct database credential. Requests use signed headers, nonces, and rate limits to reduce abuse.

We do not sell personal data, use personal data for advertising, share HealthKit data with advertisers, or track you across other companies' apps and websites for advertising.

13. Your Choices

You can review and edit app records, export local health data, delete your account and all data in Settings (see Section 10), decline or revoke Coach wellness context, revoke HealthKit and location permissions in iPhone Settings, and manage subscriptions in your Apple account. You can also contact us about access, correction, or deletion rights that apply where you live.

14. Children's Privacy

Calo. is not directed to children under 13. We do not knowingly collect personal information from children under 13. Contact us if you believe a child provided personal information.

15. Changes to This Policy

We may update this Privacy Policy. We will notify you of significant changes through the app.

16. Contact Us

Email: support@caloapp.co
Developer: Mini Labs FZ-LLC
Location: Dubai, UAE