In one paragraph
Your pantry, your recipes, your shopping history, your meal plan, your photos and everything the app learns about how you measure are stored in your own browser and are never sent to us. If you create an account so you can publish a recipe, we hold your email address and nothing else. If you choose to share a price, we record what the item cost, where and when — never who you are.
Who we are
Custom Software Developments, ABN 36 193 660 694, Brisbane, Queensland, Australia. We are the entity responsible for this tool. You can reach us through the contact form on our main site.
This policy is written to meet our obligations under the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
What stays on your device
All of the following is held in your browser's local storage. It is not transmitted to us, we cannot see it, and we could not produce it if asked.
- Your pantry and stock levels
- Your usage and purchase history
- Your meal plan and container inventory
- Photos you add of items, recipes and containers
- Receipt photographs
- Your learned measurement factors — how big your pinches and spoonfuls actually are
- Your precise location, if you allow it, used only to measure distance to shops
- Your settings
Because it is held locally, clearing your browser's site data deletes it permanently and we cannot restore it. There is an export function in Settings if you want a backup.
What we collect, and why
If you create an account
We collect your email address, so we can send you a sign-in link and so you can be identified as the owner of anything you publish. You may optionally set a display name, which appears next to recipes you publish. That is the entire list. We do not ask for a password, a real name, a phone number or an address.
Your email address is never shown to other users and is never returned by our API. Recipes you publish are credited to your display name, or simply to "a member".
If you share a price
We record the item, the store, the price, the size, the date you observed it, and the first part of your postcode area. We do not record who you are. A random identifier generated by your browser is stored as a one-way hash so we can apply rate limits and remove abuse — it is never displayed publicly and cannot be linked back to you by anyone reading the data.
We deliberately do not publish that identifier. A persistent public identifier would let anyone reconstruct one contributor's shopping across stores and suburbs, which would be worse for your privacy, not better.
If you scan a receipt
When you use the smart scan, the photograph is sent to our scanning service, read, and immediately discarded. It is never written to a database or file store. If you use the local scan instead, the image never leaves your device at all.
Receipts often show the last four digits of a payment card and a loyalty number. That is why they are not stored on our side, and why they are also excluded from the backup file the export function produces.
Analytics
This site uses Google Analytics and Google Ads tags, as the rest of our website does. These set cookies and collect standard web analytics. They are not connected to your pantry data, which we never see.
Location
If you ask the app to compare nearby shops, your browser will request permission to share your location. Your precise coordinates are stored on your device only and are used to calculate distances.
When you contribute a price, only your postcode is attached. Nothing more precise is ever transmitted.
Who we share it with
We do not sell your information and we do not share it for marketing. We use a small number of service providers to run the tool:
- Cloudflare — hosting, database, and the receipt-scanning model
- Resend — sending sign-in emails
- Google — analytics and advertising tags
- EmailJS — delivering the feedback form
Some of these process data outside Australia. By using the tool you accept that your email address may be handled overseas by those providers.
Prices contributed by users are published
Price observations become part of a shared, openly licensed dataset so that other people can find cheaper shops. That dataset is published under the Open Database License and can be downloaded by anyone — see the data and licence page.
The published dataset contains no email addresses, no account identifiers, no device identifiers and no precise coordinates.
Getting your data, or getting rid of it
You can delete your account at any time from the Settings page in the app. When you do:
- Your account record, including your email address, is deleted outright — not marked inactive
- All your sessions and any outstanding sign-in links are destroyed
- You choose whether recipes you published are deleted, or kept with your name removed
- Prices you contributed remain in the shared dataset, with the link to you severed
You may also ask us for a copy of the personal information we hold about you, or ask us to correct it. Since that amounts to an email address and possibly a display name, this is usually a short conversation. Contact us through the form on our main site.
If you are unhappy with how we have handled your information, you can complain to us first, and then to the Office of the Australian Information Commissioner at oaic.gov.au.
Security
Sign-in links are stored only as one-way hashes, expire after 15 minutes, and work once. Session identifiers are also stored hashed. Your session cookie is marked HttpOnly, Secure and SameSite=Lax, so it cannot be read by scripts or sent from another site.
If a data breach occurred that was likely to cause you serious harm, we would notify you and the Information Commissioner as required by the Notifiable Data Breaches scheme. The only personal information we hold is an email address, which keeps that exposure deliberately small.
Changes
If we change this policy in a way that materially affects you, we will say so in the app rather than quietly updating this page.
Last updated: 5 August 2026.