Privacy Policy

Last updated: January 1, 2024

At EZTrack, we believe in complete transparency about how we collect, use, and protect your data. This policy explains our practices in plain language.

1. Information We Collect

Account Information

When you create an EZTrack account, we collect the following information that you provide directly:

  • Email address for account authentication and communication
  • Username for account identification
  • Password (stored using industry-standard encryption via ASP.NET Identity)

Nutrition Tracking Data

To provide our core service, we collect and store your meal information including:

  • Meal names and descriptions you enter
  • Nutritional data (calories, macronutrients, fiber) for logged meals
  • Timestamps of when meals are logged
  • Food database references (FDC IDs) when applicable

Usage Information

We automatically collect certain information about your interaction with our service:

  • Authentication tokens for maintaining your login session
  • Feedback and support messages you submit
  • Basic analytics data (page views, feature usage) for service improvement

2. How We Use Your Information

Primary Uses

We use your information exclusively to provide and improve the EZTrack service:

  • Process and store your meal logging data to track your nutrition
  • Calculate daily, weekly, and monthly nutritional summaries
  • Provide personalized insights and recommendations based on your tracking patterns
  • Maintain your account security and prevent unauthorized access
  • Respond to your support requests and feedback

AI Processing

When you use our natural language food logging feature, your meal descriptions are processed by third-party AI services (OpenAI) to extract nutritional information. These services process your data according to their own privacy policies, but we ensure that no personally identifiable information beyond the meal description itself is shared with these services.

3. Information Sharing

Our Commitment

We do not sell, rent, or trade your personal information to third parties for their marketing purposes. Your nutrition data is yours alone.

Limited Sharing Scenarios

We may share your information only in these specific circumstances:

  • Service Providers: With trusted third-party services that help us operate EZTrack (e.g., cloud hosting providers, AI services for food recognition)
  • Legal Requirements: When required by law, court order, or government request
  • Safety: To protect the rights, property, or safety of EZTrack, our users, or others
  • Aggregated Data: We may share anonymized, aggregated data that cannot identify you personally for research or analysis

4. Data Security

We implement industry-standard security measures to protect your information from unauthorized access, alteration, disclosure, or destruction.

Security Measures Include

  • Encryption of data in transit using HTTPS/TLS
  • Secure password storage using ASP.NET Identity with bcrypt hashing
  • Regular security audits and updates
  • Access controls limiting data access to authorized personnel only
  • Secure cloud infrastructure with regular backups

While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but commit to promptly notifying you of any data breaches that may affect your account.

5. Your Rights

You have complete control over your personal information and can exercise the following rights at any time:

Access & Export

Request a complete copy of all data we have stored about you, delivered in a machine-readable format (JSON/CSV).

Correction

Update or correct any inaccurate information in your account through your profile settings or by contacting support.

Deletion

Request complete deletion of your account and all associated data. This action is permanent and cannot be undone.

Portability

Receive your data in a format that allows you to transfer it to another service provider.

How to Exercise Your Rights

To exercise any of these rights, you can:

  • 1. Use the self-service options in your account settings
  • 2. Email us at privacy@eztrack.app
  • 3. Submit a request through our support portal

We will respond to your request within 30 days.

6. Cookies and Tracking

EZTrack uses minimal cookies and similar technologies to provide and improve our service.

Essential Cookies

These cookies are necessary for the website to function properly:

  • Authentication Cookies: Keep you logged in during your session
  • Security Cookies: Protect against CSRF attacks and ensure secure communication
  • Preference Cookies: Remember your settings and preferences

Analytics

We use privacy-focused analytics to understand how users interact with our service. This data is aggregated and does not identify individual users. You can opt out of analytics tracking in your account settings.

Note: We do not use third-party advertising cookies or tracking pixels. We do not participate in behavioral advertising networks.

7. Children's Privacy

EZTrack is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13 years of age.

If you are a parent or guardian and believe your child has provided us with personal information without your consent, please contact us immediately at privacy@eztrack.app. We will take steps to remove such information from our systems.

For Teenagers (13-17): We recommend parental guidance when using nutrition tracking apps. Parents should discuss healthy relationships with food and body image with their teenagers.

8. Data Retention

We retain your information only as long as necessary to provide our services and fulfill the purposes outlined in this privacy policy.

Retention Periods

  • Active Accounts: Your data is retained as long as your account remains active
  • Inactive Accounts: Accounts inactive for 2 years may be deleted after notification
  • Deleted Accounts: Data is permanently removed within 30 days of account deletion
  • Backups: Deleted data may persist in backups for up to 90 days

9. International Data Transfers

EZTrack operates globally and may process your information in countries other than your country of residence. These countries may have different data protection laws than your jurisdiction.

By using EZTrack, you consent to the transfer of your information to facilities located in the United States and other countries where we or our service providers operate. We ensure appropriate safeguards are in place to protect your information in accordance with this privacy policy.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons.

Notification of Changes

When we make material changes to this policy, we will:

  • Update the "Last updated" date at the top of this policy
  • Send an email notification to active users
  • Display a prominent notice in the app for 30 days

Your continued use of EZTrack after changes to this policy constitutes acceptance of the updated terms.

11. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Response Time: Within 2 business days

Data Protection Officer: For privacy-specific inquiries, you may also contact our Data Protection Officer directly at dpo@eztrack.app

12. Regional Privacy Rights

European Union (GDPR)

If you are located in the European Union, you have additional rights under the General Data Protection Regulation (GDPR), including:

  • • The right to object to processing
  • • The right to restrict processing
  • • The right to lodge a complaint with your local supervisory authority

California (CCPA)

California residents have specific rights under the California Consumer Privacy Act (CCPA), including:

  • • The right to know what personal information is collected
  • • The right to opt-out of the sale of personal information (Note: We do not sell personal information)
  • • The right to non-discrimination for exercising privacy rights