Privacy Policy - Massalha FZCO

Last updated: 22/2/2026

This Privacy Policy describes how Massalha FZCO ("we", "us", or "our") collects, uses, and protects your information when you use the So3ratAI (سعراتي) mobile application ("the App"). By using the App, you agree to the collection and use of information as described in this Privacy Policy.1. Information We Collect1.1 Health and Fitness Data
When you use the App, you may provide:
- Weight, height, and body mass index (BMI)
- Meal data including foods, calories, protein, carbohydrates, and fats
- Daily calorie and macronutrient goals
- Weight tracking history and target weight
1.2 Profile Information
- Name (if provided during sign-in)
- Email address (if provided during sign-in)
- Date of birth
- Gender
1.3 Photos
- Meal photos that you capture or select from your photo library for nutritional analysis
1.4 Usage Data
- App activity, session data, and feature usage
- Device type, operating system version, and app version
- Diagnostic and performance data
1.5 Identifiers and Advertising Data
- With your explicit consent (via the App Tracking Transparency prompt on iOS), we may collect your device advertising identifier (IDFA) to measure the effectiveness of advertising campaigns
- Anonymous identifiers used by analytics and advertising services
2. How We Use Your Information- To provide and maintain the App, including calorie tracking, macro tracking, and weight progress features
- To process meal photos using artificial intelligence for nutritional analysis
- To store and synchronize your data across devices when you are signed in
- To manage your account, including sign-in and authentication
- To send you meal reminders and Ramadan-related notifications (when enabled by you)
- To analyze app usage and improve features and performance
- To measure advertising campaign effectiveness (with your consent)
3. Third-Party ServicesWe use the following third-party services to operate the App:3.1 OpenAI (GPT-4o)
When you use the meal photo analysis feature, your food images are sent to OpenAI's API for nutritional estimation. Images are transmitted over encrypted connections (HTTPS/TLS). OpenAI may retain data for a limited period for security and abuse prevention purposes, in accordance with their data usage policies. Learn more: https://openai.com/policies/privacy-policy
3.2 Supabase
If you create an account and sign in, your data (meals, weight entries, profile, and meal photos) is stored in Supabase cloud infrastructure for backup and synchronization. Access is restricted using Row Level Security so that only you can access your own data. Learn more: https://supabase.com/privacy
3.3 RevenueCat
We use RevenueCat to manage subscriptions and in-app purchases. RevenueCat processes purchase transactions and subscription status. Learn more: https://www.revenuecat.com/privacy
3.4 Mixpanel
We use Mixpanel for analytics to understand how users interact with the App and to improve features. Mixpanel receives anonymized usage data. Learn more: https://mixpanel.com/legal/privacy-policy
3.5 Meta (Facebook) SDK
With your consent, we use the Meta SDK to measure advertising effectiveness and optimize ad campaigns. This includes sending app events (such as app opens and registration) to Meta. Learn more: https://www.facebook.com/privacy/policy
3.6 Authentication Providers
We offer Sign in with Apple and Google Sign-In. When you use these, the respective provider shares your name and email address with us to create your account. We do not receive your password.
4. Data Storage4.1 Signed-In Users
Your data is stored in Supabase cloud servers. Meal photos are stored in Supabase Storage. Data is encrypted in transit and at rest.
4.2 Users Without an Account
Your data is stored locally on your device only and is not transmitted to any server (except meal photos sent temporarily to OpenAI for analysis, if you use that feature).
5. Data Retention- Your data is retained as long as your account is active
- If you delete your account, all your data is removed from our servers and your device
- If you delete individual meals or weight entries, they are removed from our servers and your device
- AI analysis cache is automatically deleted after 30 days
6. Your Rights6.1 Access
You can view all your data directly within the App.
6.2 Deletion
You can delete your account and all associated data at any time from the Settings tab (Account Actions > Delete Account). This permanently removes:
- All meal records and photos from Supabase and your device
- Your profile information
- Your weight history
- Your dietary goals
- All locally cached data
Your account is signed out automatically after deletion.
6.3 Opt Out of Tracking
You can deny or revoke tracking consent at any time through your device's Settings > Privacy & Security > Tracking.
7. Children's PrivacyThe App is not intended for children under 13 years of age. We do not knowingly collect personal data from children under 13. If we become aware that we have collected such data, we will delete it promptly.8. SecurityWe use commercially reasonable measures to protect your data, including encrypted connections (HTTPS/TLS), Row Level Security on our database, and secure authentication. However, no method of electronic transmission or storage is completely secure.9. Changes to This Privacy PolicyWe may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Continued use of the App after changes constitutes acceptance of the updated policy.10. Contact UsIf you have questions about this Privacy Policy, contact us:
- Email: [email protected]
- Website: https://privacy.massalhafzco.com