Effective 4 September 2026
Privacy policy
The data controller is Tiago Morais (independent developer, Spain). Contact: tiago_morais@me.com. This policy explains what Next · Meal collects and your rights under the GDPR.
What we collect
Your email and a hashed password — never the password itself. Standard server logs, kept briefly by our hosting providers. A count of how many requests you have made, so we can keep an eye on cost. No advertising, no analytics, no trackers, and nothing is ever sold or shared for marketing.
What the AI sees
Next · Meal works by looking at photographs of your fridge, freezer or pantry that you choose to take. Those photos, and the question being asked, are sent to Anthropic, who run the model that reads them and answers. They are used for that one request and are never stored by us — nothing is written to our database except a record that a request happened. No account details travel with them. Anthropic processes them in the United States, under the terms of their data processing agreement.
Why
To run the service you signed up for. That is the only reason any of it exists.
Who processes it for us
Vercel (hosting), Supabase (database, EU) and Anthropic (the model described above).
Retention and deletion
Data stays while your account exists. Ask and it is deleted, permanently and immediately.
Your rights
Access, correction, deletion, restriction, portability, objection — email tiago_morais@me.com. You may complain to the AEPD (www.aepd.es) or your local supervisory authority.