Privacy Policy
Effective date: October 4, 2026
This Privacy Policy describes how Sabrio ("we", "us") collects, uses, and shares information when you use the Sabrio mobile application (the "App"). Sabrio checks restaurant menus against a food profile you set up.
1. Information we collect
- Account information. Your email address. If you sign in with Google or Apple, we also get the name and email they share with us (Apple may give us a private relay address instead of your real one). We use this to create and secure your account.
- Food preference profile. The allergies, intolerances, dietary restrictions, eating goals, spice tolerance, food dislikes, and any notes you enter during onboarding or in settings. Some of this can reveal health information, like a food allergy, and some can reveal religious beliefs, like a halal or kosher diet. You choose what to share, and we use it only to analyze menus and answer your questions.
- Menu photos. The photos you take or upload when you scan a menu. Point the camera at the menu, since anything else in the frame, including people, ends up in the photo. We store your photos privately, and other Sabrio users can't see them.
- Location. Your device's precise location, read only while you are using the App. We send it to Google to find the restaurant you're at, and when you use chat we send an approximate version (rounded to about 100 meters) to our AI provider so it knows where you are. We don't track your location in the background, and we store the restaurants you visit rather than your coordinates.
- Visit and order history. The restaurants where you scan menus, the dishes you say you ordered, and your ratings and notes on those dishes.
- Chat messages. Messages you send to the in-app assistant. We send them to our AI provider to get a reply. After a conversation ends, the AI may go over it once to suggest updates to your profile. We don't keep chat transcripts in our database.
- Push notification tokens. If you turn on notifications, a device token and your device platform, so we can deliver them.
- Crash and error reports. When the App or our servers hit an error, we collect technical details about it, like the device model, app version, and what went wrong. On our servers, we strip request contents out of these reports so your profile doesn't end up in them.
2. How we use your information
- To analyze scanned menus against your profile and rank the dishes for you.
- To improve your recommendations over time using the orders and ratings you log.
- To find the restaurant you're at and show information about it.
- To answer your questions in chat.
- To send notifications you've turned on, like when your scan results are ready.
- To run the App, keep it secure, and fix problems.
We do not sell your personal information, and we don't use it for advertising.
3. AI processing
Sabrio uses AI models to read menus, rank dishes, and run chat. To do that, we send Anthropic your menu photos and menu text, your preference profile, your recent orders and ratings, your chat messages, and your approximate location during chat. We use Anthropic's commercial API, whose terms don't allow it to train its models on this data.
Before a scan runs, we send your menu photos to OpenAI to screen them for inappropriate content. OpenAI doesn't keep them or train its models on them.
We also use Google's Gemini to summarize public restaurant reviews. Gemini gets the restaurant's name and address and the names of its dishes. It never gets your profile or anything else about you.
Everything the AI produces, including calorie counts, ingredients, allergen flags, dietary labels, and recommendations, is an estimate and can be wrong. Always confirm allergens, ingredients, and dietary needs with restaurant staff before you order.
4. Service providers
| Provider | Purpose |
|---|---|
| Supabase | Database, sign-in, and photo storage |
| Anthropic | Menu analysis, recommendations, and chat |
| Google (Places, Gemini, Sign-In) | Finding nearby restaurants, review summaries, and optional sign-in |
| OpenAI | Screening uploaded photos |
| Apple | Optional sign-in |
| Brave Search | Finding food photos by dish name (no personal data sent) |
| Expo | Delivering push notifications |
| Sentry | Crash and error reports |
| Railway and Trigger.dev | Hosting and background processing |
Each provider gets only the data it needs to do its job for us. We may also share information if the law requires it, or to protect our rights or the safety of our users.
5. Data retention and deletion
We keep your data for as long as you have an account. You can delete your account at any time in the App's settings. Deletion happens right away and can't be undone. It removes your account, profile, menu photos, visit history, ratings, profile suggestions from chat, and push tokens.
The dishes we read from a menu (names, prices, descriptions, and nutrition estimates) belong to the restaurant's menu, not to you. They aren't linked to your identity, and we keep them after you delete your account so other people at that restaurant can still use them.
6. Security
Data is encrypted in transit and at rest, and anything that touches your data needs a signed-in session. Your personal data is stored so that other users can't read it. No system is perfectly secure, so we can't promise your data will never be exposed.
7. Your choices
- Edit or remove any part of your preference profile in settings at any time.
- Turn off location or notification access in your device settings.
- Don't log orders if you'd rather not. Your recommendations just won't learn from them.
- Delete your account in the App (see section 5 for what that removes).
8. Children
The App isn't meant for children under 13, and we don't knowingly collect personal information from them.
9. Changes to this policy
We may update this policy as the App changes. When we do, we'll change the effective date at the top, and we'll tell you in the App or by email if the change is significant.
10. Contact
Questions or requests about your data: support@sabrio.io