Prepi

Deutsch

Privacy Policy

Last updated: 19 September 2026

This policy covers the Prepi app and Prepi Studio. Prepi helps you plan meals with weekly plans, recipes, grocery lists, shared households and optional AI features. Studio lets creators manage and publish recipes. This page explains what data we process and the choices you have.

The short version: We do not sell your data. We show no advertising, use no advertising identifier (IDFA) and do no cross-app tracking in the sense of Apple's App Tracking Transparency. You never create a password with us.

1. Who is responsible

Anton Garic
c/o JL Consulting Group GmbH #1650
Zürcherstrasse 84
8852 Altendorf
Switzerland
Email: hello@prepi.food

For any privacy question, or to exercise your rights, write to us at that address.

2. Account and sign-in

You sign in exclusively through Sign in with Apple or Google Sign-In. In doing so we receive your name and email address. You do not create a password with us, and we do not store one.

If you choose Apple's "Hide My Email" option, we only receive the anonymised relay address Apple generates.

Legal basis: performance of our contract with you (Art. 6(1)(b) GDPR).

3. Content you create in the app

We store the content you create or select yourself:

This data is stored with our cloud provider (data centres in the EU and the USA) and is associated with your account.

A note on intolerances and allergies: these details are optional and may constitute health data. We ask separately for your explicit consent before saving them. You can remove them in dietary settings. Saving these details does not authorise sending them to AI services; this requires the additional, optional choice in section 5. You can use the app without providing these details.

Legal basis: performance of contract (Art. 6(1)(b) GDPR); for optional health information, your explicit consent (Art. 6(1)(a) and Art. 9(2)(a) GDPR), where the GDPR applies.

4. Shared household

If you create or join a household, all members can see the shared recipes, weekly plans and grocery lists, along with your display name. Invitations work through a code or QR code, or through an email invitation; in the latter case we store the invited email address until the invitation is accepted or expires.

Your subscription is personal and is not shared with your household.

5. AI features

For the optional features below, an external AI provider processes the content needed for your request through our servers. Before the first use, we ask you to turn on Prepi AI; at that point we show you which content is transferred and for what purpose. This permission applies to your account in both the Prepi app and Prepi Studio. A Premium subscription, saving a recipe or accepting this privacy policy does not replace that permission.

Weekly planning and recipe assessment

To create or change a weekly plan, we may send your planning instruction, the required recipe details, serving counts and the current plan to the AI provider. Prepi may also assess recipes and derive culinary properties or tags, for example suitability for preparation in advance, storage or using leftovers. This assessment takes place when needed within an AI feature you initiate. Simply creating, saving or publishing a recipe does not trigger AI assessment. Existing assessments may be stored and reused.

Only recipes you are allowed to access are processed. These may include your own recipes, household recipes shared with you and public recipes. Other household members' personal profiles are not sent as planning context. This permission does not automatically cover substantially new purposes, data types or recipients; we will request fresh permission where needed.

Recipe import, ingredient matching and translation

Additional choice for dietary settings

Saved diet, dislikes and intolerances or allergies are sent to the AI planner only if you explicitly enable this additional option. It is off by default. You can turn it off independently of other AI features. Without this permission, the AI planner does not take your saved dietary settings into account. Details you write directly into a planning instruction or recipe can still form part of that content. AI results are not a reliable allergen check or medical advice.

Withdrawal and data minimisation

You can manage and withdraw AI permission in the app under Profile → Prepi AI and in your Studio profile's AI privacy settings. Withdrawal applies to the same account in both applications. Our servers check permission before new external AI requests and retries. Withdrawal cannot recall requests that have already been sent. Saved recipes, plans and earlier assessment results are not automatically deleted when you withdraw permission; you can delete that content or your account separately.

Manual features remain available without permission. We do not send your account email address or a permanent user identifier as part of the AI input to the AI provider. Recipe references needed for planning are replaced with temporary identifiers. Free text and images can still contain personal information; these measures do not automatically make the content anonymous.

Storage and logging

We do not keep content logs of AI requests or responses with external logging services. Technical usage and cost records for allowance calculations remain associated with your account; they contain no recipe text, photos or planning instructions. We also store your current permission status, the version of the consent notice and the time of its last change with our cloud provider.

The AI provider does not use the transferred content to train its models. Our requests disable optional response storage. This does not mean zero retention: under the provider's data rules, content may generally be kept in abuse-monitoring logs for up to 30 days, and longer in certain safety or legal exceptions. We do not promise immediate deletion or processing exclusively within the EU.

Earlier app versions could store AI content with an external logging service. Disabling new logs does not automatically remove existing entries. To request access to or deletion of that data, contact us using the address in section 1.

The legal basis for optional transfers is your consent (Art. 6(1)(a) GDPR), with additional explicit consent for included health information (Art. 9(2)(a) GDPR), where applicable. Technical allowance accounting serves performance of contract; enforcing permission and preventing abuse serve our legitimate interest in operating the service securely.

6. Usage analytics

We use Firebase Analytics to understand which features get used and where people get stuck. We record events such as: screen opened, search opened, recipe opened, ingredient added to the grocery list and grocery item checked off. We also record whether an active subscription exists.

We do not record: your planning instructions, search terms, recipe text or grocery list contents.

We set no user identifier in Firebase Analytics. Events are tied to a randomly generated app-instance identifier that changes when you delete or reinstall the app. As a technical consequence of the analytics service, device type, operating system version, language setting and a coarse region derived from your IP address are also collected.

Legal basis: our legitimate interest in improving the app (Art. 6(1)(f) GDPR). If you want to object to analytics, send us an email.

7. Subscriptions and purchases

Prepi Premium is handled through Apple's App Store. We never receive or see your payment details. From Apple we receive a transaction identifier, the subscription expiry date, and whether the transaction is from a test or production environment. We need this to unlock premium features and to prevent one subscription being used by several accounts.

8. Permissions on your device

Each permission is used only after you explicitly grant it, and can be withdrawn at any time in iOS Settings. Prepi does not access your location, your contacts, or health data from Apple Health.

9. Who receives your data

The providers below receive data according to the feature you use. Optional AI and import transfers require the permission described in section 5.

Support requests sent from the app (Settings → Help → Contact support) are delivered as an email to our mailbox hello@prepi.food through an email provider. We transmit the email address you enter, the category, subject, message, any images you attach and technical details about the app version and device so that we can help you. We also store the request in our database for follow-up.

ServicePurposeProcessing location
Cloud provider (account, database, file storage, server functions), Google Analytics for FirebaseAccount, storage of your content, server functions, usage analyticsEU and USA
AI providerAI weekly planning, recipe assessment and culinary tags, recipe import, ingredient matching, recipe translationInternational processing, particularly the USA; no guaranteed EU restriction
Logging service (earlier versions only)Earlier content logs; no new transfers by this versionDepends on the earlier project configuration
Services retrieving public web content, YouTube Data API (Google)Fetching recipe pages during link importUSA
Email providerDelivery and handling of support requestsEU and USA
AppleSign-in, subscription handlingEU and USA

10. International transfers

Some of the services listed above process data in the United States. Such transfers rely on the European Commission's Standard Contractual Clauses or, where applicable, the recipient's certification under the EU-US Data Privacy Framework. For Switzerland, the corresponding provisions of the revised Federal Act on Data Protection apply.

11. How long we keep data

We keep your account and content data for as long as your account exists. If you delete your account, it is deleted. Analytics and log data are kept only for a limited period and only to the extent needed for analysis, debugging and abuse prevention. Purchase records are kept for as long as needed to administer the subscription or to meet statutory retention obligations.

We keep support requests in our database for as long as your account exists; they are deleted when you delete your account. The related email in our mailbox is kept for as long as follow-up questions require.

We retain the current AI permission status until it is changed or your account is deleted. A withdrawal is also stored so that further transfers remain blocked. For content already sent to the AI provider, the information in section 5 also applies.

12. Your rights

You have the right to access the data we hold about you, to have it corrected, to have it erased, to restrict its processing, to data portability, and to object to processing we base on a legitimate interest. Where you have given consent, you can withdraw it at any time with effect for the future.

Deleting your account: you can delete your account at any time directly in the app, under Profile → Delete Account. For security you will be asked to sign in again. Your account and its associated data are then permanently removed.

If you believe we are processing your data unlawfully, you can lodge a complaint with a supervisory authority. In Switzerland that is the Federal Data Protection and Information Commissioner (FDPIC); in the EU it is the data protection authority of your country of residence.

13. Children

Prepi is not directed at children. We do not knowingly collect data from children under 13, or under the minimum age that applies in your country. If we become aware of such data, we delete it. If you are a parent or guardian and believe your child has provided us with data, please contact us by email.

14. Notice for users in the United States

We do not sell personal information and we do not share it for targeted advertising, including within the meaning of the California Consumer Privacy Act (CCPA/CPRA). If you live in California or another US state with comparable rights, you can also request access, deletion and correction by email. We will not treat you differently for exercising those rights.

15. Changes to this policy

We update this policy when the app or the services it relies on change. The current version is always available at this address; the date at the top shows when it was last revised.