Privacy Policy
Last updated: October 10, 2026 · Operator: boldde (LabelCatch) · Contact: boldde21@gmail.com
What stays on your phone
Your watchlists, health settings, family profiles, scan history, label photos and intake log are stored only on your device. Deleting the app or using Settings → Reset everything removes them.
What leaves your phone, and why
| When | What is sent | To | Kept |
|---|---|---|---|
| Double-check (if on) | The label photos (resized, up to 4), the text the phone read, your watchlist item names, your app language | LabelCatch server (Supabase), which sends it to Anthropic's Claude API for analysis | Photos and label text are not stored. We log the time, the model and the amount of processing to enforce daily limits. Ingredient names found on labels and their classification are kept in a shared ingredient table with no link to you. |
| Ingredient lookup | The ingredient names the phone read | LabelCatch server | Not stored |
| Spelling suggestions | The word you typed and its existing spellings | LabelCatch server → Anthropic | Not stored; time and amount logged |
| Barcode lookup | The barcode number and your app language | LabelCatch server → Open Food Facts, USDA FoodData Central, 식품안전나라 | Not stored |
| Account (if you sign in) | Your email and password (stored hashed), or the account id, name and email your Google, Apple or Kakao account shares | LabelCatch server (Supabase); sign-up and password-reset codes are emailed through Resend | Until you delete the account |
| Subscriptions | Your account id and purchase status | RevenueCat, Google Play / App Store | As required for billing |
| Ads (free version only) | Advertising ID, device and app information, approximate location from the IP address, ad interactions | Google AdMob | Under Google's policy |
Signing in is optional. Without an account the app uses an anonymous random id for the server limits. Allergy and health-related watchlist items may be health data: they are sent only as part of a double-check you turned on, only to produce that result, and are not stored on the server.
Where data is processed
The LabelCatch server runs on Supabase in Singapore. Double-checks are processed by Anthropic in the United States, ads by Google, subscriptions by RevenueCat in the United States, and emails by Resend. Each processes data only to provide its part of the service. Anthropic does not use API inputs to train its models by default.
Ads
The free version shows Google AdMob ads. Where the law requires it (e.g. the EU and UK) you are asked for consent first and can change it in Settings → Ad privacy choices; on iPhone you are asked whether apps may track you. You can reset or delete your advertising ID in your phone's settings. Pro has no ads.
Children
LabelCatch is not directed at children under 14. Parents can create a family profile for a child on their own phone; that profile stays on the phone.
Your choices and rights
- Turn the double-check off in Settings; on-device scanning keeps working offline.
- Delete history items, profiles or everything in the app.
- Delete your account in Settings → Account → Delete account or as described on labelcatch.com/delete-account. Cancel a Pro subscription separately in Google Play or the App Store.
- Ask for access, correction or deletion of your data at boldde21@gmail.com.
Not medical advice
LabelCatch reads text and can make mistakes. Always check the package and ask a professional about allergies, diets and medicines.