Effective date: September 26, 2026
1. Who we are
Velrae Method (“Velrae,” “we,” “us,” “our”) is a personalized food and personal-care scanner that grades products against the conditions and goals of the specific person using them. We are a small, independent project. Our contact email is velraemethod@gmail.com.
This policy covers the Velrae Method app (mobile + progressive web app), the website at velraemethod.com, and the purchase/license-activation flow.
2. Information stored only on your device
The following is stored in your device’s local storage and is never sent to a server we control:
- The conditions, goals, and diet protocols you set up
- Profile names and per-profile settings
- Scan history — products you scanned, the grades, and dates
- Meal logs and daily check-ins (energy, sleep, mood, symptoms, and any optional metrics like blood pressure, glucose, or weight)
- Patterns and insights the app generates
- Recipe and shopping lists, AIP phase data, and any doctor-PDF reports
You can erase all of it any time via Settings → Wipe all data. We have no way to access or recover it.
3. Information sent to outside services as you use the app
Some features need to talk to outside services. Here is the complete list.
AI features (Anthropic / Claude)
Velrae’s optional AI features run only after you grant permission in the app’s disclosure dialog (shown before the first AI request; you can withdraw consent any time in Settings → Privacy choices → AI features). What each feature sends to our AI provider, Anthropic, to process and return a result:
- Smart Scan / restaurant menu scan / recipe photo: the label, menu, or recipe photo you choose to submit.
- Describe-a-meal and quick add: the meal description you type or dictate, plus the conditions and goals you selected — so the score reflects your setup.
- AI day summary (off by default; the standard summary is written on your phone): the day’s logged foods and grades, your selected conditions and goals, and any symptoms you logged that day — so the summary can be personalized.
- AI ingredient lookups: ingredient names the local database doesn’t know, plus your selected condition names — so unknown ingredients can be graded for you.
These requests are not tied to your name or your Velrae account, Anthropic does not use them to train its models, and we keep no copy linked to you. Anthropic processes this data as our service provider under contractual protections consistent with this policy. If you never turn the AI features on, nothing is ever sent. Anthropic’s privacy policy: anthropic.com/legal/privacy.
Barcode lookups (OpenFoodFacts)
When you scan a barcode we don’t already recognize, the UPC — and nothing else — is sent to OpenFoodFacts, a public non-profit food database, to fetch the product name and ingredients. The request is anonymous. openfoodfacts.org/legal.
Community product database
When you resolve a product that was previously unknown, the app adds the record (UPC, product name, ingredients, nutrition facts) to our shared product list so future scans resolve faster for everyone. This contains no information about you — no identifier, no device fingerprint, no conditions, no grade — so it is always on and is not covered by the “Help improve Velrae” switch.
Scan reports
If you tap Report this scan on a verdict, the app sends us what we need to find and fix the problem: the product name, the ingredient text the app read, the grade, the note you typed, the app version, and an anonymous device ID. Your conditions are included only if you tick Include my conditions on that report. Reports carry no name or contact details, and we use them only to fix the app.
Nothing else
In normal use the app sends no other data to any other server.
4. Information collected when you buy or redeem a code
When you buy Velrae Method (a one-time $59.99 purchase, or an optional $29.99/year plan, with an optional Restaurant menu-scan add-on):
- Stripe, our payment processor, collects your payment-card details and email. Stripe is the only party that sees your card information — we never store it. Stripe keeps your email for receipts, refunds, and disputes. stripe.com/privacy.
- Our license backend (Supabase) holds your first name (the in-app license watermark), your email (so we can help if you change phones, lose your code, or reach out for support), and an anonymous device ID for each device you activate (to enforce the device limit). This is the only personal information on our own infrastructure. supabase.com/privacy.
- An anonymous device identifier is generated locally on each device and sent to our backend only to enforce the device limit. It is not derived from any personal information.
Gift and unlock codes. A code redeemed on our website creates the same licence record — your email and an optional first name — with no payment and nothing sent to Stripe.
Your account (optional). To carry a licence to your other devices you can create a Velrae account: your email, a password (held by Supabase Auth as a one-way hash we cannot read), and an account identifier. That is the whole account. Scanning, grading, and your diary never require one, and you can delete it in the app at any time (section 8).
When you accept the in-app legal agreement, we store a record that you agreed (date + app version) and a one-way hashed version of your email — we cannot read the original from the hash.
5. Information we never collect
We do not collect or hold your diagnoses, symptom history, scan/meal logs, inferred health data, location, contacts, camera roll, biometrics, or any cross-site tracking data. Accounts are optional and hold only an email, an optional first name, a password hash, and your licence. We never build a profile of your health. (When you have turned the AI features on, individual requests carry the data described in section 3 for processing — Anthropic returns the result and we store nothing from the request linked to you.)
6. Who we share information with
We share only with the services required to run the app and purchase flow:
| Service | What it sees | Why |
|---|---|---|
| Stripe | Payment details + email | Process your purchase; receipts, refunds, disputes |
| Supabase | First name, email, anonymous device IDs; for an optional account, a password hash and account ID | Validate your unlock or gift code; enforce the device limit; sign you in on your other devices |
| Anthropic (Claude) | With your in-app consent only: the photo or text you submit to an AI feature; for day summaries and ingredient lookups, also the day’s foods and your selected conditions, goals, and logged symptoms | Process Smart Scan / meal describe / AI summaries / menu scan / ingredient lookups and return a result; not used for training |
| OpenFoodFacts | UPC barcodes (anonymous, only when needed) | Look up unknown products |
| Netlify | Infrastructure-level traffic (anonymous) | Host the app and site |
We do not share information with advertising networks, data brokers, or social platforms. We will disclose information only if legally compelled, and then only the minimum required, notifying you where legally permitted.
7. How long we keep information
- On your device: until you delete it (Settings → Wipe all data).
- Stripe: as long as required for tax/fraud/dispute purposes (governed by Stripe).
- Our license records (Supabase): while the license is active. On a deletion request, we delete the license record and device redemptions within 30 days.
- Codes and accounts (Supabase): an unredeemed code until it is redeemed or revoked; account data for as long as the account exists. Delete the account in the app and its records are purged within 30 days.
- AI requests (Anthropic): handled per Anthropic’s retention policy; we do not keep a copy linked to you.
- Scan reports (Supabase): kept while we review and fix the problem. They contain no name or contact details.
8. Your rights, including deleting your data
Velrae has no login unless you choose to create an account. Almost everything you track lives only on your phone, so you delete it yourself, instantly, with no request needed:
- Delete everything on your device — open the app and tap Settings → Wipe all data. This erases every scan, diary entry, condition, profile, list and report. We never had a copy, so once it’s gone it’s gone.
- Delete what we hold if you purchased — the only data we store off your device is a license record (first name, email, an anonymous device ID). Email velraemethod@gmail.com with “Delete my data” in the subject and we’ll remove your license record and free your device slots within 30 days. We cannot delete records Stripe is legally required to keep for payment/tax purposes.
- Delete your account — in the app, Settings → Your data → Delete my account. Immediate once you confirm: it removes your email, password, and licence from our servers and signs you out everywhere. The scans and diary on your phone are separate (see Wipe all data). No app? Email us with “Delete my account” in the subject.
- Know what we hold — email us and we’ll tell you (usually just your email, first name, and active license).
- Stop anonymous scan data — turn off “Help improve Velrae” in Settings → Privacy.
We respond to requests within 30 days. California (CCPA/CPRA) and EEA/UK/Switzerland (GDPR) residents have the additional rights granted under those laws (access, deletion, portability, objection, and — because we don’t sell or share personal information — opt-out is preserved by default). To exercise any right, email velraemethod@gmail.com with “Privacy” in the subject. For GDPR, our legal bases are contract (payments/licensing) and legitimate interest (anonymous analytics); Stripe and Supabase operate in the U.S. under Standard Contractual Clauses where applicable.
9. Children’s privacy
Velrae Method is intended for adults. We do not knowingly collect personal information from children. A caregiver may create a profile for a child in their care (for example, a parent managing a child’s type-1 diabetes); in that case the caregiver is the account holder and the child’s data lives only on the caregiver’s device, with no server-side record. If you believe a child provided us information, email us and we’ll delete it.
10. Security
We use TLS encryption for all communication between your device and our servers, and standard access controls on our infrastructure. No system is perfectly secure; we will notify affected users as quickly as legally permitted in the event of a breach affecting your information.
11. Changes to this policy
We may update this policy as our practices change. We’ll update the effective date above, and for material changes we’ll post a notice in the app and on the site. The current version always lives at this page.
12. Contact us
For any privacy question or request: velraemethod@gmail.com (put “Privacy” in the subject so it routes correctly). We answer most requests the same week.