Privacy Policy
The short version
- Your private recipes live in your own iCloud account. We cannot see them.
- Recipes you publish to the Community are publicly visible inside the app.
- Photo moderation happens on your device — photos are never sent to third-party APIs for analysis.
- No third-party analytics, no trackers, no ad networks.
1. What data we store
- Display name and handle — only if you publish to the Community. Required so other users can see who shared a recipe.
- Published recipe content — the recipe formula, schedule, description and up to 3 photos you attach, plus ratings and comments you post.
- E-mail address — only when you write to support, and only for the purpose of answering you. We do not add you to any mailing list.
- Report data — if you report content or a user, the report (reported item, reason, optional description) is stored in CloudKit for moderation purposes.
2. Private recipes and iCloud
Recipes you save in your library are synced through the CloudKit Private Database attached to your personal iCloud account. They are governed by your iCloud settings and Apple's iCloud terms. The developer has no access to your private database — we cannot read, browse or recover your private recipes.
3. Published recipes and the CloudKit Public Database
When you publish a recipe to the Community, it is written to the CloudKit Public Database together with your display name and handle. Published recipes, photos, ratings and comments are visible to all users of the app. You can unpublish or delete your published recipes from within the app at any time.
4. Photo and text moderation
Before a photo is published, it is checked by a sensitivity analyzer that runs entirely on your device. Photos are not uploaded to any third-party service for analysis. Text is checked by an on-device, multilingual profanity filter. In addition, users can report content and users manually; reports are stored in CloudKit and reviewed for moderation.
5. What we do not do
- No third-party analytics SDKs.
- No advertising networks and no ads.
- No tracking across apps or websites.
- No sale or sharing of personal data with third parties.
6. Data retention and deletion
- You can delete any of your published recipes, comments and photos directly in the app — deletion removes them from the Public Database.
- Private recipes are deleted by deleting them in the app, or by removing the app's iCloud data in iOS Settings.
- To delete your Community identity (display name and handle) or request removal of any remaining data, email impastolab.support@pisz.to. We process deletion requests within 30 days.
- Moderation reports are retained only as long as needed to handle the report and to prevent repeated abuse.
7. Your rights (GDPR)
If you are in the EU/EEA, you have the right to access, rectify, erase, restrict and port your personal data, and to object to its processing. To exercise any of these rights, contact us at impastolab.support@pisz.to. You also have the right to lodge a complaint with your local supervisory authority.
8. Children
Impasto Lab is not directed at children under 13 (or the minimum age required in your country). We do not knowingly collect personal data from children.
9. Changes to this policy
If this policy changes, the updated version will be published on this page with a new "last updated" date. Material changes will be highlighted in the app.
10. Contact
Privacy and GDPR contact: impastolab.support@pisz.to