Privacy Policy for FridgeFinder
Last Updated: July 4, 2026
A quick note from our team
We built this policy to be straightforward and respectful of our community. We collect only what we need to run Fridge Finder, we never sell your data, and we avoid unnecessary tracking.
Fridge Finder ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website at fridgefinder.app and our mobile application (together, the "Services"). By using Fridge Finder, you agree to the collection and use of information in accordance with this policy.
Contact Information
Organization: FridgeFinder
Email: fridgefinderapp@gmail.com
Website: fridgefinder.app
Privacy-First Approach
We collect only the minimum data necessary to operate Fridge Finder.
We do not sell, rent, or trade personal information.
Mobile app: we do not use analytics SDKs, advertising networks, or behavioral tracking.
Website: we may use limited website analytics to understand page usage and improve performance.
Mobile location is processed for map and notification features and is not stored as location history on our servers.
In This Policy
1. Information We Collect
We collect only the information required to provide and improve our services.
1.1 Account Information
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
Phone number or email address | Used for account authentication through Firebase Authentication. | Performance of contract. | Yes |
Username | Your chosen display name in the app and website. | Performance of contract. | Yes |
User Type | User Type displayed in profile (Neighbor/Volunteer). | Performance of contract. | Yes |
Zip Code | Optional field used for internal reporting. | Legitimate interest. | Yes |
1.2 Location Data
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
Mobile precise location | Used to show nearby fridges, calculate distances, and support optional volunteer geofencing notifications. We do not retain location as historical tracking. | Legitimate interest, with consent for optional background geofencing. | No location history stored |
Website map location (browser permission) | Used only in-session when you choose a map feature like "Find my location". Not used for tracking profiles. | Consent via browser permission. | No |
Your controls
Permission choice: You can deny location permissions and still use core features with reduced location functionality.
Device settings: You can disable background location or all location access at any time.
1.3 Photos and User-Generated Content
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
Photos (optional) | Optional uploads included in status reports. Photos may be processed (for example, compressed and metadata minimized) before storage. | Consent (voluntary upload). | Yes |
Text notes (optional) | Optional notes submitted with reports. Content is visible in fridge profiles for community operations. | Consent (voluntary submission). | Yes |
1.4 Device and Technical Information
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
FCM token | Used to deliver push notifications to your device. | Legitimate interest. | Yes |
Device and app metadata | Device type, operating system version, and app version used for compatibility and reliability. | Legitimate interest. | No |
1.5 Notification and Follow Data
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
Followed fridges | Which fridges you follow for updates. | Performance of contract. | Yes |
Notification preferences | Your selected notification settings and categories. | Performance of contract. | Yes |
Status reports and engagement | Reports, contribution history, and volunteer points. | Performance of contract. | Yes |
Last login time | Used for account activity and security monitoring. | Legitimate interest. | Yes |
1.6 Website Analytics and Cookies
| Data Type | What We Collect and Why | Legal Basis (GDPR) | Linked to Identity |
|---|---|---|---|
Website analytics events | May use google analytics to measure page visits and usability trends. | Consent or legitimate interest depending on region and applicable law. | No |
Cookies / local browser storage | Used for preferences and basic website functionality. You can control this in browser settings. | Legitimate interest (essential), consent where required. | No |
1.7 Local Device Storage
The website and app may store preferences locally (for example, map settings or theme choices).
This local data helps remember your settings and can be cleared by clearing browser/app storage or uninstalling the app.
2. What We Do Not Collect
[ No Data Selling ]
[ No Cross-App Tracking ]
[ No Contact Harvesting ]
No sale of personal data.
No collection of contact lists, call logs, microphone recordings, or clipboard contents for Fridge Finder operations.
No collection of sensitive categories such as racial or ethnic origin, political opinions, religious beliefs, or biometric identifiers for app functionality.
No cross-app tracking by us for ad targeting.
3. How We Use Your Information
Provide and maintain website and mobile app functionality.
Authenticate users and secure accounts.
Show nearby fridges and relevant status updates.
Send notifications according to your preferences.
Process community reports and optional photo submissions.
Improve product quality, reliability, and support response.
Comply with legal obligations and prevent abuse or fraud.
4. Third-Party Service Providers and Data Sharing
We do not sell personal data. We share data with providers only as necessary to operate the Services.
Core service providers:
Firebase: authentication, database, push notifications, cloud functions.
Google Sign-In: optional OAuth authentication.
MapTiler: map tile display requests.
AWS S3 (optional): photo storage.
Google Analytics (website only): aggregate website usage measurement.
Third-party privacy notices: Google Privacy Policy, MapTiler Privacy Policy, AWS Privacy Notice.
We may also disclose information when legally required, to protect rights and safety, to enforce our terms, or with your explicit consent.
5. Data Security
Encryption in transit (HTTPS/TLS).
Managed security controls from infrastructure providers (for example, Firebase and cloud storage controls).
Access controls and authentication enforcement.
Ongoing updates and security patching practices.
If a reportable breach occurs, we will provide notices as required by law.
6. Data Retention and Deletion
Account data is retained while your account is active. When you delete your account, your data is removed unless legal obligations require otherwise.
Location history is not retained as an ongoing historical tracking log by us.
Notification tokens are retained as needed for active notification delivery.
Community reports and photos may remain for community history and service continuity; where feasible, identifying account links may be removed after account deletion.
You can delete your account directly in the mobile app through Profile > Settings > Delete Account.
7. Your Privacy Rights
You can access, correct, or delete your personal data at any time using your account settings. Users in certain regions may have additional formal legal protections regarding how their data is handled.
Rights commonly available:
Access and correction: review and update account details where available in product settings.
Deletion: request account and personal data deletion subject to legal exceptions.
Notification opt-out: disable app notifications in-app or via device settings.
Withdraw consent: revoke optional permissions (such as location) in device or browser settings.
Response window: we target responses within 30 days, or up to 45 days where law permits.
8. App Permissions Explained
The mobile app may request permissions such as Location, Camera, Photo Library access, and Notifications. You can deny or revoke permissions at any time in your device settings.
9. Children's Privacy (COPPA)
Fridge Finder is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child provided personal data, contact us at fridgefinderapp@gmail.com so we can investigate and delete data where required.
10. International Users and Data Transfers
If you access the Services outside the United States, your data may be processed in the United States or other countries where our providers operate. For applicable regions, transfer safeguards (such as Standard Contractual Clauses) may be used by processors.
11. U.S. State Privacy Rights (CCPA/CPRA)
California residents and residents of other U.S. states with privacy laws may have rights to know, delete, correct, and opt out of certain data uses. To submit a request, email fridgefinderapp@gmail.com with the subject line "Privacy Request".
12. European Users (GDPR)
For EEA, UK, and Swiss residents, GDPR rights may include access, rectification, erasure, restriction, portability, objection, and withdrawal of consent. You may also lodge a complaint with your local data protection authority.
13. Changes to This Policy
We may update this policy to reflect legal, product, or operational changes.
We will update the Last Updated date at the top of this page.
For material changes, we may provide additional notice in-product or on our website.
Privacy Summary
Data approach: Minimal collection focused on core service operations.
Data sales: None. We do not sell personal information.
Behavioral tracking: Not used in the mobile app.
Website analytics: Limited usage for performance and usability insights.
Contact: fridgefinderapp@gmail.com
© 2026 FridgeFinder. All rights reserved.