Privacy policy
Last updated:
This policy explains how Uni.Kitchen uses information, what remains private, and how you can manage or delete it. The service is operated by Miri Cohen.
Information you provide and generate
- Account details: email, username, optional profile and kitchen details, sign-in and security information.
- Content you submit: recipes, drafts, descriptions, photos, videos, recordings, links and recipe extraction sources.
- Community activity: comments, mentions, likes, saves, follows, recipe requests, blocks and reports.
- If you request chef verification: professional details, evidence or documents you submit, review decisions and consent records.
- Operational and security data: account and request identifiers, action timestamps, app version, error and connection information needed to operate and protect the service.
Why we use information
To authenticate accounts, save and restore content, extract and edit recipes, publish when you choose, support community interactions, review professional verification, handle requests and reports, and prevent abuse. Private cloud saving involves transmission to our service; it does not make content public.
Private and public content
Drafts and extraction sources are not shown publicly. Publishing is a separate action: your approved version, media and public kitchen details can appear in the community, on the website and in shared links. Comments and mentions on public posts are also visible to others.
Source materials, chef verification documents and unpublished private edits are not part of the public version. Other people may copy or share content that you publish; withdrawing it cannot remove copies made by others.
Services that help operate Uni.Kitchen
- Clerk provides account authentication and security. Sign-in activity data may include an IP address, device and browser details, and approximate city or country inferred from the IP address. This is not precise GPS location.
- Cloudinary stores and processes dish and recipe media. New extraction sources and professional verification documents use private Cloudflare R2 storage; older sources may remain in Cloudinary.
- Neon hosts the database containing account, kitchen, content and activity records associated with your account. Vercel operates the website and servers and routes AI requests. Requests to these services also include operational and connection information needed to provide them.
- When you request extraction, the source is sent to the Uni.Mi engine and its AI providers, including OpenAI. Recordings or video audio may be transcribed. You do not need to provide personal health or professional information to extract a recipe.
- Publication safety checks send relevant text and media to moderation services, including OpenAI and Amazon Rekognition through Cloudinary.
- Expo delivers app updates and helps diagnose update failures. Update requests include a persistent random installation identifier (UUID), operating system, app runtime version and update identifiers, including failed updates, as well as connection information. Recovery from a fatal error may also send a shortened error message. The installation identifier is not an advertising identifier. Providers may process information in other countries according to their services and data-processing arrangements.
Device permissions
Camera, photo library and microphone access is used when you choose to capture, attach or record media. Manage permissions in your device settings. Selecting a file or recording is not permission to publish it. Sign-in information and working copies are also stored on your device. The website may store technical information needed for functionality and security.
Retention and deletion
Saved account content and attached sources remain available until you delete them or the account. Temporary extraction results expire after 24 hours; temporary job records remain for up to 30 days. Separate, limited operation and cost records, including technical identifiers and hashes, remain afterward to prevent duplicate charges and reconcile usage with an unknown outcome. These records currently have no automatic deletion date and do not include recipe content, source files or email addresses. Abandoned sources not attached to saved content become eligible for cleanup after 48 hours.
Professional verification documents attached to an application are retained while it is reviewed. After a final approval, rejection or revocation decision, they are scheduled for cleanup after 90 days, or earlier following deletion. These are cleanup eligibility times; failures and provider retries can delay completion.
A completed-account-deletion record is retained for 30 days for recovery. Limited security, administrative decision and revoked professional invitation records can remain to prevent reusing permissions or address abuse. Service deletion does not erase exports, offline device copies or separate copies retained by providers under their policies. Contact us about remaining information.
Your choices
You can edit your profile and content, withdraw publication, export cloud content and delete your account in the app. Contact hello@unimi.io to request access, correction or deletion, or ask a privacy question. We require appropriate ownership verification before releasing or deleting data. Do not send passwords or sign-in codes. Additional rights and options depend on applicable law.
Policy updates
The update date appears above. Material changes will be communicated through the service as appropriate for the change and applicable requirements. Contact us for an explanation of this policy or our use of information.
