Plainly

Privacy Policy

Last updated 10 August 2026

Plainly reads the ingredients panel on a product and explains it in plain language. This policy describes exactly what we collect, where it goes, how long we keep it, and how to get rid of it.

The short version. Your health and dietary flags never leave your phone. Photos you take are uploaded to analyse the label, then the original is deleted within 24 hours. If you keep scan thumbnails switched on, a small image of each scan stays in your history until you delete it. We sell nothing and show no advertising.

1. Who we are

Plainly is operated by Rahul Sharma, Baner, Pune, Maharashtra, India. For anything in this policy, contact rahulsharma2r@gmail.com.

2. What we collect

Stays on your phone — never sent to us

Your health and dietary profile — sensitivity flags such as fragrance or nut allergies, skin sensitivity, added-sugar avoidance, and similar — is stored only in the app's local storage on your device. It is never transmitted to our servers, never sent to any analysis provider, and we cannot read it. This is a deliberate design decision, not a policy promise: personalised scoring is computed on the device itself, from a neutral analysis that contains no information about you.

If you uninstall the app, this profile is gone. It is not backed up to us and cannot be restored by us.

Sent to us and stored

WhatWhyHow long
Email address and name To create and sign you into your account, and to sync your history across devices Until you delete your account
Photos of product labels To read and analyse the ingredients panel The original is deleted automatically within 24 hours of upload
Scan thumbnails (optional) So you can recognise past scans in your history Kept until you delete them or delete your data. This setting is on by default and can be switched off in the app
Analysis results — product name, brand, ingredient list, scores and explanations To show your history and trends Until you delete your data
Technical logs — timestamps, error diagnostics, request identifiers To keep the service working and diagnose faults 30 days

We do not collect your contacts, location, advertising identifiers, or browsing activity. We do not use analytics or advertising SDKs.

3. Photographs, specifically

When you scan a product, the photo is uploaded to our storage, passed to our analysis provider to read the label, and the original image is then deleted automatically within 24 hours. It is not used to train any model.

If Keep scan thumbnails is on — the default — a reduced-size copy is kept alongside the scan in your history so you can recognise it later. Switching the setting off stops new thumbnails being kept; deleting your data removes existing ones.

4. Who else processes your data

ProviderWhat they receiveWhere
Anthropic — label analysis The photograph of the product label. No account identifier, no email, and none of your health flags Processed via Anthropic's API. Anthropic does not use API inputs to train its models
Amazon Web Services — hosting and storage All data described in section 2 Mumbai, India (ap-south-1)
Google — sign-in only Confirms your identity when you choose "Continue with Google". Google shares your email address and name with us Per Google's own privacy policy

We do not sell personal data, and we do not share it with advertisers or data brokers.

5. Where your data is held

Data is stored in Amazon Web Services' Mumbai region (ap-south-1). Label analysis is performed by Anthropic, which may process the image outside India. If you are in the European Economic Area or the United Kingdom, transfers outside your region rely on the appropriate safeguards permitted under applicable data protection law.

6. Your rights and how to use them

You can, at any time:

Depending on where you live, these rights arise under the EU/UK GDPR, India's Digital Personal Data Protection Act, or comparable law. Where we rely on consent, you may withdraw it at any time. If you believe we have handled your data improperly, you may complain to your local supervisory authority.

7. Legal bases (EEA and UK users)

Health-related information is treated as a special category of personal data. We have deliberately designed the app so that this information stays on your device and is never processed by us.

8. Security

Data is encrypted in transit and at rest. Stored objects and database records are encrypted with a dedicated key. Access to production systems is restricted. No system is perfectly secure, and we do not claim otherwise.

9. Children

Plainly is not directed at children under 13, and we do not knowingly collect their data. If you believe a child has provided us with personal data, contact us and we will delete it.

10. This is not medical advice

Plainly is an informational tool. Ingredient analysis is generated automatically and may be incomplete or wrong. Do not use it to make medical, dietary, or allergy decisions. Always read the product's own label, and consult a qualified professional about your health.

11. Changes to this policy

If we change this policy we will update the date at the top, and give notice in the app for changes that materially affect you.

12. Contact

rahulsharma2r@gmail.com