1. Personal Information Collected
The Company collects the following personal information to provide its services.
Required Information
- Email address and password (for email sign-up)
- Name, email, and profile picture (information provided by Google, Kakao, or Apple when using social login)
- Refrigerator ingredient data (entered by the user)
Optional Information
- Nutrition goals and dietary restrictions (in profile settings)
- Family member information (when using family sharing)
- Health data (only when iOS HealthKit / Android Health Connect integration is consented to)
Information Collected Automatically During Service Use
- Device information (device model, OS version, app version)
- Service usage records, access logs, and cookies
- Error and crash reports (anonymous error data via Sentry)
- Push notification tokens (FCM Token, when notifications are enabled)
2. Device Permission Usage
When using the app, the following device permissions are requested. The purpose of each permission is as follows.
- Camera: For taking photos of ingredients and AI auto-recognition. Captured images are deleted immediately after AI analysis and are not stored permanently on our servers.
- Photo Library (Gallery): For selecting ingredient photos from your gallery and AI recognition
- Microphone: For voice-based recipe search and hands-free control while cooking
- Face ID / Fingerprint Authentication: Used for fast and secure sign-in. Biometric data is stored only in the device's secure enclave and is never sent to our servers
- Health Data: Accessed only with your consent for personalized recipe recommendations and nutrition integration
- Notifications: For ingredient expiration alerts, cooking timers, and service announcements
3. Purposes of Collection and Use
- Service Provision: Refrigerator ingredient management, AI recipe recommendations, smart menu suggestions
- Member Management: Identity verification, account security, prevention of misuse
- Personalization: Tailored recommendations based on eating habits and nutrition goals
- Subscriptions and Payments: In-app payment processing and subscription status management
- Customer Support: Inquiry handling and error resolution
- Service Improvement: Usage analytics and new feature development
- Marketing and Advertising: Announcements about new services and events (with separate consent)
4. AI Data Usage Notice
For Friji's AI features (recipe recommendations, ingredient recognition, etc.), the ingredient lists and cooking requests you submit may be sent to LLM service APIs such as Anthropic (Claude). Transmitted data is used solely for service provision and is not stored for AI model training.
5. Third-Party Service Providers
The Company uses the following third-party services to operate. Please review the privacy policy of each service.
- Supabase: User authentication and data storage
- Firebase / Google: Push notification delivery and error reporting
- RevenueCat: In-app payments and subscription management
- Anthropic: AI recipe recommendations and ingredient analysis
- Sentry: App error monitoring
- PostHog: Service usage analytics
6. Retention and Use Period
In principle, personal information is destroyed without delay once the purpose of collection and use has been fulfilled. However, the following information is retained for the periods set by applicable laws.
- Contract or withdrawal records: 5 years
- Consumer complaint or dispute records: 3 years
- Access logs: 3 months
7. Destruction Procedure and Method
- Electronic files: Permanently deleted using non-recoverable methods
- Account deletion: Personal information can be deleted immediately via the "Delete Account" feature in the app
8. Rights of Data Subjects
Users may exercise the following rights at any time.
- Request to view personal information
- Request to correct or delete personal information
- Request to suspend the processing of personal information
- Withdraw consent: via in-app settings or by contacting privacy@friji.app
Account and data deletion can be performed directly within the app via Profile → Delete Account.
9. Data Security
- All data transmission uses HTTPS/TLS encryption
- Passwords are hashed using one-way hashing
- Sensitive information is protected by device secure storage and server security policies
10. Children's Privacy Protection
Friji is not intended for children under 14. If personal information of a child under 14 is collected, we will delete it immediately. Guardians may contact us at privacy@friji.app.
11. Advertising Identifiers
The Company may use Android Advertising ID and iOS IDFA for service analytics and advertising effectiveness measurement. You can limit ad tracking in your device settings.
12. Changes to the Privacy Policy
If this policy is changed, we will notify you in advance through in-app announcements and email. Continued use of the service after changes is deemed as agreement to the revised policy.
13. Privacy Officer
For complaint handling and remedies related to personal information, you may report to the Personal Information Protection Commission or the Korea Internet & Security Agency (KISA).
This policy takes effect on April 3, 2026. For inquiries, please contact privacy@friji.app.