PantryTalk
A premium, Modern Farmhouse lifestyle utility application.
PantryTalk is built on a local-first architecture. Your pantry inventory, expiry dates, and shopping history are stored on your device using an encrypted local database (Drift/SQLite). Grocery lists also live on your device by default. You can use the app fully offline as a guest without linking a cloud account.
In short: Pantry and grocery data stay on your phone unless you choose optional cloud features. If you share a grocery list with someone, that list’s items are stored in our cloud database so invited members can edit in real time — sharing is invite-only (not public or searchable). Optional Shared Household (paid plans) can sync pantry, grocery, and related household data among members you approve. Optional live grocery alerts (PantryTalk Plus or Shared Household members) may use a push token so we can notify you when someone adds items — Free users on free shared lists do not receive these alerts. We do not use that data for advertising. Optional cloud AI sends only the audio or images needed for each request you start; that media is processed for the request and is not stored on our servers afterward.
Effective date: July 2026 · Last updated: 5 September 2026
The data controller responsible for your personal data when you use PantryTalk is the individual developer of the app (not a registered company):
PantryTalk — individual developer
Email: pantrytalk.app@gmail.com
Website: pantrytalk.de
For privacy-related requests (access, deletion, objections), contact us at the email above. We will respond within one month, as required by the GDPR.
Depending on how you use the app, we may process the following categories of data:
| Category | Examples | Where it lives |
|---|---|---|
| Profile & preferences | Display name, kitchen language, notification settings, staple reminder choices | On your device |
| Grocery & pantry data | Item names, quantities, categories, expiry dates, purchase dates | On your device by default; grocery may sync if you share a list (§6); pantry may sync in Shared Household (§7) or Pro backup (§5) |
| Shared grocery list data | List name, items, check-off state, invite details, roles — only when you choose to share or join. Plan limits are shown in the App | Our cloud database (processor) |
| Shared Household data | Household membership; synced grocery, pantry, receipts, and related household rows when you create or join a Shared Household | Our cloud database (processor) |
| Push notification tokens | Device push token and platform, linked to your signed-in user id — only if notifications are enabled and you are eligible for live grocery alerts | Our cloud database + push delivery providers |
| Live alert metadata | Short-lived notify metadata (e.g. list or household label, actor display name, item count) — notification bodies do not include full item names | Our cloud (processor; service-operated) |
| Receipt metadata | Parsed line items and related purchase metadata you keep in the App | On your device (and in Shared Household cloud when that feature is in use) |
| Account data | Google account email and user identifier (when you sign in) | Our authentication provider |
| Cloud AI media | Audio or images you submit for optional AI features (for example voice, receipt, or shelf photos) | Sent for that request only; not stored by us (optional on-device receipt photo copy if you opt in — see §4) |
| Usage & device identifiers | Pseudonymous device ID and parse counts for fair-use AI limits | Our API / quota infrastructure (processor) |
| Anonymous product analytics | Coarse event counts (feature outcomes, app version, shopping country, platform) — no item names, no user id in event rows. You can turn this off in Settings | Our cloud database (processor) |
| Optional contributions | Anonymised ingredient-mapping votes (if you opt in) | Our cloud (processor) |
When you use PantryTalk — including in Guest mode — the following stays on your phone or tablet inside the app’s secure sandbox:
Pantry stays on-device by default. It is not uploaded for free shared grocery lists. It may be synced if you join a Shared Household, or included in an optional Pro cloud backup. Private grocery lists remain on your device only until you share or join. Uninstalling the app or using “delete local data” (when available in Settings) removes local information from your device.
Cloud processing is optional. It requires Google sign-in and enabling the relevant features in Settings. Current optional cloud AI uses include converting voice or images you submit (for example receipts or photos of food) into suggested grocery or pantry lines.
When you start an AI request, the audio or image for that request is sent over an encrypted connection to our API and processed by a third-party AI provider. We use the result to show you suggested items. Media for the request is not retained on our servers after processing completes. Nothing is written to your lists or pantry until you review and confirm.
Optionally, you may keep a compressed copy of a receipt image on your device only. That archive is controlled in Settings and is not uploaded to our servers, Shared Household sync, or cloud backup. On-device retention follows the App’s receipt-history rules for your plan. You are responsible for storage on your device.
If you enable optional community contribution settings, limited store or mapping details you confirm may be prepared so anonymous community knowledge can help other shoppers. Contributions do not include payment details, loyalty IDs, raw receipt images, or your account identity. You can turn these options off in Settings.
Please note: Receipts and photos may contain personal information. Submit only content you have the right to process, and review AI results before confirming.
Cloud AI features are subject to fair-use parse limits that differ by plan (Free and optional paid plans under PantryTalk Plus). Current limits and reset timing are shown in the App and may change. To enforce limits, we store a pseudonymous device identifier and your signed-in user ID together with parse counts — not the content of your lists or the media you submitted.
Limits may be adjusted at any time at the developer’s discretion (for example, to manage cost, abuse, or service quality). We will not use your grocery or pantry content to set personalised limits or for advertising.
If you explicitly enable optional ingredient-matching help in Settings, anonymised mapping votes may be sent to improve shared dictionary quality. This is off by default and can be disabled at any time.
The Pro plan (under PantryTalk Plus) may offer optional cloud backup of a snapshot of your local pantry data. This is off by default until you enable it in Settings and confirm the notice. Other plans may not include cloud backup.
Live grocery list sharing is entirely optional. Nothing is uploaded until you choose to share a list or join with an invite. Before the first share or join, the app shows a short cloud-sharing notice; by continuing you agree to this Privacy Policy and the Terms for list sharing. Plan limits (how many lists and people) are shown in the App. You must be signed in with Google. PantryTalk is not a public social network — shared lists are invite-only, not discoverable in the app, and visible only to people who receive a valid invite from you or the list owner.
When you choose to share or join:
Shared list data is used solely to provide the sharing feature (sync, invites, membership). It is not used for advertising, sold to data brokers, or used to build advertising profiles. We do not run automated text moderation on list names or item names; see §9 for how to report abuse.
Shared Household is optional and tied to paid access under PantryTalk Plus or membership in a household someone else created. When you create or join, selected grocery, pantry, receipt, and related household data sync via our cloud so members stay aligned. Invite and approve controls who joins (member limits are shown in the App). You can leave; admins control household lifecycle as described in the App. Shared Household is not a public social network — membership is invite/approve only.
Household cloud data is used to operate sync and related household features. It is not used for advertising. Reporting misuse follows the same channels as shared lists (§9).
When eligible and enabled, we may send batched alerts when someone else adds grocery items to a shared list or Shared Household list. Alerts are a convenience only; they may be delayed or missed. Eligibility (for example paid Plus or Shared Household membership) is shown in the App. Free users on free shared lists without that entitlement do not receive these alerts.
To deliver alerts we may store a device push token linked to your signed-in account and use a push-delivery provider. Short-lived notify metadata may include a list or household label, an actor display name, and an item count — not full item names in the notification body. Turn off live grocery alerts or master notifications in Settings, or sign out, to stop registration; we remove stored tokens when those actions apply. Push data is not used for advertising.
Shared lists and Shared Households are meant for household or trusted contacts. If another member posts offensive, harassing, or unlawful content, or if you believe someone is misusing the feature:
We do not provide in-app chat, public profiles, or content feeds. Reporting and owner controls are how we address misuse without automated filtering of grocery item text.
PantryTalk does not show third-party advertisements in the app and does not sell your personal data. Grocery lists you choose to store in the cloud for sharing, your pantry data, voice input, receipt images, shelf photos, and account information are not used for targeted advertising or shared with advertising networks.
We use third-party services only as described in this policy (authentication, AI parsing, hosting, quotas, optional push delivery, optional sync) to operate the app — not to monetise your content through ads.
When you enable cloud AI features, you are responsible for how you use them. Before the first use, the app shows a short Enable cloud AI notice. By tapping Enable cloud AI, you agree to this Privacy Policy and the Terms of Service for those features. The in-app notice summarizes that audio or photos you submit are sent for that request only, that you must review AI results before saving, and that you are responsible for how you use what you keep. Enabling cloud AI turns on the main AI-related settings together; you can turn individual features off anytime in Settings.
In particular:
If we materially change cloud AI responsibilities, we will update this policy and may ask you to accept the updated terms in the app before using those features again.
We use trusted providers to deliver authentication, sharing, AI parsing, hosting, and optional push:
Each provider processes data only as needed to perform their service. Their own privacy policies apply to infrastructure they control. We do not sell your personal data to advertisers or data brokers.
If you are in the European Economic Area (EEA), UK, or Switzerland, we rely on:
Local-only use as a guest does not require cloud processing and is not dependent on consent for third-party AI.
We may discontinue the App, website, cloud APIs, sync, backups, push delivery, or related services (in whole or in part). Where practicable we will give reasonable advance notice (for example via the App, website, or store listing).
After notice, or when the service ends, we may delete or anonymise cloud personal data we hold (shared lists, Shared Household data, backups, push tokens, account records, and related metadata), subject to legal obligations or abuse investigations. Local data on your device remains under your control until you clear it or uninstall. You should export or copy any information you need before cloud features shut down.
Discontinuation does not create a right to continued cloud storage, sync, or paid entitlements beyond what applicable law and the app stores require. Subscription billing and refunds are handled under the Terms of Service and store rules.
Our processors may process data in the United States and other countries outside your home jurisdiction. Where required, we rely on appropriate safeguards such as the EU Standard Contractual Clauses and processor Data Processing Agreements. You may request more information about transfers by contacting us.
You have the right to:
To exercise these rights, email pantrytalk.app@gmail.com. We may need to verify your identity before fulfilling a request.
PantryTalk is not directed at children under 16 in the EEA/UK (or under 13 elsewhere) without parental consent. We do not knowingly collect personal data from children. If you believe a child has provided us data, contact us and we will delete it promptly.
We use encrypted transport for cloud API communication, authenticated access for cloud features, and on-device sandboxing for local data. No method of transmission or storage is 100% secure; please keep your device and account credentials protected.
We may update this Privacy Policy when features or legal requirements change. We will post the new version on this page and update the “Last updated” date. Material changes to cloud AI processing may require you to accept updated responsibilities in the app before using those features again. Material changes to live list sharing may require you to accept the shared-list cloud notice again before sharing or joining.
Questions about privacy, GDPR requests, or reports about shared-list or household abuse:
pantrytalk.app@gmail.com