Sprig Privacy Policy

Effective date: July 19, 2026

Sprig ("the app") is a recipe manager built around a simple idea: your data belongs on your device. This policy explains what little data leaves it, why, and what happens to it. Sprig is operated by Muhammad Haris Siddiqui ("we", "us").

The short version

Data stored on your device

Everything you create in Sprig — recipes, cookbooks, photos, meal plans, grocery lists, pantry items, ratings, notes, and preferences — is stored locally on your device. Deleting the app deletes this data. We cannot see, access, or recover it.

Data that leaves your device

Optional sign-in (Google or Apple)

If you choose to sign in, authentication is handled by Google Firebase Authentication. We receive and store your name, email address, and a unique user ID as provided by Google or Apple. Sign-in exists to support future syncing features; nothing else is linked to it today. You can delete your account at any time from Settings → Account → Delete account, which permanently removes your authentication record and revokes your Sign in with Apple token. Firebase's handling of this data is described in Google's privacy policy.

AI features (OpenAI)

When you use an AI feature — healthier ingredient swaps, spice-level adjustment, or "What can I cook?" — the relevant recipe text or ingredient list is sent to OpenAI's API to generate a response. These requests contain recipe content only, never your identity, and OpenAI does not use API data to train its models per OpenAI's API data usage policy. AI features are optional; nothing is sent unless you invoke them.

Recipe import

When you import a recipe from a link, the app fetches that page directly from your device, exactly as a browser would. The site you import from sees a normal page request from your IP address; we see nothing.

Purchases (RevenueCat)

Premium subscriptions and purchases are processed by Apple's App Store or Google Play — we never see your payment details. Our billing partner RevenueCat receives purchase receipts and an anonymous (or, if signed in, your account's) user ID to validate purchases and restore them across devices. See RevenueCat's privacy policy.

Grocery checkout links

The optional "Buy ingredients" feature opens retailer sites or apps (Instacart, Walmart, Amazon Fresh, Whole Foods) with your selected ingredient names in the link. Those retailers' own privacy policies govern what happens on their side. No purchase or browsing information comes back to us.

Photos and camera

Photos you attach to recipes stay on your device. Camera and photo-library access is requested only when you use those features and is never used for anything else.

Children

Sprig is not directed at children under 13, and we do not knowingly collect personal information from them.

Data retention and deletion

Changes

If this policy changes materially, the effective date above will change and the update will ship with an app release. Continued use after an update means you accept the revised policy.

Contact

Questions or requests: haris.sidd786@gmail.com