Privacy Policy for Shopper Assist

Effective Date: September 30, 2026
Last Updated: September 28, 2026

Shopper Assist, LLC ("we," "us," or "our") operates the Shopper Assist mobile application (the "App"). This Privacy Policy explains what information the App collects, how we use it, and the choices you have.

By using the App, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the App.


1. What the App Does

Shopper Assist lets you scan a product's barcode, photograph the front of a package, type a product or company name, enter a produce sticker code, choose a screenshot of a shopping cart or order, or enter a vehicle identification number (VIN) to see:

The App covers packaged goods, cosmetics and household products, books, medicines and medical supplies (via FDA records), fresh produce sold by sticker code, basic foods sold by kind (such as meat, eggs and milk, via USDA data), and cars (via NHTSA). To provide these features, the App looks the item up in public and third-party data sources (described in Section 4) and displays the results to you.

An optional Political tab (switched on in Profile) shows candidates, sitting officials and corporate PACs from the same public records, and a My Shopping Impact page sums, for the products you mark as purchased, where their makers' political money went. Neither involves any information about you beyond what is described in Section 2.


2. Information We Collect

The App does not have user accounts. You never create a login, and we do not collect your name, email address, or password.

### a. Information You Provide
- Nutrition preferences. The healthy/unhealthy thresholds and dietary settings you configure in the App (for example, target sugar or calorie levels). These are stored on your device.
- Body weight. If you enter your body weight in Preferences, it is stored only on your device and is sent with score requests solely to personalize the Safety score's "% of daily limit" figures. We do not store it on our server.
- Reviews you post. If you rate or review a product, we store the rating and your comment together with a random identifier generated on your device (so you can edit or remove your review). That identifier is not linked to your name, Apple ID, Google account, or device hardware. If you report another user's review, we store the report and your reason, if you give one, so we can moderate it.
- Product photos you choose to send. If a product isn't recognized, you can choose to send a photo of its front so we can add it; if a product has no ingredient list on file, you can photograph its ingredient panel, and the text read from it on your device becomes that product's ingredient list (marked as read from a label photo). In both cases the photo, the text read from it and the barcode (if any) are stored on our server for our review queue, are never shown to other users in the App, and are deleted once reviewed or after 90 days at the latest. After a person has reviewed it, we may contribute the photo, with the product's name, brand and barcode, to the Open Food Facts family of public databases (Open Food Facts, Open Beauty Facts, Open Products Facts) under their open licences, so the product is recognized for everyone; nothing about you, your device or your location is included, and a contributed photo stays in those databases under their terms. Please frame only the product; do not include people or personal papers.
- Search terms. Product and company names you type into Search, and candidate, official, PAC or country names, state names or ZIP codes you type into the Political tab, are sent to our server to run the search. A ZIP code is used only to look up its congressional districts and appears only in short-lived server logs. When a product or company search or a scan finds nothing, we keep the term or barcode, but not who searched for it, in a list that guides what we add next.
- Cart screenshots ("Check a cart"). If you choose a screenshot of a shopping cart or order from your photo library, the text is read on your device (Apple's on-device text recognition on iPhone, Google's on-device ML Kit on Android). The picture never leaves your device and is discarded after it is read. Only the item names read from it are sent to our server, one at a time, as search terms; prices, quantities, store names, addresses and everything else in the picture are dropped on your device before anything is sent, and the item names are handled like any other search term above.
- "Purchased?" answers. If you answer "Purchased?" on a product page, the answer is stored only on your device. To build the My Shopping Impact page, the App sends our server only the identifiers of the makers of those products — never the products, the answers or anything about you — and the request appears only in short-lived server logs. You can clear every answer with the Reset link on that page or by clearing your scan history.
- Countries to highlight. Countries you choose to highlight on the Political tab or in Preferences, so that makers controlled from them are flagged, are stored only on your device and are never sent to our server.

### b. Information Collected Automatically
- Scan data. The barcode, produce code or other product identifier you scan is sent to our server to look the product up. Products found are cached on our server as product records, not linked to any person; the request itself appears only in short-lived server logs (see Technical data). Your scan history is kept on your device.
- Vehicle identification number (VIN) lookups. If you enter or scan a VIN, we send it to the National Highway Traffic Safety Administration's public database to retrieve vehicle and recall information for that vehicle. The VIN is used only to perform that lookup and is not retained by us afterward, in any form — it is not stored, logged, or linked to reviews. The result appears in the scan history on your device only, which you can clear at any time.
- Label text ("Scan item front"). If you photograph the front of a package or a produce sticker, the text is read on your device using Apple's on-device text recognition. Only the recognized words are sent to our server to match a brand, product or produce code; the photo itself never leaves your device unless you then choose to send it (see Product photos above), and is otherwise discarded after it is read.
- Camera access. The App uses your device's camera to scan barcodes, labels, and VINs. We do not store or transmit the camera feed or any photos beyond what is needed to read the barcode, label, or VIN, unless you explicitly choose to save an image.
- Photo library access. The App opens your photo library only when you choose a cart screenshot, reads only the picture you pick, and does not scan, index or upload your photos.
- Technical data. When the App contacts our server, the server receives the standard technical information any internet request carries (such as your IP address and the App version) and keeps it in short-lived logs, up to 30 days, to keep the service running and to limit abuse. Each request also carries the App's random device identifier (see Reviews above) so that our server can limit how many lookups one installation makes per day; the identifier is not linked to you. VINs and your body weight are removed from these logs. We do not collect usage analytics.
- Crash reports. If the App fails, it sends our server the error text, the screen it was on, the App version, the operating system version and the App's random device identifier, so we can fix the problem. Crash reports contain no name, account, location, photos or scans, and are deleted within 90 days. You can turn this off at any time in Preferences → Send crash reports.

### c. Subscription and Billing Information
The App offers a 7-day free trial followed by an auto-renewing paid subscription (monthly or annual, depending on the plan you choose). Subscriptions are billed and processed through the Apple App Store or Google Play, depending on your device, and are tied to your Apple ID or Google account — no separate login with us is required. To know whether your trial or subscription is active, the App uses RevenueCat, a subscription-management service: it receives the App Store's or Google Play's purchase receipt and stores your subscription status under an anonymous identifier that RevenueCat generates (not your name, email, Apple ID or Google account); see the RevenueCat Privacy Policy. We do not receive or store your payment card number or other billing credentials — that information is collected directly by Apple or Google under their own privacy policies. We may receive limited transaction information from Apple/Google (such as subscription status, plan type, trial/renewal dates, and a transaction or purchase ID) to verify your access to paid features.

Because the subscription auto-renews, your payment method will automatically be charged for the next billing period (monthly or annual) unless you cancel at least 24 hours before the end of the current period. Your account will be charged for renewal within 24 hours prior to the end of the current period, at the price you agreed to when subscribing (or a then-current price, if we have provided you advance notice of a price change as required by Apple/Google policy and applicable law). You can manage or turn off auto-renewal at any time in your Apple ID or Google Play account settings; doing so during the free trial or a paid period will not trigger a refund for the current period already paid or the unused portion of the trial, except where required by law or platform policy.

### d. Information We Do Not Collect
We do not collect payment card numbers, government ID numbers, or precise health/medical records. Nutrition preferences you set (e.g., "low sugar") reflect a personal preference, not a medical diagnosis, and are treated as ordinary app settings.


3. How We Use Information

We use the information above to:

We do not sell your personal information.


4. Third-Party Data Sources and Services

To show you political-involvement, safety, review, and nutrition information, our server queries public and third-party data sources. These lookups are about the product or company, not about you — our server sends only the barcode, code, VIN, or search words needed to retrieve public information, never anything that identifies you, and this policy does not control how those sources separately handle any data you interact with directly. The sources currently used are:

The App also uses Apple's and/or Google's in-app purchase systems to manage your free trial and subscription billing. Their handling of your payment information is governed by the Apple Privacy Policy and Google Privacy Policy, not by us.


5. Data Sharing

We share information only:

We do not share your scan history or nutrition preferences with product manufacturers or political organizations.


6. Data Retention

Your scan history, "Purchased?" answers, nutrition preferences, countries to highlight and body weight are stored only on your device; you can clear your scan history and your "Purchased?" answers in the App at any time, and deleting the App removes all of it. Cart screenshots are never stored by the App. Server logs are kept up to 30 days. Reviews stay until you delete them in the App. Photos you send for review are deleted from our server once handled and after 90 days at the latest; a copy we contributed to the Open Food Facts databases after review stays there under their licence. VINs are never retained. Product records and the anonymous list of unmatched searches and barcodes contain nothing about you and are kept to run and improve the App, unless a longer retention period is required by law.


7. Your Rights and Choices

Depending on where you live, you may have the right to:

To exercise these rights, contact us at hello@getshopperassist.com. Residents of California, the EU/UK, and other jurisdictions with specific privacy laws (CCPA/CPRA, GDPR, etc.) may have additional rights under those laws.


8. Children's Privacy

The App is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us at hello@getshopperassist.com and we will delete it.


9. Security

We use reasonable technical and organizational measures to protect information from unauthorized access, alteration, or loss. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.


10. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the App or by other reasonable means before the changes take effect. The "Last Updated" date above reflects the most recent revision.


11. Contact Us

If you have questions about this Privacy Policy, contact:

Shopper Assist, LLC
Brooklyn, NY
hello@getshopperassist.com