Privacy
Privacy Policy
Effective August 27, 2026
This Privacy Policy explains what information Recipe Curveball may collect when you use the Recipe Curveball website (recipecurveball.you) and the Recipe Curveball Android app, why it is collected, and how you can delete your account or data. The Android app loads the same website inside an app shell, so the same practices described here apply to both.
Information You May Provide
- Account & sign-in information. If you create an account, Recipe Curveball stores the email address you sign up with. You can sign in with an email and password or with Google sign-in. Email sign-up requires you to confirm your email address before the account is active.
- Saved recipes & recipe notes. When you save a recipe, Recipe Curveball stores the recipe title, the full recipe content (ingredients, directions, servings and any other details read from the recipe), the source name and web address when the recipe came from a link, the substitute alternatives you chose, the category you file it under (Breakfast, Lunch & Dinner or Desserts), and any personal cooking notes you add — including the substitution details that are added to your notes automatically.
- Allergies & avoidances. The ingredients you add to your Allergies & Avoidances list, along with your allergen selections and whether you want them applied automatically, are saved to your account. They are used to flag matching ingredients in a recipe and to filter those ingredients out of suggested substitutes.
- Shopping list items. Ingredients you add to your shopping list are saved to your account, along with the recipe they came from and whether you have checked them off.
- Profile photo (optional). If you add a profile photo, the image is resized on your device and the stored copy is kept in your account's private storage. Only your account can view it.
- Your dish photo (optional). If you use Add My Photo on a saved recipe, the image is cropped and resized on your device and the stored copy is kept in your account's private storage. Only your account can view it, and you can remove it at any time.
- Recipe links you submit. If you add a recipe by pasting a web link, Recipe Curveball reads the page at that link to find the recipe. If you save that recipe, the source web address may be stored with it.
- Deletion or privacy requests. If you submit the form on the Delete Account page, the name (optional), email address and message you provide are stored so the request can be matched to your account and handled.
Information Stored on Your Device
Some information is kept only in your web browser and is not sent to your account: the recipe you are currently working on, the substitutes you have chosen and the notes in progress for that recipe are kept in your browser's session storage and are cleared when the browsing session ends. Whether the cookbook cover has been opened during this session is also kept in session storage. Marks showing which ingredients you already have are kept in your browser's local storage on your device. If you are signed in, your sign-in session is also stored by your browser so you stay signed in.
How Your Account Data Is Stored & Synced
Account data — your saved recipes, notes, allergies & avoidances, shopping list and profile photo — is stored with Recipe Curveball's backend provider (Lovable Cloud, powered by Supabase). It is tied to your account so you can reach it again from the website or the app after you sign in. Security rules allow each account to read and change only its own data.
Recipe Reading & Artificial Intelligence
When you paste a recipe link, Recipe Curveball fetches that page and sends the page text to its recipe-reading service (the Lovable AI Gateway, using a Google Gemini model) so the recipe can be returned to you word for word. Only the recipe page content is sent for this step.
Recipes you type in manually aren't sent anywhere for reading.
Ingredient substitutions are not generated by artificial intelligence. They come from a built-in rules and ingredient database that runs as part of Recipe Curveball, so your avoidances and the ingredient you want to change are not sent to an AI service.
How To Delete Your Account or Data
If you can sign in, you can delete everything yourself: open Account (the “You” tab) and choose Delete Account. This immediately and permanently removes your saved recipes and notes, allergies & avoidances, shopping list, food-needs preferences, profile photo and your sign-in account itself. It cannot be undone.
If you cannot sign in, visit the Delete Account page and submit the email address tied to your account so the request can be matched. Deletion requests are handled as soon as reasonably possible.
You can also delete individual items — saved recipes, avoidances and shopping-list items — inside the app, and clear device-only information by clearing your browser data or uninstalling the app.
Third-Party Services
Recipe Curveball relies on a small number of services to operate:
- Lovable Cloud (powered by Supabase) — hosts the website and app, provides sign-in, and stores account data such as saved recipes, avoidances, shopping lists and profile photos.
- Lovable AI Gateway & Google Gemini — used only to read a recipe from a link you paste, and only when the page has no structured recipe data. It is never used for your photos or for substitutions.
- Google — provides Google sign-in. If you use it, Google handles your sign-in and shares the account information needed to sign you in.
- A web reader service (r.jina.ai) — used as a fallback to read the text of a recipe page when a direct fetch of your link does not work. In that case the recipe link is sent to that service.
- Google Play — distributes the Android app. Google Play may collect information required to install and update the app, under Google's own policies.
These services may process data as needed to provide their functions, each under their own terms and policies. Data is sent between your device and these services over encrypted (HTTPS) connections.
What Recipe Curveball Does Not Do
Recipe Curveball does not sell your personal information. It does not use advertising networks or advertising trackers, and it does not sell or rent your data to third parties.
Technical & Diagnostic Information
When something goes wrong, Recipe Curveball reports technical error information — such as the error message, the page route involved and technical details about the failure — to its hosting and error reporting tools. Standard server request logs may also be recorded by the hosting provider. This is used only to identify and fix problems.
Changes to This Privacy Policy
Recipe Curveball may update this Privacy Policy from time to time. When it does, the updated policy will be posted on this page with a new effective date. Continuing to use Recipe Curveball after a change means you accept the updated policy.