Privacy Policy
GAS is developed and operated by Sankit Acharya as an independent developer ("we", "I"). This policy explains what data the GAS app collects, why, and what happens to it. The short version: your data is used to run the app for you — it is never sold, never used for advertising, and never shared beyond the service providers needed to operate the app.
What we collect
| Category | Data | Why |
|---|---|---|
| Account | Email address, name, and profile picture (if you sign in with Google), or phone number (if you sign in with phone verification) | To create and secure your account |
| Health logs | Meals (descriptions, ingredients, estimated nutrition), meal photos, bowel movement logs, sleep duration, water intake, stress levels, bloating levels, and symptoms you record | This is the core function of the app: tracking the data you choose to log and showing you trends over time |
| Device | A push-notification token for your device | To deliver notifications you enable |
Health data
Everything you log in GAS — meals, bowel movements, sleep, water, stress, bloating, symptoms — is health-related personal data. It is visible only to you, inside your account. It is used solely to provide the app's features to you (your history, trends, and insights) and is never used for any other purpose.
Meal photos and AI analysis
When you attach a photo to a meal, two things happen:
1. The photo is stored privately in Google Cloud Storage, linked to your account, and served back to you through short-lived access links.
2. The photo and your meal description are sent to Google's Gemini API to estimate the meal's ingredients and nutrition. Google processes this data as a service provider to deliver the analysis result; it is governed by the Google Cloud terms, under which customer data is not used to train Google's models.
Service providers
GAS's backend runs on Google Cloud Platform, and its database is hosted on Railway. The providers that process your data on our behalf are:
| Provider | Purpose |
|---|---|
| Firebase Authentication | Sign-in (Google or phone number) |
| Google Cloud Run | Hosting the app's backend |
| Railway | Hosting the app's database (account details and health logs) |
| Google Cloud Storage | Storing meal photos |
| Google Gemini API | Meal photo and nutrition analysis |
| Firebase Cloud Messaging | Push notifications |
No other third party receives your personal data.
Retention and deletion
Your data is kept for as long as your account exists. When your account is deleted, all of it — account details, every health log, and every photo — is permanently deleted. See how to delete your account. Routine operational logs (used for debugging and service health) contain no health-log content and expire automatically.
Security
All data is transmitted over encrypted connections (TLS) and stored with encryption at rest by the hosting providers above. Access to your data requires your authenticated session; there is no public access to any of it.
Your rights
You can access all of your logged data in the app at any time. You can delete individual logs in the app, or delete your entire account and all associated data. Depending on where you live, you may have additional legal rights (such as access, correction, portability, or erasure under GDPR or similar laws) — to exercise any of them, contact us at the address below.
Children
GAS is not directed at children under 13, and we do not knowingly collect data from them. If you believe a child has created an account, contact us and it will be deleted.
Changes
If this policy changes materially, the effective date above will be updated and the app will point to the current version at this address.
Contact
Questions or requests about your data: gas.app@sankit.dev