MacroSidekick Privacy Policy

Effective August 26, 2026

MacroSidekick is operated by SmartBids.ai Corp. This policy explains what information MacroSidekick processes, why it is used, and the choices available to you.

Information you provide

How we collect information

We collect information directly when you create or edit your profile, submit text, voice or photos, log food or weight, save a recipe or memory, use Friends, contact support, or request beta access. We also receive sign-in identifiers and verified account details from the provider you choose, and create service records when the app synchronizes your account with Firebase. MacroSidekick does not collect data from HealthKit, contacts, advertising networks, or data brokers.

How information is used

We use this information to authenticate your account, synchronize your data, estimate meal nutrition, personalize your plan and coaching, save your recipes and history, connect you with friends you choose, moderate content shared through Friends, respond to support requests, keep the service secure, and operate and improve core app functionality.

Friends and activity sharing

Signed-in members can search the private member directory by name and send a friend request; email addresses are never shown in search. You can turn off name discovery in Friends at any time. No meal activity is visible until you accept a request, and you can pause activity sharing independently of name discovery. Accepted friends can see approved shared meal names, descriptions, photos, timestamps, calorie and macronutrient estimates, daily totals, and nutrition targets while sharing is enabled. Meal text and photos are automatically screened before they can appear to friends; content that is flagged or cannot be screened is not shared. Your weight, birthday, biological sex, Sidekick conversations, memories, and recipes are not shared through Friends. You can remove a friend, block or unblock an account, and report inappropriate shared content or conduct at any time. Reports are retained as needed to review abuse, protect users, and enforce our terms.

AI processing and your permission

MacroSidekick does not send personal data to an AI provider until you give explicit permission in the app. If you allow it, MacroSidekick sends data to OpenAI, LLC only when an AI feature needs it to fulfill your request. Depending on the feature, that data can include:

OpenAI processes this information to transcribe voice, analyze meal photos and descriptions, estimate nutrition, perform requested calculations, generate coaching responses, and execute the account actions you request through Sidekick. Data sent through the OpenAI API is not used to train or improve OpenAI models by default unless SmartBids.ai Corp. separately opts in. OpenAI may retain API content in abuse-monitoring logs for up to 30 days, and Responses API application state for at least 30 days when stored to continue a conversation. Audio transcription content has no application-state or abuse-monitoring retention under OpenAI’s current API data-control documentation. Image inputs are scanned for child-safety content and may be retained for review if flagged.

You can review or revoke permission at any time in You → Data & AI. Revocation immediately prevents future AI requests from this app and our backend; manual profile and journal features continue to work. Revocation does not retroactively erase data that a processor must temporarily retain for security or legal reasons. See OpenAI API data controls and the OpenAI Privacy Policy.

Other service providers

MacroSidekick also uses Apple for TestFlight invitations and Apple, Google, or Microsoft for sign-in; Google Firebase for account and beta-request data storage; Railway for backend hosting; and optional Google Analytics measurement on macrosidekick.com when a visitor explicitly allows analytics. Website analytics never includes meal data or the email entered in the beta form, and advertising signals remain disabled. We contract with providers to process data only for the described services and require privacy and security protections that are the same as or equivalent to the protections described in this policy. We do not sell personal information, serve targeted advertising, or use cross-app tracking.

Storage and retention

Your account, profile, nutrition, user-content, friend and beta-request data are stored in MacroSidekick’s dedicated Firebase project; signed-in app data is also cached on your device for speed. OpenAI retention is described in the AI section above. We retain account data while your account is active and beta-request data while the beta is active, or as needed to provide the service, comply with law, resolve disputes, protect users, and enforce agreements.

Your choices and deletion

You can edit meals, weight history, recipes, memories, profile information, and nutrition targets in the app. Open You → Data & AI to review, allow, or revoke OpenAI processing permission. Open Friends to turn name discovery on or off, pause meal-activity sharing, accept or decline requests, remove a connection, or manage blocked accounts. Open a friend's profile menu to block the account or submit a report. To permanently delete your account and associated data, open You → Data & AI → Delete account and confirm; deleting an account also removes its friend connections and safety records. You may also email support@dictaflow.io. Signing out clears the local account cache; deleting the app does not automatically delete cloud data.

Security and age

We use encrypted network connections, provider authentication, and access controls designed to protect your information. No method of storage or transmission is completely secure. MacroSidekick is intended for adults age 18 and older and is not directed to children.

Wellness disclaimer

MacroSidekick provides estimates and general wellness support. It is not medical advice and is not intended to diagnose, treat, cure, or prevent any condition. Consult a qualified professional for medical or dietary care.

Changes and contact

We may update this policy as the service evolves. Material changes will be reflected here with a new effective date. Questions can be sent to support@dictaflow.io.