Privacy Policy
Last Updated: May 6, 2026
At KnowLabel, we respect your privacy and are committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, and your rights.
1. What Information We Collect
Account Information
- Email address — used for account creation, login, and communication
- Password — stored securely using bcrypt encryption
Payment Information
- Payment details — processed securely through Stripe (we never store credit card numbers)
- Billing information — name, billing address as required by Stripe
- Subscription status — whether you have an active premium subscription
Scan & Usage Data
- Ingredient lists — the text or photos you submit for analysis (processed in real-time, not stored)
- Personal allergen preferences — allergens you've selected in your profile
- Usage statistics — number of scans per month (for free tier limits)
Technical Information
- IP address — for security and fraud prevention
- Browser type and device information — to optimize the app experience
- Cookies and session data — to keep you logged in
2. How We Use Your Information
- Ingredient analysis — to process your scans using AI (Claude API)
- Account management — to create and maintain your account
- Subscription management — to process payments and manage premium status via Stripe
- Communication — to send account verification emails and important updates (via SendGrid)
- Product improvement — to understand usage patterns and improve KnowLabel
- Legal compliance — to comply with applicable laws and regulations
3. Third-Party Services
We share your data with trusted third-party services to provide KnowLabel:
Anthropic (Claude AI)
We send your ingredient lists to Anthropic's Claude API for analysis. Anthropic may process and store this data according to their Privacy Policy.
Google Cloud Vision
When you upload a photo, we use Google Cloud Vision API to extract text from the image. Google processes the image according to their Data Usage Policy.
Stripe
Payment processing is handled by Stripe. We never store your credit card details. Stripe processes your payment information according to their Privacy Policy.
SendGrid
We use SendGrid to send account verification and transactional emails. SendGrid processes your email address according to their Privacy Policy.
Railway (Hosting)
KnowLabel is hosted on Railway's infrastructure. Railway processes your data according to their Privacy Policy.
4. How Long We Keep Your Data
- Account data — kept until you contact us to delete your account
- Payment records — kept for 7 years for tax and legal compliance
- Usage statistics — scan counts retained as long as account is active
- Verification tokens — purged after email verification or 24 hours
5. Your Rights
GDPR Rights (European Users)
If you're in the EU/EEA, you have the right to:
- Access — request a copy of your personal data
- Rectification — correct inaccurate data
- Erasure — request deletion of your data ("right to be forgotten")
- Data portability — receive your data in a machine-readable format
- Object — object to processing of your data
- Withdraw consent — opt out at any time
CCPA Rights (California Users)
If you're in California, you have the right to:
- Know — what personal information we collect and how we use it
- Delete — request deletion of your personal information
- Opt-out — opt out of the "sale" of your personal information (we don't sell data)
- Non-discrimination — equal service regardless of privacy choices
How to Exercise Your Rights
Email us at hello@elevatewebstudiohq.com with your request. We'll respond within 30 days.
6. Security Measures
We protect your data with industry-standard security practices:
- Encryption — HTTPS/SSL for all data in transit
- Password hashing — bcrypt encryption for passwords
- Secure hosting — Railway's enterprise-grade infrastructure
- Access controls — limited access to customer data on a need-to-know basis
- Regular updates — security patches and software updates
No system is 100% secure, but we take your privacy seriously and continuously improve our security practices.
7. Cookies & Tracking
We use cookies to:
- Keep you logged in — session cookies for authentication
- Remember preferences — allergen selections, product context
- Usage tracking — scan count for free tier limits
We do not use third-party advertising cookies or sell your data to advertisers.
8. Children's Privacy
KnowLabel is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe we've collected data from a child, contact us immediately and we'll delete it.
9. International Data Transfers
KnowLabel is operated from the United States. If you access the service from outside the US, your data may be transferred to and processed in the US. We comply with applicable data transfer regulations (GDPR, Privacy Shield, etc.).
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we'll update the "Last Updated" date at the top and notify you via email if the changes are significant. Continued use of KnowLabel after changes constitutes acceptance of the updated policy.
11. Contact Us
Questions, concerns, or privacy requests? Contact us:
- Email: hello@elevatewebstudiohq.com
- Subject Line: "Privacy Request"
We'll respond within 30 days.