Privacy Policy for Smart Recipe Adaptation Extension
Last Updated: October 8, 2025
Overview
The Smart Recipe Adaptation Extension ("we," "our," or "the extension") is committed to protecting your privacy. This privacy policy explains how we collect, use, and protect your information when you use our Chrome extension.
Information We Collect
Web Browsing Activity Collection
Recipe Content Collection: Our extension automatically detects and collects recipe content from websites you visit, including:
- Recipe ingredients, instructions, and nutritional information
- Website URLs and page titles where recipes are found
- Recipe metadata (cooking time, servings, difficulty level)
- Images associated with recipes (when available)
Collection Scope: We only collect content that is identified as recipe-related. General browsing activity, personal information, or non-recipe content is not collected.
External API Data Transmission
To provide enhanced recipe adaptation services, we transmit certain data to our secure proxy service:
- Recipe Content: Ingredient lists and recipe instructions for processing
- User Preferences: Dietary restrictions and adaptation requirements (anonymized)
Data Security: All external communications use HTTPS encryption with TLS 1.3 or higher. No personally identifiable information is transmitted.
Data Stored Locally
The extension stores the following information locally on your device using Chrome's storage API:
User Preferences
- Dietary Restrictions: Your selected dietary preferences (vegan, vegetarian, gluten-free, etc.)
- Medical Conditions: Health conditions you've specified for recipe filtering (diabetes, hypertension, etc.)
- Allergies: Food allergies and intolerances you've configured
- Taste Preferences: Spice level, sweetness preferences, and flavor profiles
- UI Settings: Theme preferences (light/dark mode) and interface customizations
Recipe Data
- Adapted Recipes: Recipes you've modified using our extension, including:
- Original recipe content (ingredients, instructions, nutritional information)
- Your adaptations and substitutions
- Personal notes and tags you've added
- Source website information (URL and site name)
- Creation and modification timestamps
- Recipe History: A record of recipes you've previously adapted
- Saved Substitutions: Your preferred ingredient substitutions and customizations
Usage Data
- Extension Settings: Configuration preferences for how the extension operates
- Theme Preferences: Your choice of light or dark mode interface
Data We Do NOT Collect
- Personal Identification: We do not collect names, email addresses, phone numbers, or other personally identifiable information
- Browsing History: We do not track or store your general web browsing activity
- Location Data: We do not access or store your geographic location
- Device Information: We do not collect information about your device, operating system, or hardware
- Analytics Data: We do not use analytics services or tracking pixels
- Social Media Data: We do not access or integrate with social media accounts
How We Use Your Information
Primary Uses
- Recipe Adaptation: To provide personalized recipe modifications based on your dietary needs
- Preference Storage: To remember your settings between browser sessions
- Safety: To filter out potentially harmful ingredients based on your medical conditions and allergies
Data Processing
- Recipe content is processed locally on your device
- For enhanced functionality, recipe data is sent to our secure proxy service using TLS 1.3 encryption
- Proxy service logs are retained for 30 days for security monitoring
- Recipe adaptations are computed using our secure infrastructure
Data Storage and Security
HTTPS Encryption for All External Communications
Secure Transmission: All data transmitted to our proxy service is encrypted using:
- HTTPS with TLS 1.3 encryption protocol
- RSA 2048-bit or higher encryption keys
- Perfect Forward Secrecy (PFS) for session security
- Certificate pinning to prevent man-in-the-middle attacks
Data at Rest: All stored data uses AES-256 encryption standards.
Local Storage
- All personal data is stored locally using Chrome's secure storage API
- Data is encrypted and protected by Chrome's built-in security measures
- Information is only accessible by our extension and cannot be accessed by websites or other extensions
Data Retention
- Data is retained until you manually delete it or uninstall the extension
- You can clear all stored data at any time through the extension settings
- Uninstalling the extension will remove all stored data from your device
Security Measures
- End-to-end encryption using TLS 1.3 for all external communications
- Data at rest is encrypted using AES-256
- Regular security audits and vulnerability scanning
- Access controls and authentication for all systems
- Chrome's sandboxed environment provides additional security
- Regular security updates through the Chrome Web Store
Your Privacy Rights
Data Control
- Access: View all data stored by the extension through the settings interface
- Modification: Edit or update your preferences and saved recipes at any time
- Deletion: Remove individual recipes, clear all data, or uninstall the extension
- Export: Export your adapted recipes in various formats (PDF, text, etc.)
Data Portability
- Export your saved recipes and preferences
- No vendor lock-in - your data remains accessible to you
- Standard formats for easy migration if needed
Third-Party Services
Third-Party Services We Use
We use the following third-party services to provide our functionality:
- AWS CloudWatch For logging and monitoring proxy service operations (logs retained for 30 days)
- AWS Lambda For processing recipe adaptation requests with end-to-end encryption
Website Interaction
- The extension only reads recipe content from websites you visit
- No personal data is extracted from websites
- Website interaction is limited to recipe detection and adaptation
- No data is sent back to websites about your adaptations
Children's Privacy
The extension does not knowingly collect information from children under 13. The extension is designed for general recipe adaptation and does not target children specifically. If you are a parent or guardian and believe your child has provided information to the extension, please contact us to have it removed.
Changes to This Privacy Policy
We may update this privacy policy from time to time to reflect changes in our practices or for legal reasons. When we make changes:
- The "Last Updated" date at the top of this policy will be revised
- Significant changes will be communicated through the extension's update notes
- Continued use of the extension after changes constitutes acceptance of the new policy
Data Breach Response
In the unlikely event of a security incident:
- We will investigate and assess the scope of any potential data exposure
- Users will be notified promptly if their data may have been affected
- We will take immediate steps to secure the extension and prevent further issues
- We will cooperate with relevant authorities as required by law
Limited Use Policy Compliance
Google API Services User Data Policy Compliance
Our extension's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements:
- Limited Use: We only use Google API data for providing and improving our recipe adaptation features
- No Human Readable Display: API data is not displayed to humans except as necessary for core functionality
- No Transfer: We do not transfer Google API data to third parties
- No Advertising: Google API data is not used for advertising or similar commercial purposes
- Secure Handling: All API data is handled with appropriate security measures
Legal Compliance
This privacy policy complies with:
- Chrome Web Store Developer Program Policies
- Google API Services User Data Policy and Limited Use requirements
- General Data Protection Regulation (GDPR) where applicable
- California Consumer Privacy Act (CCPA) where applicable
- SOC 2 Type II compliance standards for data handling
- Other applicable privacy laws and regulations
Data Processing Addendum (DPA)
For users subject to GDPR or similar regulations, we offer a Data Processing Addendum that outlines our data protection commitments. Please contact us if you require a signed DPA.
Technical Details
Data Format
- Data is stored in JSON format using Chrome's storage API
- No proprietary formats or vendor lock-in
- Standard encryption provided by Chrome browser
Permissions Explanation
Our extension requests the following permissions for legitimate purposes:
- activeTab: To detect and adapt recipes on the current webpage
- storage: To save your preferences and adapted recipes locally
- host_permissions: To work across different recipe websites
Transparency
We believe in complete transparency about our data practices:
- Our source code is available for review
- No hidden data collection or tracking
- Clear documentation of all features and functionality
- Regular updates and security improvements