Privacy Policy
Effective: May 6, 2026 · Last updated: May 6, 2026
Plain-English summary (non-binding): Fridge2Cal takes a photo of a calendar you select, uploads it to our processing infrastructure, sends it to a third-party AI vision model to extract the events, and shows them to you for review before you add them to your iPhone Calendar. We don't ask for your name or email. We don't sell your data. We don't use your photos to train our own models. You can stop using the app and delete your data at any time.
1. Who we are
Fridge2Cal (the "Service") is operated by Massive Interface LLC, a Delaware limited liability company ("Massive Interface", "we", "us"). For purposes of the EU/UK General Data Protection Regulation, Massive Interface LLC is the data controller for personal data processed through the Service. Contact: info@massiveinterface.com.
2. What we collect
- Calendar photos you submit. Images of handwritten or printed calendars that you voluntarily upload for extraction. We do not access your photo library beyond the image you select via the iOS picker.
- Anonymous device identifier. A random UUID generated on first launch and stored in the iOS Keychain. We use it to attach your subscription entitlement and to apply per-device rate limits. It is not linked to your name, email, or Apple ID.
- Subscription data. Purchase status, receipt identifiers, and entitlement state, handled by Apple and RevenueCat. We do not receive or store your payment-card information.
- Device & usage data. App version, iOS version, device model, locale, timezone, crash reports, anonymous diagnostic events, IP address, and approximate region derived from it. Locale and timezone are sent with each scan so that extracted dates resolve correctly.
- Communications. Support messages you send us, and anything you include in them.
3. How we use your data
- Provide the core Service — accept your calendar photo, extract events, and return them for your review.
- Operate subscriptions, verify entitlements, prevent fraud and abuse.
- Investigate bugs, crashes, and abusive activity.
- Understand which features people use, in aggregate.
- Comply with law and respond to lawful requests from authorities.
Legal bases (GDPR/UK GDPR): performance of a contract (providing the Service you requested), legitimate interests (security, analytics, product improvement), consent (where required), and legal obligation.
4. iOS Calendar access
Fridge2Cal asks for permission to write to your iOS Calendar via Apple's EventKit framework. When you tap to add extracted events, they are written to your default calendar on your device. Fridge2Cal does not read your existing calendar entries, does not transmit your calendar contents to our servers, and does not modify or delete events it did not create. You can revoke calendar access at any time in iOS Settings → Privacy & Security → Calendars.
5. AI processing of your photos
When you submit a calendar photo for extraction, the image is uploaded to our object storage, then transmitted to a third-party AI vision model provider (currently Google LLC (Gemini API)) to identify the events, dates, times, locations, and titles. The provider acts under data-processing terms that prohibit training on your content and require deletion after a limited retention window.
We do not use your photos to train our own models, and we do not sell them. Photos are stored in our object storage for up to 30 days to allow re-extraction and debugging, then deleted by lifecycle policy.
AI-generated event extractions are produced by probabilistic models and may be incorrect, incomplete, biased, or fabricated. Always review the extracted events before adding them to your calendar. See §6 of the Terms of Service for the full disclaimer.
6. Sub-processors
We rely on the following service providers to operate Fridge2Cal:
- Apple Inc. — App Store distribution, push notifications, subscription billing, receipt validation, EventKit calendar writes (on-device).
- Amazon Web Services, Inc. — image storage (S3, US-East region).
- Render Services, Inc. — application hosting, Redis, background workers.
- Google LLC (Gemini API) — AI vision model that extracts the calendar events.
- Google LLC (Firebase Analytics, Crashlytics) — anonymous app analytics and crash reporting.
- RevenueCat, Inc. — subscription entitlement management.
Each sub-processor is bound by a data-processing agreement. Current list available on request.
7. International data transfers
Fridge2Cal is hosted in the United States. If you are located in the EU, UK, or other jurisdictions outside the US, your personal data will be transferred to and processed in the US. We rely on the EU Standard Contractual Clauses (and the UK IDTA Addendum where applicable) as the transfer mechanism with our sub-processors.
8. Data retention
Calendar photos uploaded for extraction are retained for up to 30 days in our object storage and then deleted by lifecycle policy. Anonymous diagnostic and crash logs are retained for up to 90 days. Subscription metadata is retained for as long as required for tax, accounting, and anti-fraud purposes (typically up to 7 years for financial records).
To request earlier deletion of your photos or device record, email info@massiveinterface.com with the anonymous device identifier shown in the app's Settings (or simply uninstall the app and delete the matching keychain entry — your records will be unreachable).
9. Security
We use industry-standard safeguards (TLS in transit, encrypted storage at rest, least-privilege access controls, authenticated API gateway). No system is perfectly secure, and you use the Service at your own risk. See §13–14 of the Terms of Service for our liability limitations.
10. Your rights
If you are in the EU, UK, or EEA, you have the rights to access, correct, delete, restrict, object to, and port your personal data, and to withdraw consent where processing is based on consent. You also have the right to lodge a complaint with your local supervisory authority.
If you are in California, under the CCPA/CPRA you have the rights to know, delete, correct, and limit the use of sensitive personal information. We do not sell or share your personal data for cross-context behavioral advertising. You will not be discriminated against for exercising your rights.
Everywhere, you can exercise these rights by emailing info@massiveinterface.com. We aim to respond within 30 days.
11. Children's privacy
Fridge2Cal is not directed to children under 13 (or under 16 in the EU/UK). We do not knowingly collect personal data from children. If you believe a child has provided us data, email info@massiveinterface.com and we will delete it.
12. Cookies and tracking
The Fridge2Cal mobile app does not use browser cookies. The marketing website (massiveinterface.com) uses minimal first-party Google Analytics. We do not use cross-site tracking and we honor Global Privacy Control signals where technically feasible.
13. Breach notification
If we become aware of a personal-data breach that is likely to result in a risk to your rights, we will notify you and any required regulator within the timeframe set by applicable law (within 72 hours under GDPR).
14. Changes to this policy
We will post changes here with an updated "Last updated" date. For material changes, we will notify you in-app or by email before the change takes effect.
15. Contact
Privacy questions, data requests, or complaints: info@massiveinterface.com (Massive Interface LLC).