Legal
Last updated: July 7, 2026
Grovi is a budget grocery meal planner. This policy explains what we collect, why we collect it, who we share it with, and the choices you have. It applies to the Grovi app and website. Grovi is operated from the United States. We keep this policy plain on purpose. If anything here is unclear, email us at henry@usegrovi.co.
We only collect what we need to plan your meals, price your shopping list, and run your account.
We do not run advertising trackers, and we do not use analytics or ad software development kits that follow you across other companies' apps or websites. We do not track you across other apps or sites.
You can type your ZIP or postal code, or tap to use your device location. If you tap to use your location, your device sends your coordinates to us so we can look up the matching ZIP through a mapping service (see section 5). We keep only the resulting ZIP and your chosen store. We do not store your precise coordinates. You can skip location access entirely and type your ZIP instead, and Grovi still works.
Grovi Unlimited can be billed two ways. If you subscribe in our iOS app using an in-app purchase, Apple processes the payment through your App Store account; Apple does not share your payment details with us, and we store only the subscription status Apple reports (for example whether the plan is active and when it renews). If you subscribe on our website, Stripe collects and processes your payment information on its own secure systems and handles the checkout page. In both cases we never receive your full card details. App Store subscriptions are managed in your device's subscription settings; website subscriptions are managed from Settings in Grovi, which opens the billing portal.
Grovi uses AI providers (OpenAI and Anthropic) to build and adapt recipes and to read recipes you import. The information sent to them is limited to what the task needs: your meal preferences (such as household size, dietary choices, allergies, and budget), recipe and ingredient text, and the content of any recipe you import. For a video import, this can include transcribing the spoken audio so we can read the recipe. We do not send your name, email address, or payment details to these providers.
We do not sell your personal data. We share it only with the service providers we use to run Grovi, and only so they can perform their part. These providers process data on our behalf under their own terms and privacy policies.
| Provider | What it handles | What it receives |
|---|---|---|
| Railway | App hosting and database | Everything we store, as our infrastructure host |
| Stripe | Subscription payments | Your email and name, and the card or payment details you enter on Stripe's checkout page |
| Sign in with Google, and web fonts on our pages | Your Google sign-in identity if you use it, plus standard network information such as your IP address when your device loads a Google resource | |
| Apple | Sign in with Apple, and push notifications on iOS | Your Apple sign-in identity if you use it, and the device token used to deliver notifications |
| Resend | Account emails (welcome, verify, password reset) | Your email address and name |
| OpenAI and Anthropic | AI recipe generation and import (see section 4) | Meal preferences and recipe text, not your identity or payment data |
| BigDataCloud | Turning coordinates into a ZIP when you use device location | The coordinates from that single lookup |
| Content delivery networks (jsDelivr, unpkg) and map tiles (Carto) | Loading fonts, icons, the map library, and the store-picker map tiles | Standard network information such as your IP address when your device loads those resources |
We may also disclose information if the law requires it, or to protect the rights, safety, and security of Grovi and our users. If Grovi is ever involved in a merger, acquisition, or sale of assets, we will tell you before your personal data becomes subject to a different privacy policy.
Grovi is operated from the United States, and the providers listed in section 5 process data in the United States and other countries. If you use Grovi from the United Kingdom, the European Economic Area, or anywhere else outside the United States, your information will be transferred to and processed in the United States. Data protection laws in the United States may differ from those where you live. We protect your information as described in this policy and rely on appropriate safeguards for these transfers where the law requires them. If you have questions about how your data is transferred, email us at henry@usegrovi.co.
We keep your account and the data tied to it for as long as your account is active. Short-lived security tokens expire and are cleared automatically: sign-in sessions expire within 30 days of their last use, password reset links within an hour, and email verification links within a few days. Records of which dishes were shown or swapped are pruned over time, and once your account is deleted they are kept only in a form no longer linked to you, used solely for aggregate ranking. When you delete your account, we remove your account and the personal data tied to it, including your saved plans, shared lists, device tokens, and personal taste profile. We may keep limited records where the law requires it, such as payment records held by our payments provider.
Grovi uses only the cookies it needs to work. On the web, a strictly necessary cookie keeps you signed in, and during our invite-only period a cookie remembers that you have entered the site access password. These are not used to track you. We do not use advertising cookies, cross-site tracking cookies, or third-party analytics cookies, and we have no advertising or analytics trackers in the app. Some pages load fonts, icons, a map library, and map tiles from the third-party networks listed in section 5; those networks receive standard technical information, such as your IP address, when your browser loads their content.
To make any of these requests, use the in-app controls or email us at henry@usegrovi.co. We will not treat you differently for exercising your rights, and we will respond within the time the law allows. We may need to verify your identity before we act on a request, usually by confirming control of your account email.
If you are in the United Kingdom or the European Economic Area, the UK GDPR and the EU GDPR give you rights over your personal data, including the right to access, correct, delete, restrict, or object to our processing, and the right to data portability. You can exercise these rights as described in section 9 or by emailing us. The controller responsible for your personal data is Grovi, which you can contact at henry@usegrovi.co.
We rely on the following legal bases to process your data:
If you believe we have handled your data improperly, you have the right to complain to a data protection authority. In the United Kingdom this is the Information Commissioner's Office (ico.org.uk). In the EEA it is the authority in your country. We would appreciate the chance to address your concern first, so please consider emailing us before you do.
If you are a California resident, the California Consumer Privacy Act, as amended, gives you specific rights over your personal information.
In the past 12 months we have collected the categories of personal information described in this policy: identifiers such as your name, email, and account identifiers; commercial information such as your subscription status; internet or network activity such as your browser type and IP address; approximate location limited to your ZIP or postal code; and information you provide, such as your food preferences, plans, and imported recipes. We collect this from you and your device, and from the service providers listed in section 5, for the business purposes described in this policy.
We do not sell your personal information, and we do not share your personal information for cross-context behavioral advertising. We have not done so in the past 12 months, and we do not knowingly sell or share the personal information of anyone under 16. We only use information you provide, such as dietary restrictions, to deliver the service you asked for, and not to infer characteristics about you or for advertising.
You have the right to know what personal information we hold about you, to access and delete it, to correct it, and to not be treated differently for exercising these rights. You can exercise these rights as described in section 9 or by emailing us at henry@usegrovi.co. If you use an authorized agent, we may ask them to prove they are acting on your behalf.
We take reasonable steps to protect your data. Passwords are stored as salted hashes, never in plain text. Sign-in tokens are stored only as hashes, and session cookies are set as secure and HTTP-only in production. Traffic to Grovi runs over HTTPS. Payment card details are handled by Stripe, not by us. No system is perfectly secure, so we cannot promise absolute security, but we work to keep your data safe and to fix issues quickly.
Grovi is not directed to children under 13 (or the minimum age required in your region), and we do not knowingly collect personal data from them. Grovi is meant for the adult managing a household's meals. Any information about family members is entered by the adult account holder. If you believe a child has given us personal data, email us and we will delete it.
We may update this policy as Grovi grows. When we make a material change, we will update the date above and, where appropriate, tell you in the app or by email.
Grovi is operated from the United States and is the controller of the personal data described in this policy. For any question about privacy, or a request about your data, email us at henry@usegrovi.co.