Privacy Policy
Last updated: April 2026
Sofrito is designed to respect your privacy. We don't require an account, we don't sell your data, and most of what you do in the app never leaves your device. This page explains what happens when data does need to leave your device, and why.
"Sofrito" is a brand operated by Brain Solutions LLC. Throughout this policy "Sofrito" and "we" refer to that company.
The short version
- ✓ No account, no password, no email required.
- ✓ No third-party analytics, no ad SDKs, no cross-app tracking.
- ✓ OCR, voice, and Pantry Chef can run entirely on-device.
- ✓ We never sell your data.
- ✓ Most of the app works without any network call.
What stays on your device
The following never leave your phone unless you explicitly choose to share them:
-
·
Your user profile data (dietary restrictions, language, voice preferences) — stored in iOS UserDefaults.
-
·
Your cooking history and saved recipes — stored locally in your app sandbox.
-
·
Photos you take or pick from your library for recipe import — used only for on-device text extraction.
-
·
Recipes you import as "private/handwritten" — stored locally and can be exported by you as PDF.
-
·
Recipes generated by Pantry Chef from photos of your counter — stored locally only.
-
·
Text recognition (OCR) — runs entirely on-device using Apple's Vision framework.
-
·
Voice narrator audio processing — runs entirely on-device using Apple's Speech and AVFoundation frameworks. Microphone input is never transmitted.
-
·
Location for seasonal recommendations — resolved to a hemisphere indicator on-device; no coordinates leave your phone.
What does leave your device
The following is sent to our backend (a Cloudflare Worker) only when you explicitly trigger the relevant feature:
-
·
AI chat prompts — when you use the AI Chef or Pantry Chef, the recipe text plus your question is sent to a third-party AI provider through our backend. Responses are streamed back. We do not retain the conversation server-side.
-
·
AI image generation prompts — a short text description of a recipe (e.g. "arroz con gandules beautifully plated") is sent to a third-party AI image provider through our backend. The resulting image is either served from our Cloudflare R2 cache (for built-in and approved community recipes) or returned directly to your device and discarded server-side (for your personal Pantry Chef recipes).
-
·
Pantry Chef ingredient detection — if you opt into cloud detection (the higher-accuracy mode), the photo you took of your counter is sent to a third-party AI vision provider through our backend. The provider does not retain the image. The on-device Apple Vision fallback is offered as an alternative for users who prefer their photos never leave the device.
-
·
Community recipe submissions — if you explicitly tap "Share with community", the rewritten recipe text (an AI partner has already paraphrased it) is sent to our backend and stored in a Cloudflare D1 database pending moderation. Your original photo is never sent.
-
·
Shopping list orders — when you tap "Order Online", your ingredient names are sent to Instacart's Developer Platform through our backend. Instacart returns a shoppable URL. No payment or account info passes through our backend; checkout happens inside Instacart.
-
·
Support form submissions — when you fill out the form at getsofrito.com/support or email us at support@getsofrito.com, your name, email, and message are stored in our Cloudflare D1 database (form submissions) or in our mailbox (direct email) so we can respond.
What we do not collect
-
·
No user account, no password, no email required to use the app.
-
·
No third-party analytics (no Google Analytics, no Firebase Analytics, no Mixpanel, no Amplitude).
-
·
No ad networks, no ad SDKs.
-
·
No cross-app tracking — we do not use IDFA or any advertising identifier.
-
·
No location coordinates — location is only used on-device to pick a hemisphere.
-
·
No contacts, no calendar, no health data, no photos library other than what you pick.
Anonymous identifiers
When you submit a recipe to the community catalog or send a support message, we generate or use the following opaque identifiers:
-
·
A random 16-byte install hash (≈32 hex characters) generated on first use and stored in your device's UserDefaults. It lets our moderators group submissions from the same install if a pattern of spam or abuse appears. It is not tied to your Apple ID, IDFV, email, or any other identifier, and it resets if you reinstall the app.
-
·
A SHA-256 hash of your IP address, stored only for support-form rate limiting, and only when you use the public support form on this website.
Third-party services
Sofrito relies on the following third parties. All requests go through our Cloudflare Worker, so our vendors see only what's necessary for the relevant feature:
-
·
Cloudflare Workers, D1, R2 — hosting our backend, the shared recipe image cache, and the community recipes database.
-
·
Third-party AI providers — text AI for recipe chat, ingredient extraction, recipe structuring, and image generation for recipe hero photos. We use a small number of established AI vendors and may rotate among them as the AI landscape evolves; the data sent to any of them is the same recipe text or short description described above.
-
·
Instacart Developer Platform — shoppable recipe pages for online grocery ordering. Only triggered when you tap "Order Online".
-
·
Impact Radius — affiliate attribution for Instacart referrals. We pass a tracking parameter on the shoppable URL; Impact sees that parameter.
-
·
Apple frameworks (on-device only) — Vision, Speech, AVFoundation, Core Location. Nothing transmitted.
Children's privacy
Sofrito is not directed at children under 13. We do not knowingly collect personal information from children. The app contains no advertising, no chat rooms, and no user-to-user communication.
Your rights
Because we don't keep accounts, there's no profile to delete. If you submitted a support message or a community recipe and want it removed, email us at support@getsofrito.com or use the support form — include the approximate date and a few words from the message so we can find it. We will delete or anonymize it within a reasonable time, typically within 14 days.
Residents of the EU/UK have additional rights under GDPR (access, correction, deletion, portability, objection). Residents of California have additional rights under the CCPA / CPRA (know, delete, correct, opt-out of sale — though we do not sell data). Send any such request to support@getsofrito.com and we will respond within the statutory deadline.
Data retention
-
·
AI chat and image prompts are not retained on our backend beyond the duration of the request.
-
·
Community recipe submissions are retained indefinitely once approved (they're part of the public catalog) or for up to 90 days if rejected.
-
·
Support messages are retained as long as needed to resolve your request, then archived.
-
·
Rate-limit IP hashes are automatically removed after 30 days.
Changes to this policy
If we change this policy, we'll update the "Last updated" date above. Material changes will be reflected in the app's changelog.
Contact
Questions, concerns, or requests? Email support@getsofrito.com or use the support form. The website is getsofrito.com.
Questions about your data?
Open a support ticket — usually replied to within a few business days.