Privacy Policy
Effective date: 3 August 2026
Contact: privacy@breadkit.codefarm.eu
Product: BreadKit Android app and related services at breadkit.codefarm.eu
Summary
BreadKit helps bakers plan recipes, run bake sessions, care for starters, and optionally share recipes in a community catalog. This policy explains what we collect, why, and your choices.
Data we process
Account and authentication
When you create an account we process identifiers such as email address and authentication tokens via our auth provider (Supabase Auth). Sign-in may use email magic links or supported OAuth providers you choose.
Bakery and recipe data
Recipes, steps, schedules, bake history, starter care data, notes, scores, and related local bakery content you create are stored so the app can sync across your devices and restore after reinstall. Sync uses our backend (Supabase) when you are signed in.
Catalog and user-generated content (UGC)
If you publish to the community catalog, comments, ratings, reviews, public profile fields (such as display name, bio, avatar), and media you attach may be visible to other users according to product settings and moderation rules.
Photos and media
Cover images, step media, bake outcome photos, and avatars you upload are stored in object storage we operate (including Cloudflare R2 and/or Supabase Storage) to display in-app and, when you publish, in the catalog.
Diagnostics and feedback
We use Sentry (or similar) for crash reports, performance traces, and optional in-app feedback you submit. These may include device model, OS version, app version, and technical logs. Avoid putting secrets or sensitive personal data in free-text feedback.
Interest list and closed beta
If you use the waitlist form on breadkit.codefarm.eu, we store the email address you provide and, optionally, your name, plus whether you asked to join closed beta testing. We use this only to contact you about BreadKit availability and testing invites. We do not sell this list. Contact privacy@breadkit.codefarm.eu to be removed.
Device permissions
Reminders and timers may use notification and exact-alarm capabilities you grant. We do not sell personal data or show third-party ads.
Why we process data
- Provide core bakery features (edit, sync, bake, starters, history).
- Operate the community catalog and moderation (including reports you submit).
- Secure accounts and prevent abuse.
- Improve reliability via crash/performance diagnostics.
- Meet legal and Play Store obligations (including account deletion).
Sharing
We share data with infrastructure processors under contract (hosting, auth, storage, error monitoring) only as needed to run BreadKit. We do not sell personal information. Public UGC you choose to publish is visible to other users.
Retention
Account and bakery data persist while your account is active. After account deletion we delete or anonymize personal data within a reasonable period, except where we must retain limited records for security, abuse prevention, or law (for example moderation logs). Public UGC may be removed or anonymized according to product rules.
Marketing waitlist rows (interest / closed-beta signups) persist until launch messaging for that signup is complete or you ask us to remove your address.
Your rights and choices
Depending on your region you may have rights to access, correct, delete, or export personal data, and to object to or restrict certain processing. Use in-app Settings → Delete account when available, or email privacy@breadkit.codefarm.eu. You can revoke device permissions in system settings.
Children
BreadKit is not directed at children under 13 (or the minimum age in your country). We do not knowingly collect data from children.
International transfers
Servers and processors may be located outside your country. We use appropriate safeguards required by applicable law.
Changes
We may update this policy. Material changes will be reflected by updating the effective date on this page and, when appropriate, in-app notice.