Privacy Policy
Effective Date: September 17, 2025
Last Updated: September 17, 2025
1. Introduction
Welcome to Brewey. We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our Service.
2. Information We Collect
Information You Provide Directly
Account Information
- Email address (for authentication)
- Display name (optional)
- Google account information (if using Google OAuth)
- Profile information (brewing experience, preferences)
Content You Create
- Beer recipes and brewing data
- Brewing notes and comments
- Water profiles and chemistry data
- Custom ingredient entries
Information Collected Automatically
Usage Data
- Features used within the application
- AI tool interactions and queries
- Credit usage and billing events
- Session duration and frequency
Technical Data
- Browser type and version
- Device type (desktop/mobile)
- IP address (for security and regional compliance)
- Error logs and performance metrics
Information We Do NOT Collect
- Chat conversations with AI (stored only in your browser)
- Payment card details (handled by payment processors)
- Location data beyond general region from IP
- Sensitive personal information
3. How We Use Your Information
We use your information to:
Provide and Improve the Service
- Store and manage your recipes
- Process brewing calculations
- Provide AI-powered assistance
- Sync data across your devices
- Improve app features and performance
Account Management
- Authenticate your identity
- Manage your credits and usage
- Provide customer support
- Send important service updates
Security and Compliance
- Prevent fraud and abuse
- Enforce Terms of Use
- Comply with legal obligations
- Protect user accounts and data
4. Data Storage and Security
Where Your Data is Stored
- Recipe and user data: Supabase PostgreSQL database
- Authentication: Supabase Auth service
- All data is stored with industry-standard encryption
Security Measures
- Encryption: All data transmissions use HTTPS/TLS encryption
- Authentication: Secure JWT tokens for session management
- Access Control: Row Level Security (RLS) ensures users can only access their own data
- Password Security: Passwords are hashed using industry-standard methods
- Regular Updates: Security patches and updates are applied regularly
Data Retention
- Active account data is retained as long as your account exists
- Deleted recipes are permanently removed from our systems and cannot be recovered
- Account deletion triggers immediate CASCADE deletion of all associated data
- System backups exist for disaster recovery only - we do not restore individual deleted items
5. Data Sharing and Third Parties
We DO NOT:
- Sell your personal information
- Share your recipes without your permission
- Use your data for advertising targeting
- Allow third parties to access your private data
We MAY Share Data:
With Service Providers:
- Supabase (database and authentication)
- AI providers (OpenAI, Anthropic, via OpenRouter) - see "AI and Machine Learning" section below for details
- Email service for support communications
For Legal Reasons
If required by law or to protect rights and safety
With Your Consent
When you explicitly agree to share
6. Your Rights and Choices
You Have the Right To:
- Access: Request a copy of your personal data
- Correct: Update or correct your information
- Delete: Delete your account and all associated data
- Export: Download your recipes in portable formats
- Opt-out: Disable optional features or communications
How to Exercise Your Rights
- Access/Export: Use the /export command in the app
- Update: Edit your profile in account settings
- Delete: Use the account deletion option in settings
- Support: Contact support@mail.brewey.ai for assistance
7. Cookies and Local Storage
Essential Storage
We use browser local storage for:
- Session management
- Chat history (local only, not sent to servers)
- User preferences (theme, settings)
- Temporary recipe data
Analytics
We may use privacy-respecting analytics to understand usage patterns. No personal data is included in analytics.
8. Children's Privacy
Brewey is not intended for users under 18 years of age (or the legal age for alcohol-related content in your jurisdiction). We do not knowingly collect information from minors.
9. International Data Transfer
Your data may be processed and stored in various locations worldwide through our service providers. By using the Service, you consent to the transfer of your information to facilities that may be located outside your country of residence.
10. Your Privacy Rights
Depending on your location, you may have certain rights regarding your personal data, including:
- Access to your personal information
- Correction of inaccurate data
- Deletion of your data
- Data portability
- Objection to certain processing
- Withdrawal of consent
To exercise any of these rights, please contact us at support@mail.brewey.ai. We will respond to requests in accordance with applicable law.
11. Data Breach Notification
In the event of a data breach that poses risk to your rights and freedoms, we will:
- Notify affected users within 72 hours of discovery
- Provide information about the breach and potential impact
- Recommend steps to protect your information
- Take immediate action to secure the vulnerability
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via:
- Email notification to registered users
- Update to the "Last Updated" date
13. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. Please review their privacy policies before providing any information.
14. AI and Machine Learning
How AI is Used
- Recipe suggestions and modifications
- Ingredient substitution recommendations
- Brewing process guidance
- Answering questions about brewing and app usage
What Data is Shared with AI Providers
When you interact with the AI assistant, the following data is sent to third-party AI providers (OpenAI, Anthropic, or models via OpenRouter):
- Your chat messages and conversations
- Your user profile information (if you've added brewing experience, preferences, or system details)
- Current recipe data when discussing specific recipes
- Brewing context needed to provide relevant assistance
Important AI Privacy Notices
- Third-Party Processing: Your conversations are processed by external AI providers who have their own Terms of Service and Privacy Policies
- Data Retention: AI providers may retain conversation data according to their policies:
- OpenAI: https://openai.com/privacy
- Anthropic: https://anthropic.com/privacy
- OpenRouter: https://openrouter.ai/privacy
- No Control Over AI Provider Policies: We cannot control how AI providers handle, store, or use the data once sent to them
- Opt-In Nature: By using the AI chat features, you consent to your data being processed by these third-party providers
- Profile Data Disclosure: Your profile information is shared to provide personalized brewing advice - only include information you're comfortable sharing with AI providers
Local Storage
- Chat history is stored locally in your browser for your convenience
- This local chat history is not sent to our servers, only to AI providers when you send messages
15. Contact Information
For privacy-related questions or concerns:
Email: support@mail.brewey.ai
Subject Line: Privacy Inquiry
We aim to respond to all privacy inquiries within 30 days.
Your Privacy Matters: We built Brewey with privacy in mind. Your recipes are yours, your data is protected, and we're committed to keeping it that way.
By using Brewey, you acknowledge that you have read and understood this Privacy Policy.