This Privacy Policy describes how the individual developer behind Household Hub (“we”, “us”, published as MVTLI) handles information when you use the mobile application Household Hub (the “App”) on iOS and Android. The App helps households manage shared shopping lists, calendars, meal plans, and recipes. We are committed to protecting your privacy and complying with applicable laws, including the GDPR where it applies.
1. Data controller
The data controller responsible for personal data processed through the App is the individual developer who publishes Household Hub as MVTLI (natural person, not a registered company). The same name appears on the Apple App Store and Google Play developer account.
MVTLI (individual developer)
Email: contact@mvtli.pl
Website: https://mvtli.pl
Country: Poland
If you have questions about this Privacy Policy or your personal data, contact us at the email above.
2. Summary
- You need an account (email and authentication credentials) to use the App.
- Household data (lists, events, meals) is stored on our cloud backend and shared with members of your household.
- We do not show advertisements in the App.
- Optional Pro subscription is processed by Apple App Store or Google Play via RevenueCat.
- Optional push notifications use your device push token.
- Optional AI shopping list sends meal titles (not your email) to a third-party AI provider to suggest ingredients.
3. Information we collect
Account and profile (you provide)
- Email address and authentication credentials.
- Passwords are processed and stored securely by our authentication provider (Supabase) and are not accessible to us in plain text.
- Display name or nickname (optional).
Household content (you and your household members create)
- Household name and invite codes.
- Shopping lists and items.
- Calendar events (titles, dates, recurrence, participants).
- Meal plans, recipes, and favorites.
- Notification preferences per household.
Content you add to a household is visible to other members of that household. Do not store sensitive information you do not want shared with them.
Technical and device data
- Push notification token (if you enable notifications).
- App language and local preferences (stored on your device).
- Authentication session data (stored securely on your device).
- Subscription and entitlement status (via RevenueCat, linked to your account user ID).
Data we do not collect through the App
- We do not collect precise GPS location.
- We do not sell your personal information.
- We do not use advertising SDKs.
4. How we use information
- Provide the service: sync and display household data across devices and members.
- Authentication: sign you in and keep your session secure.
- Notifications: send push alerts you opt into (e.g. shopping or calendar updates).
- Subscriptions: verify Pro status and apply feature limits on free plans.
- AI features: when you generate a shopping list from custom meal names, we send those meal titles and serving counts to our backend, which may call an AI provider to suggest ingredients.
- Support and safety: respond to your requests and protect against abuse.
5. Third-party services
We use trusted providers to run the App. They process data on our behalf under their own terms and privacy policies:
-
Supabase — authentication, database, and server functions.
Privacy policy: https://supabase.com/privacy -
RevenueCat — subscription management (when you use Pro).
Privacy policy: https://www.revenuecat.com/privacy -
Apple App Store / Google Play — payment processing for subscriptions. We do not receive your payment card details.
Apple: https://www.apple.com/legal/privacy/
Google: https://policies.google.com/privacy -
Expo (push notifications) — delivery of push messages to your device.
Privacy policy: https://expo.dev/privacy -
Groq — optional AI ingredient suggestions when generating shopping lists from custom meals.
Privacy policy: https://groq.com/privacy-policy/
6. Legal bases (GDPR)
Where the GDPR applies, we rely on:
- Contract — to provide the App, your household features, and optional AI-powered features you request (e.g. generating a shopping list from meals).
- Legitimate interests — to secure the service, prevent abuse, and improve reliability.
- Consent — for optional push notifications and, where required by law, for optional AI features.
- Legal obligation — where we must comply with applicable law.
7. Data sharing
We share information only:
- With members of your household (by design of the App).
- With service providers listed in Section 4, to operate the App.
- When required by law or to protect rights and safety.
We do not sell your personal information.
8. Data retention and deletion
- Account and household data: kept while your account is active and as needed to provide the service.
- Push tokens: removed when you disable notifications or sign out (as implemented in the App).
- Subscription records: retained by Apple, Google, and RevenueCat according to their policies.
- Local device data: removed when you uninstall the App or clear app data.
You may request deletion of your account and associated cloud data by emailing contact@mvtli.pl from the address linked to your account. We will process verified requests within a reasonable time, subject to legal retention requirements.
9. Children
The App is not directed at children under 13 (or the minimum age in your country). We do not knowingly collect personal information from children. If you believe a child has provided us information, contact contact@mvtli.pl.
10. Your rights
Depending on your region, you may have rights to access, correct, delete, export, or restrict processing of your data, or to object or withdraw consent.
- EU / UK users: contact contact@mvtli.pl. You may lodge a complaint with your local data protection authority (in Poland: UODO).
- Access / deletion: email us to request a copy or deletion of your account data (see Section 8).
- Notifications: disable push notifications in the App under Settings or in your device system settings.
- Subscriptions: manage or cancel Pro in your Apple or Google account settings.
11. International transfers
Our service providers may process data in countries outside your own. Where required, we rely on appropriate safeguards (such as standard contractual clauses) offered by those providers.
12. Security
We use industry-standard measures including encryption in transit (HTTPS/TLS), access controls, and row-level security on household data. Passwords are handled by our authentication provider using industry-standard hashing. No method of storage or transmission is 100% secure.
13. Changes to this policy
We may update this Privacy Policy from time to time. We will post the new version at this URL and update the “Last updated” date. Where required by law, we will notify you of material changes (for example, via the App or by email). Continued use of the App after such changes may be subject to the updated Privacy Policy.
14. Google Play Data Safety (summary)
The following summary is provided to help align the Google Play Data Safety form with this policy. It is not a substitute for the full policy above.
- Collected: email address, user-generated content (household data), device identifiers (push token), app preferences, subscription status.
- Shared: with service providers listed in Section 5 only — not sold to third parties.
- Encrypted in transit: yes.
- Deletion: users may request account and data deletion by emailing contact@mvtli.pl.
- Optional collection: push notifications and AI features are optional and user-initiated.
15. Contact
For privacy-related requests, contact the data controller (individual developer, MVTLI):
MVTLI (individual developer)
Email: contact@mvtli.pl
Website: https://mvtli.pl
Country: Poland