Privacy Policy

Mocha's MindLab Inc.

Effective Date: January 1, 2025

Last Updated: May 12, 2026

Introduction

Mocha's MindLab Inc. ("we," "our," or "us") is committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and services (collectively, the "Service").

Information We Collect

Personal Information

We may collect personally identifiable information, such as:

Health and Wellness Data

Our app may collect health-related information, including but not limited to:

Technical Information

We automatically collect certain technical information, including:

How We Use Your Information

We use the collected information to:

Health Data Protection

Important: Your health data remains secure on your device.

  • Local Storage Only: All health and wellness data collected by our app is stored locally on your device and is never transmitted to our servers or cloud storage.
  • No Cloud Backup: Health data is not backed up to any cloud service unless you explicitly choose to do so through your device's native backup features.
  • No Training Data: We do not use your health data for machine learning, artificial intelligence training, or algorithm improvement purposes.
  • Device Control: You maintain complete control over your health data and can delete it at any time through the app settings.

Information Sharing and Disclosure

We do not sell, trade, or otherwise transfer your personal information to third parties, except in the following circumstances:

Service Providers

We may share non-health information with trusted third-party service providers who assist us in operating our app, conducting our business, or serving our users, provided they agree to maintain confidentiality.

Legal Requirements

We may disclose your information when required by law, such as to comply with a subpoena or similar legal process, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

Business Transfers

In the event of a merger, acquisition, or sale of assets, user information may be transferred as part of the transaction, subject to the same privacy protections.

Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. However, no method of transmission over the internet or electronic storage is 100% secure.

Your Rights and Choices

Access and Control

You have the right to:

Data Portability

Upon request, we will provide your personal information in a commonly used, machine-readable format.

Account Deletion

You may delete your account at any time through the app settings. Upon deletion, we will remove your personal information from our systems, except as required for legal compliance.

Children's Privacy

Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it promptly.

International Data Transfers

If you are located outside of Canada, please note that your information may be transferred to and processed in countries that may have different privacy laws than your jurisdiction.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by:

Your continued use of the Service after such modifications constitutes acceptance of the updated Privacy Policy.

MindLab Fitness — Third-Party Services and Platform Integrations

This section provides additional disclosures specific to MindLab Fitness on iOS and Android.

Health Platform Integration

MindLab Fitness integrates with your device's health platform — Apple HealthKit on iOS and Google Health Connect on Android — to read and write health metrics with your explicit permission.

Health data is processed entirely on your device and is never transmitted to our servers. You may revoke health permissions at any time through your device's privacy settings (iOS: Settings → Privacy & Security → Health; Android: Health Connect app → Permissions).

In-App Purchases

MindLab Fitness offers Pro features through a one-time in-app purchase processed by Apple's App Store (iOS) or Google Play Billing (Android). We receive a purchase confirmation from these platforms but do not collect or store your payment information. Refunds and billing inquiries are handled by Apple or Google directly per their respective platform policies.

AI Meal Scanner

When you choose to scan a meal photo using the AI Meal Scanner feature, the photo is transmitted over a secure HTTPS connection to Anthropic (anthropic.com), our AI service provider, for analysis. Anthropic identifies foods in the photo and estimates nutrition values. Per Anthropic's API terms, photos are processed in real time and are not retained, logged, or used for model training. The nutrition results are returned to your device and stored locally; no copy of the photo or its analysis is kept on our servers.

If you do not use the AI Meal Scanner feature, no photos leave your device.

Food and Supplement Database Queries

When you search for a food item or scan a barcode, MindLab Fitness queries one or more of the following third-party databases to retrieve nutrition or product information:

These queries contain only the search term or barcode you provided and do not include any identifying information about you. Barcode decoding itself runs on-device using Google ML Kit and never transmits the camera image; only the resulting numeric barcode value is sent to the lookup service.

Recipe Import

If you choose to import a recipe by pasting a URL, MindLab Fitness fetches that URL directly from your device to extract the recipe. No personal information is sent — only a standard HTTP request to the URL you provided.

Notifications

If you enable smart reminders (water, meals, weight, exercise), MindLab Fitness schedules local notifications on your device. These notifications are generated and delivered locally — no notification content is sent to our servers or to a push-notification service.

Local-Only Storage and Data Retention

Apart from the third-party services listed above, all MindLab Fitness data — your food log, exercise log, supplements, body measurements, sleep entries, weight history, recipes, achievements — is stored exclusively on your device using the platform's standard storage (Core Data on iOS; Room database and DataStore on Android). We do not have a server that holds this data, and we cannot recover it if you uninstall the app.

Retention: Data is retained on your device for as long as you keep the app installed. We do not retain copies on our servers because no such servers exist for this data. Uninstalling the app, or using Settings → Clear Data, permanently removes all locally stored MindLab Fitness data.

Data Deletion

MindLab Fitness, by Mocha's MindLab Inc., gives you complete control over your data. Because all data is stored on-device, you delete it directly from your device — there is no account to close and no server-side data to request.

How to delete your data:

  1. Clear data inside the app: Open MindLab Fitness → tap MoreSettingsClear Data. This wipes the local database and all preferences immediately.
  2. Uninstall the app: Removing MindLab Fitness from your device deletes all local data and any data stored in app preferences.
  3. Revoke health-platform access (optional): If you previously granted Apple HealthKit or Google Health Connect permissions, you can revoke them at any time through your device's privacy settings. Any weight entries the app wrote to those platforms can be deleted directly within HealthKit (iOS Health app) or Health Connect.

What gets deleted: your food log, exercise log, supplement entries, body measurements, sleep entries, weight history, saved recipes, meal plans, goals, achievements, preferences, and any cached AI Meal Scanner results. All of this lives only on your device.

What is kept: nothing — there is no server-side copy. The AI Meal Scanner photos you scanned were processed in real-time by Anthropic and are not retained by Anthropic or by us, so there is nothing to delete there.

If you need help with deletion, email admin@mochasmindlab.com and we will walk you through it.

Contact Us

Mocha's MindLab Inc.

Vancouver, British Columbia, Canada

Privacy Questions and Requests

Email: admin@mochasmindlab.com

Address: 244-1231 Pacific Blvd, Vancouver, BC V6Z 2E2

Phone: 236-885-9577

Canadian Privacy Commissioner

For privacy complaints: www.priv.gc.ca

Consent

By using our Service, you consent to the collection and use of your information as described in this Privacy Policy.