AI recommendationsAI 点菜推荐AI 點菜推薦Recomendaciones de platos con IA
For eligible simple dish recommendations, ChefBear sends the request text, relevant dietary preferences and candidate menu text to OpenRouter, which routes them to TypeSafe AI’s Jev model to evaluate dish suitability. ChefBear does not attach account IDs, sign-in tokens or menu photos to these requests. Complex requests and unsuccessful evaluations use Google Cloud Vertex AI / Gemini. Content you include in request text or preferences is part of the information processed by these providers.对于适用的简单菜品推荐,ChefBear 会将请求文字、相关饮食偏好和候选菜单文字发送给 OpenRouter,再由其转发给 TypeSafe AI 的 Jev 模型评估菜品匹配度。ChefBear 不会在这些请求中附加账户 ID、登录令牌或菜单照片。复杂请求或未成功完成的评估由 Google Cloud Vertex AI / Gemini 处理。您在请求文字或偏好中填写的内容属于这些服务商处理的信息。對於適用的簡單菜式推薦,ChefBear 會將請求文字、相關飲食偏好和候選菜單文字傳送至 OpenRouter,再由其轉交 TypeSafe AI 的 Jev 模型評估菜式匹配程度。ChefBear 不會在這些請求中附加帳戶 ID、登入權杖或菜單照片。複雜請求或未能完成的評估由 Google Cloud Vertex AI / Gemini 處理。您在請求文字或偏好中填寫的內容屬於這些服務商處理的資訊。Para las recomendaciones sencillas compatibles, ChefBear envía el texto de la solicitud, las preferencias alimentarias pertinentes y el texto de los platos candidatos a OpenRouter, que los remite al modelo Jev de TypeSafe AI para evaluar su adecuación. ChefBear no adjunta identificadores de cuenta, tokens de inicio de sesión ni fotos del menú. Las solicitudes complejas o las evaluaciones fallidas se procesan con Google Cloud Vertex AI / Gemini. El contenido que incluya en la solicitud o las preferencias forma parte de la información procesada por estos proveedores.
1. Introduction
ChefBear ("we", "us", "our") is an AI-powered mobile application that helps users scan restaurant menus, discover dishes, and make informed dining decisions. This Privacy Policy describes how we collect, use, disclose, and protect your personal information in accordance with the Personal Information Protection and Electronic Documents Act (PIPEDA) and Quebec's Act respecting the protection of personal information in the private sector (including amendments under Law 25).
ChefBear (« nous », « notre ») est une application mobile propulsée par l’IA qui aide les utilisateurs à numériser les menus de restaurants, découvrir des plats et prendre des décisions éclairées. La présente politique de confidentialité décrit la façon dont nous recueillons, utilisons, divulguons et protégeons vos renseignements personnels conformément à la Loi sur la protection des renseignements personnels et les documents électroniques (LPRPDE) et à la Loi sur la protection des renseignements personnels dans le secteur privé du Québec (y compris la Loi 25).
2. Privacy Officer
Our Privacy Officer is responsible for our compliance with this policy and applicable Canadian privacy legislation. You may contact our Privacy Officer at any time:
Privacy Officer / Responsable de la protection des renseignements personnels
Awesome-Bears, Inc. doing business as ChefBear / Awesome-Bears, Inc., faisant affaire sous le nom de ChefBear
Email: contact@awesome-bears.com
Notre responsable de la protection des renseignements personnels veille au respect de la présente politique et des lois canadiennes applicables. Vous pouvez le contacter en tout temps à : contact@awesome-bears.com
3. The 10 PIPEDA Fair Information Principles
We are committed to each of the 10 Fair Information Principles set out in Schedule 1 of PIPEDA:
Accountability — Our Privacy Officer is accountable for personal information under our control. We maintain internal policies and practices to give effect to these principles, including training staff and implementing procedures to protect personal information.
Identifying Purposes — We identify the purposes for which personal information is collected at or before the time of collection. See Section 4 below for a detailed description of our purposes.
Consent — We obtain your meaningful consent for the collection, use, and disclosure of your personal information, except where permitted or required by law. See Section 5 below.
Limiting Collection — We limit the collection of personal information to that which is necessary for the identified purposes. We collect information by fair and lawful means.
Limiting Use, Disclosure, and Retention — Personal information is not used or disclosed for purposes other than those for which it was collected, except with your consent or as required by law. We retain personal information only as long as necessary. See Section 10.
Accuracy — We keep personal information as accurate, complete, and up-to-date as necessary for the purposes for which it is to be used. You may request corrections at any time.
Safeguards — We protect personal information with security safeguards appropriate to the sensitivity of the information, including encryption in transit and at rest, access controls, and regular security assessments.
Openness — We make information about our policies and practices relating to the management of personal information readily available through this policy and via our Privacy Officer.
Individual Access — Upon request, we will inform you of the existence, use, and disclosure of your personal information and give you access to that information. You may challenge the accuracy and completeness of the information and have it amended as appropriate.
Challenging Compliance — You may challenge our compliance with these principles by contacting our Privacy Officer. We will investigate all complaints and take appropriate measures. See Section 14.
Nous respectons les 10 principes relatifs à l’équité dans le traitement de l’information de la LPRPDE : responsabilité, détermination des fins, consentement, limitation de la collecte, limitation de l’utilisation, de la communication et de la conservation, exactitude, mesures de sécurité, transparence, accès individuel et possibilité de porter plainte.
4. Information We Collect
4.1 Information You Provide
- Account information: email address, phone number when you choose phone sign-in, display name, and profile preferences (dietary restrictions, allergies).
- User content: photographs of menus you scan, saved dishes, favourites, and notes.
- Support communications: messages you send to our support team.
4.2 Information Collected Automatically
- Device information: device model, operating system version, app version, language settings.
- Operational diagnostics: app/device version, crash logs, error categories, request timing, coarse network quality, security signals, and subscription-entitlement status.
- Subscription data: subscription status and entitlements (managed by RevenueCat; we do not store payment card details).
- Product analytics: in-app usage events (for example, opening the camera, scanning a menu, seeing the paywall, starting or restoring a purchase, signing in, starring a dish, generating an AI image or a nutrition scan) with only non-sensitive category, number and yes/no properties, app version, device and operating system information and, after sign-in, your pseudonymous ChefBear account ID, only if you turn on Settings > Share usage analytics, which is off by default (see Sections 6 and 9). Never menu photos, menu text, dish names you type, email, name, phone number, precise location or Apple ID.
4.3 Information We Do Not Collect
- We do not ask for or use your precise geolocation. Menu photos uploaded by app versions earlier than 4.4.0 may still contain location metadata (EXIF) that your camera embedded; ChefBear does not read, extract or use it, it stays inside the stored photo file until the photo is deleted, and you can delete these photos in the app (see Section 10). Starting with app version 4.4.0, this metadata is removed before upload.
- We do not access your contacts, microphone, or files beyond camera images you choose to capture within the app.
5. Meaningful Consent
We rely on your meaningful consent for the collection, use, and disclosure of your personal information. Meaningful consent means:
- We clearly explain what information we collect and why.
- We describe the foreseeable consequences of collection, use, and disclosure.
- We present consent options in a manner that is easy to understand, not buried in lengthy terms.
- You may withdraw consent at any time, subject to legal or contractual restrictions and reasonable notice. Withdrawing consent may affect our ability to provide certain features.
Express consent is obtained for sensitive uses (e.g., camera access). Implied consent may be relied upon for less sensitive purposes where appropriate under PIPEDA. Product analytics requires your express consent: it runs only if you turn on Settings > Share usage analytics, and you can withdraw that consent at any time by turning it off.
Consentement valable : Nous obtenons votre consentement éclairé pour la collecte, l’utilisation et la communication de vos renseignements personnels. Vous pouvez retirer votre consentement en tout temps, sous réserve de restrictions légales ou contractuelles. Le retrait du consentement peut affecter certaines fonctionnalités. L’analytique produit exige votre consentement exprès : elle n’est activée que si vous activez Réglages > « Share usage analytics », et vous pouvez retirer ce consentement en tout temps en la désactivant.
6. Default Privacy Settings (Quebec Law 25)
In compliance with Quebec Law 25, all privacy settings in ChefBear are configured to the highest level of confidentiality by default. This means:
- Automatic diagnostics are limited to the minimum technical crash, reliability, security, fraud-prevention, and subscription-entitlement information needed to operate the service.
- Your scanned menus and dish data are private by default and not shared with other users.
- Personalization features using your data require your explicit activation.
You do not need to take any action to benefit from the highest privacy protection. Any optional feature that would lower your privacy level requires your affirmative opt-in.
Product analytics. Settings > Share usage analytics is off by default. Only if you turn it on (express consent) does the app send the product analytics described in Section 4.2 to PostHog (see Section 9). You can withdraw consent at any time by turning it off; this stops collection and resets the analytics identifier on your device.
Menu photo backup. When you are signed in to an international account, the private backup of the menu photos you scan is part of the recognition service you request, not an optional privacy setting: it is needed to complete or retry recognition after an interruption and to make your menus available on your signed-in devices, and it is used for no other purpose. Backed-up photos remain private to you and are never included in shared menu links. They are stored with our cloud provider in the United States (see Sections 9 and 11), kept as described in Section 10, and you can delete them in the app.
Paramètres de confidentialité par défaut (Loi 25) : Conformément à la Loi 25 du Québec, tous les paramètres de confidentialité de ChefBear sont configurés au plus haut niveau de confidentialité par défaut. Vous n’avez aucune action à entreprendre pour bénéficier de la protection maximale. Toute fonctionnalité facultative qui réduirait votre niveau de confidentialité exige votre consentement explicite. Le réglage « Share usage analytics » est désactivé par défaut : ce n’est que si vous l’activez (consentement exprès) que l’application transmet à PostHog des événements d’utilisation non sensibles (voir la section 9). Vous pouvez retirer ce consentement en tout temps en le désactivant; la collecte cesse et l’identifiant analytique de votre appareil est réinitialisé. Lorsque vous êtes connecté à un compte international, la sauvegarde privée des photos de menu fait partie du service de reconnaissance que vous demandez et n’est pas un paramètre de confidentialité facultatif : elle sert uniquement à terminer ou relancer la reconnaissance après une interruption et à rendre vos menus disponibles sur vos appareils connectés. Les photos sauvegardées restent privées, sont conservées aux États-Unis chez notre fournisseur infonuagique, selon les durées indiquées à la section 10, et vous pouvez les supprimer dans l’application.
7. How We Use Your Information
- To provide, maintain, and improve the ChefBear service, including AI-powered menu scanning and dish recognition.
- To privately back up the menu photos you scan to your account when you are signed in, so recognition can be completed or retried later and your menus are available on your signed-in devices.
- To process your subscription and manage entitlements.
- To personalize your experience (dietary preferences, favourites) when you opt in.
- To communicate with you about your account, updates, and support requests.
- To detect, prevent, and address technical issues, fraud, and security incidents.
- To understand how app features are used and improve ChefBear through product analytics, only if you turn it on.
- To comply with legal obligations.
8. AI and Automated Decision-Making
ChefBear uses artificial intelligence and automated processing to:
- Recognize and translate dish names from menu images.
- Generate dish descriptions, images, and dietary information.
- Provide personalized dish recommendations based on your stated preferences.
Important / Important : AI-generated content (descriptions, images, dietary labels) is provided for informational purposes only and may not be fully accurate. Always verify allergen and dietary information with restaurant staff before ordering.
8.1 Quebec Law 25 — Right to Human Review
Under Quebec Law 25, if an automated decision is made based solely on automated processing of your personal information and produces legal effects or significantly affects you, you have the right to:
- Be informed that such a decision has been made using automated processing.
- Request information about the personal information used to render the decision, the reasons and principal factors leading to the decision, and your right to have the information corrected.
- Request a human review of the decision by contacting our Privacy Officer at contact@awesome-bears.com.
Décisions automatisées (Loi 25) : Si une décision est rendue exclusivement par un traitement automatisé de vos renseignements personnels et qu’elle produit des effets juridiques ou vous touche significativement, vous avez le droit d’être informé(e) de cette décision, d’obtenir les renseignements utilisés, les raisons et facteurs principaux ayant mené à la décision, et de demander une révision humaine en communiquant avec notre responsable de la protection des renseignements personnels à contact@awesome-bears.com.
9. Third-Party Services
We use the following third-party service providers to operate ChefBear:
| Service | Purpose | Data Shared |
|---|---|---|
| Firebase (Google) | Authentication, cloud database, private storage for menu photo backups and cloud menus, and crash reporting | Account-linked identifiers and authentication tokens, phone number when phone sign-in is used, backed-up menu photos, cloud menus, technical device data, and crash logs |
| RevenueCat | Subscription management and entitlements | Pseudonymous app user ID linked to your ChefBear account and subscription status; associated customer/account data is included in our deletion process |
| Google Cloud Vertex AI / Gemini (Google LLC) | Menu text recognition, dish descriptions, image generation | Menu images/text (without personal identifiers) |
| PostHog (PostHog, Inc., United States) | Product analytics, only with your express consent (off by default; can be withdrawn in Settings) | Product analytics data described in Section 4.2; never menu photos or menu text. Turning it off stops collection and resets the analytics identifier |
Technical diagnostics / Diagnostics techniques : Automatic diagnostics are limited to the minimum technical information needed for reliability, fraud prevention, security, and subscription operations. They exclude menu photos, OCR text, dish names, saved preferences, and assistant conversations and are not used for advertising or profiling. / Les diagnostics automatiques se limitent aux renseignements techniques minimaux nécessaires à la fiabilité, à la prévention de la fraude, à la sécurité et au fonctionnement des abonnements; ils n’incluent pas les photos de menus, le texte OCR, les noms de plats, les préférences enregistrées ni les conversations avec ChefBear.
Product analytics (PostHog) / Analytique produit (PostHog) : The app sends the product analytics data described in Section 4.2 to PostHog, Inc. in the United States (us.i.posthog.com), into a PostHog project that Awesome-Bears, Inc. uses across its products; each event is labeled with the product so ChefBear data can be separated. We use it only to improve the service, not for advertising or cross-app tracking, and we do not use the advertising identifier (IDFA). It is off by default and runs only if you turn on Settings > Share usage analytics; you can withdraw consent at any time by turning it off. Deleting your account deletes your PostHog profile and its events. / L’application transmet ces événements d’utilisation à PostHog, Inc. aux États-Unis, dans un projet utilisé par Awesome-Bears, Inc. pour l’ensemble de ses produits, uniquement pour améliorer le service; ils n’incluent jamais les photos ni le texte des menus et ne servent ni à la publicité ni au suivi entre applications. Ce réglage est désactivé par défaut, ne s’active qu’avec votre consentement exprès et peut être désactivé en tout temps; la suppression de votre compte supprime votre profil PostHog et ses événements.
Each third-party provider is contractually required to protect your information in accordance with applicable law. We encourage you to review their respective privacy policies.
RevenueCat customer/account data is included in our deletion process. Apple acts as an independent controller for App Store transactions and may retain transaction records under its own legal and accounting obligations. Deleting your ChefBear account does not cancel an active subscription; you must cancel it in the App Store.
Les données de client ou de compte RevenueCat sont incluses dans notre processus de suppression. Apple agit comme responsable indépendant du traitement des transactions effectuées dans l’App Store et peut conserver les relevés de transaction selon ses propres obligations. La suppression de votre compte ChefBear n’annule pas un abonnement actif : vous devez l’annuler dans l’App Store.
10. Data Retention
| Data Category | Retention Period |
|---|---|
| Account information | Until a deletion request is accepted; deletion is then irreversible. Only a minimal deletion-fulfilment and security tombstone is retained, normally for no more than 30 days, and it cannot restore the account. If a processor deletion is still awaiting verification, the tombstone is retained only until verification completes so the request can finish and data cannot be recreated; it is then deleted. |
| Scanned menus & saved dishes | Duration of account; immediately unavailable and irrecoverable when account deletion is accepted |
| Menu photos backed up to your account (signed-in users) | Photos of a scan that has not been recognized are deleted 365 days after its last activity; photos of a recognized menu are kept until 365 days after the menu's last successful content change. You can delete them in the app whenever you are online, except while your connection comes from mainland China. While you use ChefBear as a guest or signed out, photos are not backed up and are kept on your device until you delete them; menus scanned as a guest may be backed up after you upgrade to a full account. With app versions earlier than 4.4.0, menus scanned while your service region had not been determined, while your connection came from mainland China or while signed out may also be backed up the first time you open them while signed in to an international account from outside mainland China. |
| Crash logs | Under Firebase's default retention, Crashlytics data is generally kept for about 90 days before removal begins from live and backup systems; removal is not necessarily immediate. |
| Product analytics events (PostHog) | As long as needed for product analytics; deleted, together with your PostHog profile, when you delete your account. |
| Support correspondence | 2 years after resolution, or as required by law |
| Subscription records | RevenueCat customer/account data enters our deletion process; Apple may retain App Store transaction records as an independent controller for periods required by law. |
Conservation : Dès qu’une demande de suppression est acceptée, le compte et son contenu deviennent immédiatement inaccessibles et irrécupérables. Seul un enregistrement minimal servant à exécuter la suppression et à assurer la sécurité est conservé, normalement pendant 30 jours au plus; il ne permet pas de restaurer le compte. Si la suppression chez un sous-traitant attend encore une vérification, cet enregistrement n’est conservé que jusqu’à la fin de cette vérification afin d’achever la demande et d’empêcher la recréation des données, puis il est supprimé. Selon la durée de conservation par défaut de Firebase, les données Crashlytics sont généralement conservées environ 90 jours avant le début de leur retrait des systèmes actifs et de sauvegarde; ce retrait n’est pas nécessairement immédiat. Les événements d’analytique produit (PostHog) sont conservés aussi longtemps que nécessaire à l’analytique produit et supprimés, avec votre profil PostHog, lors de la suppression de votre compte. Lorsque vous êtes connecté, les photos de menu sont sauvegardées de façon privée dans votre compte afin de terminer ou de relancer la reconnaissance plus tard. À partir de la version 4.4.0 de l’application, la localisation et les autres métadonnées EXIF sont retirées avant le téléversement; les versions antérieures peuvent téléverser les photos avec ces métadonnées. Les photos d’une numérisation non reconnue sont supprimées 365 jours après sa dernière activité; celles d’un menu reconnu sont conservées jusqu’à 365 jours après la dernière modification réussie de son contenu. Vous pouvez les supprimer dans l’application lorsque vous êtes en ligne, sauf pendant que votre connexion provient de la Chine continentale. En mode invité ou lorsque vous n’êtes connecté à aucun compte, les photos ne sont pas sauvegardées dans votre compte et restent sur votre appareil jusqu’à ce que vous les supprimiez; les menus numérisés en mode invité peuvent être sauvegardés après la conversion en compte complet. Avec les versions de l’application antérieures à 4.4.0, les menus numérisés pendant que votre région de service n’était pas encore déterminée, pendant que votre connexion provenait de la Chine continentale ou lorsque vous n’étiez connecté à aucun compte peuvent aussi être sauvegardés la première fois que vous les ouvrez en étant connecté à un compte international depuis l’extérieur de la Chine continentale.
11. Cross-Border Data Transfers
Your personal information may be transferred to and processed in countries outside Canada, including the United States, where our third-party service providers operate. When personal information is transferred outside Canada or Quebec:
- We conduct a Privacy Impact Assessment (PIA) to ensure the receiving jurisdiction provides an adequate level of protection, or we implement appropriate contractual safeguards.
- We ensure that our service providers are contractually bound to protect your information to a standard comparable to Canadian privacy law.
- Under Quebec Law 25, before transferring personal information outside Quebec, we assess whether the information will receive adequate protection under the law of the receiving jurisdiction.
Transferts transfrontaliers : Vos renseignements peuvent être transférés à l’extérieur du Canada. Avant tout transfert, nous effectuons une évaluation des facteurs relatifs à la vie privée (EFVP) et nous nous assurons que des mesures de protection adéquates sont en place.
12. Data Breach Notification
In the event of a breach of security safeguards involving personal information that creates a real risk of significant harm to individuals, we will:
- Notify affected individuals as soon as feasible.
- Report the breach to the Office of the Privacy Commissioner of Canada (OPC) as required under PIPEDA.
- Report the breach to the Commission d'accès à l'information du Québec (CAI) where applicable under Quebec law.
- Maintain a record of all breaches of security safeguards.
Notification d’atteinte : En cas d’atteinte aux mesures de sécurité présentant un risque réel de préjudice grave, nous aviserons les personnes touchées dans les meilleurs délais et signalerons l’incident au Commissariat à la protection de la vie privée du Canada (CPVP) et, le cas échéant, à la Commission d’accès à l’information du Québec (CAI).
13. Children's Privacy
ChefBear is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child has provided us with personal information, please contact our Privacy Officer.
Enfants : ChefBear ne s’adresse pas aux enfants de moins de 13 ans. Nous ne recueillons pas sciemment de renseignements personnels auprès d’enfants de moins de 13 ans.
14. Your Rights & How to Complain
You have the right to:
- Access your personal information held by us.
- Correct any inaccurate or incomplete information.
- Withdraw consent for specific uses of your data.
- Request deletion of your personal information (subject to legal retention requirements).
- Request de-indexation of information linked to your name (Quebec Law 25).
- Request human review of automated decisions (Quebec Law 25; see Section 8).
- Obtain portability of your personal information in a structured, commonly used format (Quebec Law 25).
To exercise any of these rights, contact our Privacy Officer at contact@awesome-bears.com. We will respond within 30 days.
Complaints / Plaintes
If you are not satisfied with our response, you have the right to file a complaint with:
- Office of the Privacy Commissioner of Canada (OPC)
Website: www.priv.gc.ca | Phone: 1-800-282-1376 - Commission d'accès à l'information du Québec (CAI)
Website: www.cai.gouv.qc.ca | Phone: 1-888-528-7741
Vos droits : Vous avez le droit d’accéder à vos renseignements personnels, de les faire rectifier, de retirer votre consentement, de demander leur suppression, la désindexation, la portabilité et la révision humaine des décisions automatisées. Contactez notre responsable à contact@awesome-bears.com. Si vous n’êtes pas satisfait(e), vous pouvez déposer une plainte auprès du Commissariat à la protection de la vie privée du Canada ou de la Commission d’accès à l’information du Québec.
15. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy within the app and updating the "Effective Date" above. We encourage you to review this policy periodically.
16. Contact Us
Privacy Officer / Responsable de la protection des renseignements personnels
Awesome-Bears, Inc. doing business as ChefBear / Awesome-Bears, Inc., faisant affaire sous le nom de ChefBear