1. Introduction
At Qooti, we are committed to protecting your privacy and handling your personal data responsibly. This Privacy Policy explains how we collect, use, store, and protect your information when you use our application. It has been prepared in accordance with the Personal Data Protection Law of the Kingdom of Saudi Arabia (Royal Decree No. M/19) and its implementing regulations.
2. Data We Collect
We collect only the personal data necessary to provide and improve our services. This may include:
- Account information — such as your name and email address, used to create and manage your account
- Personal profile data — such as age, gender, height, weight, activity level, and dietary goals, used to calculate your personalized nutrition targets
- Usage data — such as food logs, meal records, and nutritional entries you create within the application
- Media — such as photos you choose to capture for food analysis or personal progress tracking
- Health data — such as step counts or body weight, if you choose to connect the application with your device's health platform
- Technical data — such as device type, operating system version, and anonymized crash reports, used solely to maintain and improve app performance
We do not collect payment or financial information. All transactions are handled directly by the platform provider (Apple App Store).
3. How We Use Your Data
Your personal data is used solely to operate and improve the application. Specifically, we use it to:
- Provide the core features of the application, including calorie tracking and nutrition analysis
- Personalize your experience based on your profile and goals
- Sync your data securely across your devices
- Send you optional reminders or notifications, only with your prior consent
- Diagnose technical issues and improve the performance and stability of the application
We do not use your personal data for advertising purposes, and we do not sell your data to third parties.
4. Sharing of Data
We do not share your personal data with third parties except in the following limited circumstances:
- Service providers: We work with trusted technical service providers (such as cloud hosting and infrastructure providers) who assist us in operating the application. These providers are contractually bound to process your data only as directed by us and in accordance with applicable law.
- Legal compliance: We may disclose your data when required by law or in response to a valid legal order from a competent authority.
- Protection of rights: We may share data when necessary to protect our rights, property, or the safety of our users.
Any cross-border transfer of personal data is conducted only to countries that provide an adequate level of data protection, or with appropriate contractual safeguards in place, in compliance with Saudi PDPL requirements.
5. Sensitive Data
Health-related information — including body weight, dietary data, and any health metrics — is considered sensitive personal data under Saudi law. We treat such data with the highest level of care, process it only as necessary to deliver the application's core features, and do not share it with any party beyond what is described in this policy.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, loss, alteration, or disclosure. These measures include encryption of data in transit and access controls on our systems. In the event of a data breach that affects your personal data, we will notify the relevant authority and, where required, inform you without undue delay.
7. Data Retention
We retain your personal data for as long as your account remains active or as necessary to provide our services. Upon account deletion, your personal data will be permanently removed from our systems within 30 days, except where retention is required by law.
8. Your Rights
In accordance with the Personal Data Protection Law of the Kingdom of Saudi Arabia, you have the following rights regarding your personal data:
- Right to access — you may request a copy of the personal data we hold about you
- Right to correction — you may request correction of any inaccurate or incomplete data
- Right to deletion — you may request deletion of your personal data, subject to any legal retention obligations
- Right to data portability — you may request a copy of your data in a structured format
- Right to withdraw consent — where processing is based on your consent, you may withdraw it at any time without affecting the lawfulness of prior processing
You can exercise most of these rights directly through the application's settings. For further requests, contact us via Instagram: @useqooti
9. Children's Privacy
Our application is not directed at children under the age of 13. We do not knowingly collect personal data from children under this age. If we become aware that such data has been collected, we will take steps to delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes through the application and update the date at the top of this page. Continued use of the application after changes take effect constitutes your acceptance of the updated policy.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or how your data is handled, please contact us via Instagram: @useqooti