Privacy Policy

Last updated: January 8, 2025

1. Introduction

Recipe API ("we", "us", or "our") operates the recipe-api.com website and API service. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

By using Recipe API, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

Account Information

When you create an account, we collect:

  • Email address (required)
  • Company name (optional)

Usage Information

When you use our API, we automatically collect:

  • API request logs (endpoints accessed, timestamps)
  • Request counts for rate limiting and billing
  • IP addresses (for rate limiting and security)
  • User agent strings (for debugging and analytics)

Payment Information

Payment processing is handled by Stripe. We do not store your credit card details. Stripe may collect payment information in accordance with their privacy policy.

Website Analytics

We use Google Analytics (GA4) to understand website usage patterns. This includes page views, traffic sources, and general demographic information. This data is aggregated and not personally identifiable.

3. How We Use Your Information

We use the information we collect to:

  • Provide and maintain the API service
  • Authenticate your API requests
  • Enforce rate limits and prevent abuse
  • Process payments and manage subscriptions
  • Send transactional emails (magic links, usage alerts, billing notifications)
  • Respond to your inquiries and support requests
  • Improve our service and develop new features
  • Send marketing communications (only with your consent, with easy unsubscribe)

4. Third-Party Services

We use the following third-party services to operate Recipe API:

Stripe

Payment processing. See Stripe's Privacy Policy.

Google Analytics (GA4)

Website analytics. See Google's Privacy Policy.

Supabase

Database hosting (data stored in the EU/US). See Supabase's Privacy Policy.

Fly.io

API hosting (primary region: London, UK). See Fly.io's Privacy Policy.

5. Data Retention

We retain your information as follows:

  • Account data: Until you request account deletion
  • API usage logs: 90 days
  • Payment records: As required by law (typically 7 years for tax purposes)

6. Your Rights

You have the right to:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate personal data
  • Deletion: Request deletion of your account and personal data
  • Export: Request your data in a portable format
  • Withdraw consent: Unsubscribe from marketing communications at any time

To exercise these rights, contact us at paul@recipe-api.com.

7. Security

We implement appropriate security measures to protect your data:

  • API keys are hashed using HMAC-SHA256 with a secret pepper (we never store plaintext keys)
  • All traffic is encrypted via HTTPS/TLS
  • Database access is restricted and encrypted at rest
  • Regular security reviews and updates

While we strive to protect your information, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

8. Cookies

We use the following cookies:

  • Session cookies: Required for developer portal authentication
  • Analytics cookies: Google Analytics (GA4) for website usage analysis

We do not use third-party advertising cookies or sell your data to advertisers.

9. International Data Transfers

Your data may be processed in countries outside your residence, including the United States and European Union. We ensure appropriate safeguards are in place through our service providers' compliance with applicable data protection regulations.

10. Children's Privacy

Recipe API is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us.

11. Changes to This Policy

We may update this Privacy Policy from time to time. For material changes, we will notify you by email or through a notice on our website. Your continued use of the service after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Email: paul@recipe-api.com