Privacy
Last updated 2026-05-01
MooreDiet is a small, family-only nutrition logger built and operated by Sam Moore. This page explains in plain language what data the app handles, why, and what your options are. If anything here is unclear, email samrmoore@gmail.com and I will rewrite it.
Who runs this app
Sam Moore (Albuquerque, New Mexico, USA). The app runs on a single small server rented from AWS Lightsail. It is not affiliated with any company. There are no investors, advertisers, or third-party trackers. There never will be.
Who can use it
Access is by invitation only. To sign in, your Gmail address must already be on the household allowlist. If it is not, the home page lets you ask Sam to add you. The app is intended for adults (13+) who are part of a Moore household or family group; it is not designed for children.
What data the app collects
-
Google account profile. When you sign in with Google, the app
receives your name, email, profile picture, and a stable Google account ID.
Scope used:
openid email profile. - The food information you type or speak. Meals you log, recipes you contribute, and weight entries you record. This is the entire point of the app, and it is the only data the app stores in its own database.
-
Optional: Google Drive files you pick. If you choose to attach
a recipe PDF or image from your Drive using the Google Picker, only the file
you explicitly select is read by the app, and only at that moment, to extract
recipe text. Scope used:
drive.file, which by Google's design only exposes files the user has individually opened with this specific app. The app cannot list, browse, or read any other Drive files. - Activity you log yourself. Steps and active calories you type into the activity form on your profile, or mention to the chat ("I walked 8200 steps"). Stored as a daily aggregate. There is no automatic sync from any third-party fitness service.
- Light operational data. Token usage by the AI assistant (Gemini) and basic request logs. We log the requesting user's email/ID and timestamps so the household admin can see the AI usage report. We do not log full prompts or meal contents in the operational logs.
How your Google data is used
Google data is used only to provide the feature you triggered, in real time, and is not retained by the app for any other purpose:
- Profile data identifies you to the household and decorates the UI.
- Drive files you pick are read once, parsed for recipe text, and the parsed recipe is what gets stored. The original Drive file is not copied or kept.
- Google data is never sold, never shared with advertisers, and never used to train any AI model.
Where your data is stored
On a single AWS Lightsail PostgreSQL instance in the US East region, owned by Sam's personal AWS account. Database backups are encrypted at rest. The app server and database talk to each other over the local Lightsail network and are not exposed to the public internet beyond the HTTPS endpoint at diet.landofmoore.com.
Who sees your data
- You see all of your own data.
- Other members of your household see only summary statistics about you (how many meals you've logged, your current streak, which badges you've earned, your first name). They do not see what you ate, your weight, your calorie targets, or any biometric data.
- Sam, as the operator, has database-level access for support and debugging. He does not look at it absent a specific request from you to fix something.
- Google Cloud (Gemini API) sees the chat messages you send for the moment they are processed; per Google's terms, those messages are not used to train models.
How to delete your data
Email samrmoore@gmail.com from the same address you used to sign in and ask for deletion. Your User row, meals, recipes, weight logs, and AI usage records will be removed within seven days. Aggregate counts in another household member's view will be regenerated without your data.
You can also revoke the app's access to your Google account at any time at myaccount.google.com/permissions. Revoking does not delete data already in this app's database; for that, email Sam.
How long data is kept
Indefinitely while you are an active household member, because that is what makes the streak / consistency / history features work. Once you ask for deletion (or Sam shuts the app down), it is gone.
Cookies and tracking
No third-party analytics, no ad pixels, no fingerprinting. The app uses a
localStorage token to keep you signed in across visits, and that's it.
Sign out clears it. There are no cookies set by the app server.
Changes to this policy
If anything material changes (new scope, new third party in the loop, new way the data is used), the change will be announced in-app and the "Last updated" date above will move forward.
Contact
Sam Moore · samrmoore@gmail.com