Ennak (“we”, “our”, “us”) operates the recipe planning and shopping list app at ennak.net. This policy explains what personal data we collect, why we collect it, and your rights under applicable law, including the EU General Data Protection Regulation (GDPR).
Data we collect
- Account data: email address and authentication identifiers when you sign in (for example via Google Sign-In).
- Recipe data: recipes, ingredients, collections, and shopping lists you create or save.
- Household data: optional shared household membership and invitations you choose to use.
- Technical data: basic server logs (IP address, user agent, request time) needed to operate and secure the service.
How we use your data
- Provide and sync your recipes and shopping lists across your devices.
- Authenticate you and protect your account.
- Operate, maintain, and improve the app.
- Respond to support requests you send us.
We do not sell your personal data. We do not use your recipe content for advertising.
Legal basis (GDPR)
- Contract: processing needed to provide the service you request.
- Legitimate interests: security, abuse prevention, and reliable operation.
- Consent: where required for optional features you enable.
Storage and retention
Data is stored on servers we control in the European Union unless otherwise stated for a specific integration. We retain account and recipe data while your account is active. You may request deletion at any time (see below).
Third parties
- Google Sign-In: if you choose Google authentication, Google processes data under its own privacy policy.
- Infrastructure providers: hosting and database services that process data solely on our instructions.
- Privacy-friendly analytics: we may use Plausible Analytics to understand aggregate traffic (page views, referrers, device type). Plausible does not use cookies for tracking and does not collect recipe content or shopping list data. You can use browser “Do Not Track” settings; we respect DNT when analytics is enabled.
- Error monitoring: we may use Sentry to collect crash reports and server errors so we can fix bugs. Reports exclude recipe content and shopping lists by default; authentication headers are filtered before upload.
Analytics
When enabled on ennak.net, we load a lightweight analytics script from Plausible (or a self-hosted Plausible instance we control). This helps us see which pages are used and fix usability problems. Analytics data is aggregated and is not used for advertising. No analytics script runs in local development unless explicitly configured.
Error monitoring
When enabled on ennak.net, the app and API may send anonymized error reports to Sentry (or a Sentry-compatible endpoint we control). This includes stack traces, device or browser type, and the page or API path where the error occurred. We do not enable this in local development unless explicitly configured. You can contact us to request deletion of error data linked to your account email if you have signed in.
Your rights
Depending on your location, you may have the right to access, correct, export, restrict, or delete your personal data, and to object to certain processing. To exercise these rights, email [email protected] from the address linked to your account. We respond within the timeframes required by law.
Children
Ennak is not directed at children under 16. We do not knowingly collect data from children.
Changes
We may update this policy. Material changes will be reflected on this page with a new “Last updated” date.
Contact
Questions about privacy: [email protected]