Kitchen Pantri Kitchen Pantri
← Kitchen Pantri Terms Privacy Copyright
← Kitchen Pantri Terms Privacy Copyright

Pantri Privacy Policy

Effective date: July 16, 2026

This Privacy Policy explains how Paya LLC ("Pantri," "we," "us," or "our") collects, uses, shares, and protects information when you use the Pantri mobile application and related services (the "Service"). Pantri helps you track your pantry inventory and shopping lists, save and import recipes, plan meals, and chat with an AI kitchen assistant. We currently offer the Service only in the United States and Canada.

By using the Service you agree to this Privacy Policy. If you do not agree, please do not use the Service. This Policy is part of, and incorporated into, our Terms of Service.


1. A quick summary

  • We collect the information you give us (your name and email from the sign-in method you choose — Apple, Google, or email one-time code — and the content you add: inventory, shopping lists, recipes, meal plans, chat messages, and the receipt and recipe images you scan or upload).
  • We use it to run the Service, including sending your content to AI models that parse receipts, structure recipes, generate recipe suggestions, and power the chat assistant.
  • We process the receipt and recipe photos you scan only to extract their text (items, prices, ingredients, steps) and then discard the raw images — we keep only the extracted text, never the original photo.
  • We do not sell your personal information, we do not show you ads, and we do not use any third-party advertising or analytics tracking SDKs. The app does not track you across other companies' apps or websites.
  • Your pantry, shopping list, recipes, and meal plans are private to your household and protected by per-household access controls. They are visible only to you and to members you invite to your household.
  • Payments are handled by Apple; we never receive your full payment card details.

2. Who is responsible for your information

The data controller for your information is Paya LLC, a Virginia limited liability company, located at 11166 Fairfax Blvd, Ste 500 #1139, Fairfax, VA 22030. You can reach us at info@paya.llc.


3. Information we collect

3.1 Information you provide

  • Account and identity information. You create an account and sign in using one of the supported methods, and we receive identity information from that method:

    • Sign in with Apple — your name and email address (or Apple's private relay email) and a unique Apple user identifier, depending on what you allow Apple to share.
    • Sign in with Google — your name, email address, and a unique Google user identifier from your Google account.
    • Email one-time code — your email address, which we verify by sending a one-time code to it.

    We do not receive your Apple, Google, or email password.

  • Linking sign-in methods by email. Your Pantri account is keyed to your email address. If you sign in using more than one method (for example, Apple and Google, or a one-time code) that share the same email address, those methods resolve to the same Pantri account and the same data, rather than creating separate accounts. This means that whoever can sign in via any method tied to your email address can access your account, so keep the email account and each sign-in method secure. If different methods use different email addresses, they create separate accounts.

  • Your content ("User Content"). Everything you create or import in the app, including:

    • Inventory items — item names, categories, quantities and units, added and expiry dates, and optional prices.
    • Shopping lists — item names, quantities, and completion status.
    • Recipes ("My Cookbook") — titles, descriptions, notes, ingredients, steps, tags, images, and the source URL/site/title for imported recipes.
    • Meal plans — dates, meal types, and linked or free-text meals.
    • Profile and household preferences — household name, household size (number of adults and children), dietary restrictions, preferred cuisines, and your time zone.
  • Images. Photos of grocery receipts (for inventory import) and recipe photos (for recipe import) that you capture with the camera or select from your photo library. These images are sent to us only to be processed into structured text (such as the items and prices on a receipt, or a recipe's ingredients and steps). We do not retain the raw images: once the information has been extracted, the image is discarded, and we keep only the resulting structured text.

  • Imported / shared content. When you use the "Save to Pantri" share extension to import a recipe from a website or a social app (e.g. Safari, Instagram, TikTok, YouTube), the app extracts content from the page on your device — such as the page title, recipe structured data, description/caption text, and a hero image — and sends that extracted content to us to build the recipe. See Section 6.

  • Chat messages and feedback. The messages you send to the AI assistant, your thumbs-up/down ratings on assistant replies, and any feedback you submit in the app.

  • Receipt emails (optional). If you use your personal receipt-forwarding address at the receipts.kitchenpantri.com domain, the receipts you forward there are processed into inventory items.

3.2 Information collected automatically

  • Authentication and session data. Your access token, household ("tenant") identifier, and user identifier, used to keep you signed in and to route your requests. On your device these are stored securely in the iOS Keychain.
  • Device and technical data. Your device's time zone, and standard server-side request metadata such as IP address and timestamps recorded in our server logs for security, debugging, and abuse prevention.
  • Subscription data. If you subscribe to Pantri Premium, Apple provides us a signed transaction record (a cryptographically signed receipt) and an anonymous account token we generate to link the subscription to your account, plus your entitlement status (active, tier, and expiry). We do not receive your credit card number or full payment details — Apple processes the payment.

3.3 What we do not collect

  • We do not use third-party analytics, advertising, attribution, or crash-reporting SDKs.
  • We do not request or collect your precise location, contacts, microphone, or health data.
  • We do not use Apple's App Tracking Transparency because we do not track you across other apps or websites, and we do not share data with data brokers.

4. How we use your information

We use the information above to:

  • Provide, operate, and maintain the Service and your account.
  • Process your content with artificial intelligence, including: reading grocery receipts and recipe photos into structured items, structuring imported recipes, generating recipe suggestions, and powering the chat assistant. This processing is described in Section 5.
  • Sync your data across your devices and share it with members of your household that you invite.
  • Manage your Pantri Premium subscription and entitlements.
  • Provide customer support and respond to your requests and feedback.
  • Protect the Service — detecting, preventing, and addressing fraud, abuse, security incidents, and violations of our Terms; and metering AI usage against household budgets.
  • Comply with legal obligations and enforce our agreements.

Legal bases (EEA/UK users). Where the GDPR applies, we process your information to perform our contract with you (providing the Service), for our legitimate interests (securing and improving the Service), to comply with legal obligations, and with your consent where required (for example, camera and photo-library access, which you grant through the iOS permission prompts and can revoke in Settings).


5. Artificial intelligence and your content

Core Pantri features are powered by AI models. To provide them, we send relevant User Content to AI/large-language-model service providers that process it on our behalf:

  • Receipt and recipe images are sent for optical character recognition and structuring.
  • Chat messages, together with context such as the recipes, inventory, and meal-plan items relevant to your request, are sent to generate assistant replies and suggested actions.
  • Imported recipe text is sent to be structured into a clean recipe.

These providers act as our processors under contract and are not permitted to use your content for their own purposes. AI output can be inaccurate — see the disclaimers in our Terms of Service, including the important note that AI-generated recipes and nutritional or dietary information may be wrong and are not a substitute for professional or medical advice.

"Explore" (global) recipes. Pantri offers AI-synthesized recipes that are shared with all users in the Explore/Discover area ("Crafted by Pantri AI"). These global recipes are generated by us and are not created from, and do not expose, your private User Content. Saving a global recipe copies it into your private cookbook.


6. The "Save to Pantri" share extension

The share extension lets you import a recipe from another app or website. Extraction happens on your device: for a shared link, the extension loads the page in a private, logged-out, in-app web view (using your own network connection) and reads publicly available page data such as recipe structured data, description/caption text, title, and a hero image. It then sends that extracted content — not your browsing history or cookies — to us to build the recipe. We do not fetch the URL from our servers; only the content your device extracts is transmitted.


7. How we share information

We share information only as described here. We do not sell your personal information, and we do not share it for cross-context behavioral advertising.

  • Service providers / subprocessors. Companies that host our infrastructure, provide AI/LLM processing, and operate the receipt-email intake, acting on our behalf under contracts that limit their use of the data to providing services to us.
  • Sign-in providers. For Sign in with Apple and Sign in with Google, the respective provider authenticates you and shares the identity information described in Section 3.1. Their handling of your data is governed by their own privacy policies. For email one-time-code sign-in, we (or our email-delivery provider) send a verification code to your email address.
  • Apple. In addition to Sign in with Apple, Apple handles subscription purchases and billing (payment processing and receipt verification). Apple's handling of that data is governed by Apple's privacy policy.
  • Members of your household. Content in a household ("tenant") is shared with the other members you invite to that household. Anyone you invite can view and manage that household's inventory, shopping list, recipes, and meal plans. Only invite people you trust.
  • Legal and safety. When we believe in good faith it is required to comply with law, legal process, or a lawful government request, or to protect the rights, property, or safety of Pantri, our users, or the public.
  • Business transfers. In connection with a merger, acquisition, financing, or sale of assets, your information may be transferred, subject to this Policy.

We can provide the current list of subprocessor categories on request at info@paya.llc.


8. Data retention

We keep your information for as long as your account is active and as needed to provide the Service. When you delete specific content (an item, recipe, or list), it is removed from your active data. If you delete your account, we delete or de-identify your personal information and User Content within a reasonable period, except where we must retain certain records to comply with legal obligations, resolve disputes, prevent abuse, or enforce our agreements. Backups and server logs are retained for a limited time on a rolling basis. Aggregated or de-identified data that can no longer be linked to you may be retained.


9. How to access or delete your data

  • In the app. You can view and edit your profile and content, and delete individual items, recipes, and lists, directly in the app. You can leave a household from Profile.
  • Account deletion. To delete your account and associated personal data, use the in-app account-deletion option if available, or email info@paya.llc and we will process your request.
  • Other requests. To access, correct, port, or restrict processing of your data, contact info@paya.llc. We may need to verify your identity before acting.

10. Your privacy rights

10.1 California (CCPA/CPRA)

If you are a California resident, you have the right to know what personal information we collect and how we use and disclose it, to request access to and deletion of it, to correct inaccurate information, and to not be discriminated against for exercising these rights. We do not sell your personal information and we do not share it for cross-context behavioral advertising, so no opt-out of sale/sharing is required; there is nothing to opt out of. To exercise your rights, contact info@paya.llc. You may use an authorized agent.

10.2 Canada (PIPEDA)

If you are in Canada, you have the right under the Personal Information Protection and Electronic Documents Act (PIPEDA) — and comparable provincial laws, such as those in Alberta, British Columbia, and Quebec — to access the personal information we hold about you, to ask us to correct inaccurate information, and to withdraw your consent to our processing (subject to legal or contractual restrictions and reasonable notice). We collect, use, and disclose your personal information only for the purposes described in this Policy and with your consent, express or implied, except where the law otherwise permits or requires. To exercise these rights, contact info@paya.llc. You also have the right to complain to the Office of the Privacy Commissioner of Canada, or to your applicable provincial privacy commissioner.

10.3 EEA, UK, and other regions

If you are in the European Economic Area, the United Kingdom, or a jurisdiction with similar laws, you have the right to access, correct, delete, restrict, or object to our processing of your personal data, and to data portability. Where processing is based on consent, you may withdraw consent at any time. You also have the right to lodge a complaint with your local data protection authority. To exercise these rights, contact info@paya.llc.


11. Security

We protect your information with technical and organizational measures, including encryption in transit (HTTPS/TLS), secure storage of session credentials in the iOS Keychain, and per-household access controls that keep each household's data isolated from others. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security.


12. Children's privacy

The Service is not directed to children under 13 (or the minimum age required in your country, such as 16 in parts of the EEA), and we do not knowingly collect personal information from them. If you believe a child has provided us personal information, contact info@paya.llc and we will delete it.


13. International data transfers

We operate the Service from, and may process and store information in, the United States and other countries. If you use the Service from outside those countries, your information may be transferred to and processed in a country with different data-protection laws. Where required, we use appropriate safeguards (such as standard contractual clauses) for such transfers.


14. Changes to this Policy

We may update this Policy from time to time. When we make material changes, we will update the "Effective date" above and, where appropriate, provide additional notice in the app or by email. Your continued use of the Service after an update means you accept the revised Policy.


15. Contact us

Questions or requests about this Policy or your data:

Paya LLC
Attn: Privacy
11166 Fairfax Blvd, Ste 500 #1139
Fairfax, VA 22030
info@paya.llc