Privacy Policy
How Tayyib handles your data.
Effective date: July 9, 2026 · Last updated: July 31, 2026
Tayyib is an AI-powered halal food scanner for iOS. This policy explains what data the app collects, why, who it is shared with, and the choices you have. Tayyib requires no account, no ads, and no advertising trackers. You can use most of the app without giving us any personal information. Questions? Email azhaan@eattayyib.app.
Summary
- No account required. You are identified only by a random device identifier and, optionally, a display alias you choose.
- Camera is used only to scan barcodes and photograph ingredient labels.
- Location is optional, approximate (city/country only), and powers the “scans around the world” community feed.
- Ingredient text and scan photos are sent to our own API service, which forwards them to a third-party AI provider (OpenRouter) to classify ingredients — with no personal or identifying information attached.
- Contributions (product edits, flags, feedback, and an optional alias) are stored in Apple CloudKit and, for some, are visible to other users.
- No ads. No advertising trackers. We never sell your data.
1. Information we collect
Camera
Tayyib uses your device camera to scan product barcodes and photograph ingredient labels for text recognition (OCR). Images are processed to read barcodes and ingredient text. We do not use camera images to identify you and do not use them for advertising.
Location (optional)
If you grant permission, Tayyib accesses your approximate location (iOS reduced-accuracy / coarse location). We reverse-geocode it to a city and country only — we do not store precise GPS coordinates. This is used to display the live “scans happening around the world” community feed and appears there anonymized. Location is entirely optional; if you decline, the rest of the app works normally.
Device identifier
To attribute your scans and contributions without requiring an account, the app uses a device identifier (Apple’s identifier for vendor). This is not your name, email, or phone number, and it resets if you delete and reinstall the app.
Optional alias
You may set a display alias shown alongside contributions you make. This is optional and can be left blank.
Contact email (optional)
When you submit feedback or flag a product/ingredient, you may optionally include an email address so we can follow up. If you leave it blank, we cannot contact you about that submission.
User contributions
When you correct a product name or ingredient list, flag a suspect ingredient or verdict, or submit feedback, we store that content along with your device identifier (and alias/email if provided).
Scan activity
When you scan a product, we may record the product name, a rating, an image URL, the barcode, a timestamp, and — if location is enabled — the coarse city/country, associated with your device identifier.
We do not collect contacts, health data, financial data, browsing history, or advertising identifiers.
2. How your information is used
- To analyze ingredients — ingredient text (and, for label scans, the photo) is sent to our API service, which passes it to our AI provider to classify each ingredient and detect alcohol, animal-derived sources, and kosher/vegetarian status.
- To provide app functionality — attributing scans and contributions to your device, awarding contributor credit under your optional alias, and showing your history.
- To power the community feed — displaying anonymized, coarse-location scan activity.
- To improve accuracy — community edits and flags feed a human/admin review pipeline; verified products receive an accuracy badge.
- To respond to feedback — using the optional email you provide.
We do not use your data for advertising, and we do not sell it.
3. Third-party services
Ingredient analysis does not go straight from your phone to the AI provider. The app sends the request to Tayyib’s own API service, which adds the analysis instructions and forwards it to the AI provider. This exists so that no API key or prompt has to be shipped inside the app. Only the ingredient text or label image travels this path — never your device identifier, alias, email, or location.
- Cloudflare — hosts Tayyib’s API service. Every ingredient-analysis request passes through Cloudflare’s network in transit, so Cloudflare processes that request on our behalf. Cloudflare privacy policy.
- OpenRouter — our AI processor. Our API service sends ingredient text and, for label scans, the product/label image to classify ingredients. We do not send your device identifier, alias, email, or location with these requests. OpenRouter privacy policy.
- Open Food Facts — an open food-product database used to look up products by barcode. Open Food Facts privacy.
- Apple CloudKit — Apple’s cloud database, where products, ingredients, scans, contributions, and your optional alias/email are stored. Apple privacy.
4. Public visibility of contributions
Some data is stored in a public database so the community and app can use it. Product data, ingredient classifications, scan activity in the community feed, and flags/edits can be visible to other users. These are shown anonymized — identified by your optional alias or an opaque identifier, never your real name. Do not include personal or sensitive information in aliases, product edits, flags, or feedback text.
5. Data retention and deletion
Contributions and product/ingredient data are retained to keep the shared database accurate over time. Your device identifier resets if you delete and reinstall the app. To request deletion of contributions associated with you, or to ask questions about your data, email azhaan@eattayyib.app and we will assist.
6. Children’s privacy
Tayyib is rated for general audiences (4+) and is not directed at children under 13. It does not knowingly collect personal information from children, and it collects no data used for targeted advertising.
7. Security
Data in transit uses standard HTTPS/TLS encryption. Cloud data is stored in Apple CloudKit, protected by Apple’s infrastructure security.
8. Changes to this policy
We may update this policy as the app evolves. Material changes will be reflected here with a new “Last updated” date.
9. Contact
Questions, data requests, or concerns: azhaan@eattayyib.app.