Privacy Policy

Last updated: December 18, 2025

1. Information We Collect

Account Information

When you create an account, we collect:

  • Name
  • Email address
  • Profile information (if provided)

Sign-in on the web

On winebrats.ai you sign in with email and password. We store your account credentials securely (passwords are hashed; we never store plain-text passwords).

Usage Data

  • Wines you favorite
  • Restaurants you favorite
  • Wine menus you upload
  • Search queries

2. How We Use Your Information

  • To provide and improve our wine discovery service
  • To personalize your experience and recommendations
  • To save your favorite wines and restaurants
  • To process uploaded wine menus
  • To communicate important updates about the service
  • To analyze usage patterns and improve our platform

3. Data Storage and Security

We take data security seriously:

  • Passwords are hashed using industry-standard bcrypt encryption
  • All data is stored in secure PostgreSQL databases
  • Communication with our servers uses HTTPS encryption
  • Session tokens are stored in HttpOnly cookies on the web
  • We never sell your personal information to third parties

4. Third-Party Services

We use the following third-party services:

  • Google Maps API: For restaurant location and autocomplete on the web
  • OpenAI Vision: For wine menu image processing

Google Maps is subject to Google's privacy policy:

5. Legal Basis for Processing (GDPR)

For users in the European Economic Area (EEA) and UK, we process your data based on:

  • Contract: Processing necessary to provide our service to you
  • Consent: When you explicitly agree to specific data processing
  • Legitimate Interests: For service improvement and security

6. Your Rights

All Users

  • Access: Request a copy of your personal data
  • Correction: Update or correct your information
  • Deletion: Request deletion of your account and data
  • Export: Download your data in a portable format
  • Opt-out: Unsubscribe from marketing communications

Additional Rights for EEA/UK Users (GDPR)

  • Right to Restrict Processing: Limit how we use your data
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time
  • Right to Lodge a Complaint: File a complaint with your local data protection authority

Additional Rights for California Residents (CCPA)

  • Right to Know: Request disclosure of data collected about you
  • Right to Delete: Request deletion of your personal information
  • Right to Non-Discrimination: We will not discriminate against you for exercising your rights
  • Right to Opt-Out: We do not sell your personal information

To exercise these rights, please contact us at: privacy@winebrats.ai

You can also delete your account directly from the app settings.

7. International Data Transfers

Your data may be transferred to and processed in countries outside your home country, including the United States. When we transfer data internationally, we ensure appropriate safeguards are in place:

  • Standard Contractual Clauses approved by the European Commission
  • Data processing agreements with all third-party providers
  • Encryption of data in transit and at rest

8. Cookies and Tracking

We use cookies and local storage for:

  • Authentication tokens (to keep you logged in)
  • User preferences
  • Analytics to improve our service

You can disable cookies in your browser settings, but this may limit functionality.

9. Data Retention

We retain your data:

  • Account data: Until you delete your account
  • Uploaded images: For processing and future reference
  • Favorites: Until you remove them or delete your account
  • Logs and analytics: Up to 90 days

10. Children's Privacy

Wine Brats is not intended for users under 21 years of age. We do not knowingly collect personal information from anyone under 21. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

11. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.

12. Contact Us

If you have questions about this privacy policy, please contact us: