# Privacy Policy for Festival Foodie

*Last updated: August 23, 2026*

Festival Foodie is a food festival menu companion. This page explains, in plain
language, what the app collects and what it does not.

## What we collect

**A random device ID.** The first time you rate a dish, the app generates a
random ID and stores it only on your device. It is not your Apple ID, your
name, your email address, or your device's advertising or vendor identifier.
It exists only so the app can tell "one vote" from "two votes" when it totals
up what other people thought of a dish.

**Your ratings.** When you mark a dish Liked, Didn't Like, or Favorite, that
choice is sent to our own ratings server along with the random device ID
above, so it can be added to that dish's public total. Search terms and
dish-level detail are never sent anywhere beyond your device.

**Basic usage analytics, through Firebase.** The app uses Google's Firebase
Analytics to understand overall usage: how many people open the app, which
screens they visit, and how long a session lasts. This is tied to an
app-instance identifier that Firebase generates and manages on its own, not
your device's advertising identifier and not its vendor identifier (the app
turns vendor-identifier collection off entirely). We also log three specific
actions through this same system: saving or unsaving a dish, submitting a
rating (which of Liked, Didn't Like, or Favorite, not which dish), and
switching between festival plans. None of this includes which dish you
rated, what you searched for, your saved list, or anything else that
identifies you personally.

## What we do not collect

- **Your saved list.** Bookmarking a dish to try later never leaves your
  device. There is no column for it on our server, and no way for us to see
  what you have saved.
- **Your location.** The app can show your position as a dot on the festival
  map, but it never reads or stores your coordinates. That dot is drawn
  entirely by Apple's Maps framework on your device; the app itself never
  receives a latitude or longitude.
- **An account.** There is no sign-up, no login, and no password. The random
  device ID is the only thing that identifies your install, and you never see
  it or enter it anywhere.
- **Contacts, photos, or any other data on your device**, beyond the local
  app storage described above.
- **Any advertising identifier, full stop.** The app is built with a version
  of Firebase Analytics that structurally excludes advertising-identifier
  (IDFA) collection, not just a build that avoids calling it. Tracking across
  other apps or websites isn't possible with what's collected here, and we do
  not share data with advertisers or data brokers.

## Where your data lives

- Your saves and ratings are stored in a single file on your device. If you
  delete the app, that file is deleted with it.
- Your ratings and random device ID are stored on our server for as long as
  the corresponding festival plan is offered in the app, so the crowd totals
  stay accurate. Because the ID is random and unlinked to any personal
  information, we have no way to connect it back to you.
- The usage analytics described above are stored on Google's servers, under
  Google's own retention rules for Firebase Analytics, and identified only by
  the Firebase-generated app-instance identifier, never by your name or an
  account. See [Google's Privacy Policy](https://policies.google.com/privacy)
  for how Google handles that data.

## Children's privacy

Festival Foodie is not directed at children and does not knowingly collect
information from anyone, of any age, beyond what is described above.

## Changes to this policy

If what the app collects ever changes, this page will change with it, and the
"Last updated" date at the top will reflect that.

## Contact

Questions about this policy can be sent to:
**[REPLACE WITH YOUR SUPPORT CONTACT EMAIL BEFORE PUBLISHING]**
