iEatz Healthy Privacy Policy Last Updated: July 14, 2025 PLEASE READ: This Privacy Policy explains how iEatz Healthy, Inc. (“iEatz Healthy,” “we,” “us,” or “our”) collects, uses, discloses, and safeguards information when you use our mobile application, website located at https://www.ieatzhealthy.com, and any other online products or services that link to this Privacy Policy (collectively, the “Services”). This Policy applies only to residents of the United States. If you do not agree with any part of this Policy, please discontinue use of the Services. Capitalized terms not defined here have the meanings given in our Terms of Service. ──────────────────────────────────────────────────────── SUMMARY OF KEY POINTS ──────────────────────────────────────────────────────── • We collect the information you give us, information collected automatically, and information from third‑party sources. • We use the information to operate, improve, and secure the Services, to communicate with you, to comply with law, and, with your consent, for marketing and analytics. • We share information with vendors that help us run the Services, with affiliates, during business transfers, and as required by law. We do **not** sell or “share” (as that term is defined under the California Consumer Privacy Act, as amended by the California Privacy Rights Act, “CCPA”) your personal information. • We employ industry‑standard administrative, technical, and physical safeguards, but no Internet transmission is 100 % secure. • Depending on your state of residence you may have privacy rights – including the right to access, delete, or correct your data, and to opt out of targeted advertising – which you can exercise by emailing admin@ieatzhealthy.com or by visiting https://www.ieatzhealthy.com/privacy‑request. • Special rules apply to California, Virginia, Colorado, Connecticut, Utah, and Texas residents; see Section 12. ──────────────────────────────────────────────────────── 1. INFORMATION WE COLLECT ──────────────────────────────────────────────────────── A. Information You Provide • Account data – name, username, password, e‑mail address, postal address, telephone number, date of birth. • Profile & wellness data – height, weight, dietary preferences, fitness goals, biometric data you choose to enter. • Payment data – processed by Stripe, Inc. (“Stripe”) on our behalf; we do not store full card numbers. Stripe’s Privacy Policy is available [here](https://stripe.com/privacy). • Communications – messages to customer support, survey responses, contest entries. • Social log‑ins – if you link a social‑media account, we receive the basic profile information the platform provides. B. Information Collected Automatically When you use the Services we automatically log: • Device and usage data (IP address, browser type, device identifiers, referring URLs, features used, clickstream data, timestamps). • Cookies and similar technologies (see our Cookie Notice). • Approximate location, derived from your IP address or, if you permit, precise GPS location. C. Information from Third Parties We may combine information we receive from data analytics providers (e.g., Google Analytics), joint‑marketing partners, public sources, and social networks with other information we collect. ──────────────────────────────────────────────────────── 2. HOW WE USE INFORMATION ──────────────────────────────────────────────────────── We process personal information to: a. Provide, maintain, troubleshoot, and secure the Services. b. Create and manage user accounts. c. Process and fulfill transactions. d. Respond to your questions and requests. e. Send administrative messages and marketing communications (you may opt out at any time). f. Conduct research, analytics, and product development. g. Detect, investigate, and prevent security incidents and fraud. h. Comply with legal obligations and enforce our Terms. i. With your consent, for any other purpose disclosed at the time of collection. Our legal bases (where applicable) are: performance of a contract, legitimate interests, your consent, and compliance with legal obligations. ──────────────────────────────────────────────────────── 3. DISCLOSURE OF INFORMATION ──────────────────────────────────────────────────────── We disclose personal information only as described below: • **Service Providers** – cloud hosting, analytics, customer‑support, payment processing, email delivery, and security vendors bound by confidentiality. • **Affiliates** – companies under common ownership, subject to this Policy. • **Business Transfers** – in connection with a merger, financing, acquisition, or dissolution transaction. • **Legal Requirements** – to comply with subpoenas, court orders, or other lawful requests, or to protect rights, property, or safety. • **With Your Consent** – if you direct us to disclose information. We do not knowingly sell or share personal data and have not done so in the preceding 12 months. ──────────────────────────────────────────────────────── 4. COOKIES & TRACKING ──────────────────────────────────────────────────────── We use first‑ and third‑party cookies, pixels, and similar technologies to recognize you, track your interactions, and improve the Services. You can adjust browser or device settings to decline cookies, but some features may not work. ──────────────────────────────────────────────────────── 5. DATA RETENTION ──────────────────────────────────────────────────────── We keep personal information for as long as necessary to fulfill the purposes outlined in this Policy, unless a longer period is required or permitted by law (e.g., tax, accounting, legal obligations). When we no longer need the data, we will delete or de‑identify it within 30 days. ──────────────────────────────────────────────────────── 6. CHILDREN’S PRIVACY ──────────────────────────────────────────────────────── The Services are not directed to children under 18. We do not knowingly collect personal information from children. If we learn we have unintentionally collected such data, we will delete it. Parents who believe we may have collected information from a child should contact us at compliance@ieatzhealthy.com. ──────────────────────────────────────────────────────── 7. SECURITY ──────────────────────────────────────────────────────── We implement administrative, technical, and physical measures designed to protect personal information. No system is impenetrable; use the Services at your own risk. ──────────────────────────────────────────────────────── 8. YOUR PRIVACY RIGHTS & CHOICES ──────────────────────────────────────────────────────── • **Marketing Communications** – opt out by following the unsubscribe instructions in emails or texting “STOP” to SMS messages. • **Device Permissions** – you can revoke mobile‑device permissions at any time in your device settings. • **Browser Settings** – you may block cookies or use a browser’s Global Privacy Control signal. • **State Privacy Rights** – see Section 12. ──────────────────────────────────────────────────────── 9. DO‑NOT‑TRACK SIGNALS ──────────────────────────────────────────────────────── We currently do not respond to browser DNT signals. We honor Global Privacy Control signals where required by applicable law. ──────────────────────────────────────────────────────── 10. THIRD‑PARTY LINKS & SERVICES ──────────────────────────────────────────────────────── Our Services may link to third‑party sites or integrate third‑party SDKs. We are not responsible for their privacy practices. ──────────────────────────────────────────────────────── 11. CHANGES TO THIS POLICY ──────────────────────────────────────────────────────── We may update this Policy to reflect changes in technology, law, or our practices. We will post the revised Policy and update the “Last Updated” date. Material changes will be notified via the Services or by e‑mail. ──────────────────────────────────────────────────────── 12. U.S. STATE‑SPECIFIC PRIVACY DISCLOSURES ──────────────────────────────────────────────────────── California, Virginia, Colorado, Connecticut, Utah, and Texas residents have the rights to: • Know whether we process personal data about you. • Access and obtain a copy of personal data. • Correct inaccurate personal data. • Delete personal data. • Opt out of (i) targeted advertising, (ii) the sale of personal data, or (iii) profiling in furtherance of decisions that produce legal or similarly significant effects. You may exercise these rights by submitting a request to admin@ieatzhealthy.com, by calling (561) 972-8208, or by using our online form at https://www.ieatzhealthy.com/privacy‑request. We will verify your identity and respond within the timeframe required by law. You may use an authorized agent. You have the right to appeal our decision by e‑mailing admin@ieatzhealthy.com. Notice at Collection for California Residents: We collect the categories of personal information listed in Section 1 for the purposes described in Section 2. We retain the information for the periods described in Section 5. We do not sell or share personal information. ──────────────────────────────────────────────────────── 13. CONTACT US ──────────────────────────────────────────────────────── Questions? Email our Data Protection Officer at admin@ieatzhealthy.com or write to: iEatz Healthy, Inc. 1201 N Orange St., Suite 750 Wilmington, DE 19801 USA