Skip to content

Cookies Policy โ€‹

NutriScan Documentation Website

Effective Date: 13 September 2025

Introduction โ€‹

This Cookies Policy explains how NutriScan ("we", "us", "our") uses cookies and similar tracking technologies on our documentation website located at nutriscan.app ("Website"). This policy should be read alongside our Privacy Policy and Terms of Use.

By using our Website, you consent to the use of cookies in accordance with this policy. If you do not agree to our use of cookies, please adjust your browser settings or refrain from using our Website.

What Are Cookies? โ€‹

Cookies are small text files stored on your device (computer, tablet, smartphone) when you visit a website. They help websites remember information about your visit, making it easier to visit the site again and making the site more useful to you.

Types of Cookies We Use โ€‹

By Duration:

  • Session Cookies: Temporary cookies that expire when you close your browser
  • Persistent Cookies: Cookies that remain on your device until deleted or expired

By Origin:

  • First-Party Cookies: Set directly by our Website
  • Third-Party Cookies: Set by external services we use (e.g., Google Analytics)

We classify cookies into the following categories based on their purpose:

1. Strictly Necessary Cookies โ€‹

Purpose: Essential for basic website functionality and security Legal Basis: Legitimate interest (no consent required) Duration: Session or up to 1 year

These cookies are essential for you to browse our Website and use its features. Without these cookies, services you have asked for cannot be provided.

Examples:

  • Language preferences and region settings
  • Session management for secure areas
  • Security tokens for CSRF protection
  • Load balancing and performance optimization

2. Functional/Preferences Cookies โ€‹

Purpose: Remember your choices and provide enhanced features Legal Basis: Consent required under GDPR Duration: Up to 2 years

These cookies allow our Website to remember choices you make and provide enhanced, more personal features.

Examples:

  • Theme preferences (light/dark mode)
  • Font size and accessibility settings
  • Remembered search preferences
  • Documentation section bookmarks

3. Analytics/Performance Cookies โ€‹

Purpose: Understand how visitors use our Website to improve user experience Legal Basis: Consent required under GDPR Duration: Up to 26 months

These cookies collect information about how you use our Website, helping us analyze and improve our content and functionality.

Primary Service: Google Analytics 4 (GA4) Data Collected:

  • Page views and session duration
  • Traffic sources and referral information
  • Device and browser information (anonymized)
  • Navigation patterns and popular content
  • Geographic location (country/region level only)

Privacy Protections:

  • IP anonymization enabled
  • Google signals disabled for health data protection
  • Advertising features disabled
  • Data retention limited to 26 months
  • No personally identifiable information collected

4. Marketing/Advertising Cookies โ€‹

Status: NOT USED Policy: We do not use marketing or advertising cookies on our documentation website.

Third-Party Services and Cookies โ€‹

Google Analytics 4 โ€‹

Service Provider: Google LLC / Google Ireland Limited Purpose: Website analytics and performance measurement Privacy Policy: Google Analytics PrivacyData Processing: Google Analytics Data Processing

Cookies Set:

  • _ga: Distinguishes users (expires: 2 years)
  • _ga_*: Persists session state (expires: 2 years)
  • _gid: Distinguishes users (expires: 24 hours)

Your Rights:

  • Opt-out via browser settings or our cookie consent banner
  • Google Analytics Opt-out Browser Add-on: https://tools.google.com/dlpage/gaoptout
  • Data Subject Rights under GDPR (access, rectification, erasure)

Content Delivery Network (CDN) โ€‹

Service Provider: Various CDN providers Purpose: Fast and secure delivery of website assets Cookies: Technical cookies for load balancing and security (strictly necessary)

GDPR Compliance: We implement a consent management system that:

  • Obtains explicit consent before setting non-essential cookies
  • Provides granular control over cookie categories
  • Allows easy withdrawal of consent
  • Records consent preferences with timestamp
  • Respects "Do Not Track" browser signals

Consent Banner: On your first visit, you'll see a cookie consent banner allowing you to:

  • Accept all cookies
  • Reject non-essential cookies
  • Customize cookie preferences by category
  • Access detailed information about each cookie type

Cookie Settings Panel: Access anytime via:

Browser Controls: You can also manage cookies through your browser:

Google Chrome:

  1. Settings โ†’ Privacy and security โ†’ Cookies and other site data
  2. Choose your preferred cookie settings
  3. Manage exceptions for specific sites

Mozilla Firefox:

  1. Settings โ†’ Privacy & Security โ†’ Cookies and Site Data
  2. Choose standard, strict, or custom protection
  3. Manage individual site permissions

Safari:

  1. Preferences โ†’ Privacy โ†’ Cookies and website data
  2. Choose your blocking level
  3. Manage website data individually

Microsoft Edge:

  1. Settings โ†’ Cookies and site permissions
  2. Choose your cookie policy
  3. Manage site-specific permissions

Mobile Browsers: Access cookie settings through browser menu โ†’ Settings โ†’ Privacy

You can withdraw your consent for cookies at any time by:

  • Using our cookie preference center
  • Clearing cookies through browser settings
  • Contacting us at [email protected]
  • Using browser "Do Not Track" settings

Data Protection and International Transfers โ€‹

GDPR Compliance (EU/EEA Users) โ€‹

Legal Basis: Consent for non-essential cookies, legitimate interest for essential cookies Data Subject Rights:

  • Right to access cookie data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to data portability
  • Right to object to processing
  • Right to lodge complaints with supervisory authorities

Data Protection Officer: [email protected]

International Data Transfers โ€‹

Google Analytics: Data may be transferred to Google servers in the United States Safeguards:

  • Google Analytics Data Processing Amendment
  • Standard Contractual Clauses (SCCs) 2021
  • Adequacy decision for data transfers where applicable
  • Additional safeguards including data encryption and access controls

Data Retention โ€‹

Analytics Data: Retained for 26 months, then automatically deleted Consent Records: Retained for 3 years for compliance purposes Essential Cookies: Retained for duration necessary for functionality User Preference Cookies: Retained until you change preferences or clear cookies

Regional Privacy Laws Compliance โ€‹

California (CCPA/CPRA) โ€‹

While our documentation website doesn't sell personal information, California residents have rights regarding cookies:

  • Right to know what personal information is collected through cookies
  • Right to opt-out of sale/sharing of personal information (not applicable to us)
  • Right to delete personal information collected through cookies
  • Non-discrimination for exercising these rights

Other Jurisdictions โ€‹

We comply with applicable privacy laws in all jurisdictions, including:

  • Canada's Personal Information Protection and Electronic Documents Act (PIPEDA)
  • Australia's Privacy Act and Notifiable Data Breaches scheme
  • Brazil's Lei Geral de Proteรงรฃo de Dados (LGPD)
  • UK's Privacy and Electronic Communications Regulations (PECR)

Cookies and Health Information โ€‹

No Health Data Collection โ€‹

Our documentation website cookies do NOT collect:

  • Health or medical information
  • Biometric identifiers
  • Genetic information
  • Any special category personal data under GDPR Article 9

Mobile App vs Website โ€‹

Important Distinction: This cookies policy applies only to our documentation website at nutriscan.app. Our mobile application has separate data collection practices described in our Privacy Policy and Terms of Use.

Our Website may contain links to third-party websites or embed third-party content. These third parties may set their own cookies with their own privacy practices. We are not responsible for third-party cookies or privacy practices.

Social Media Embeds: If we embed social media content, those platforms may set cookies subject to their own privacy policies.

Security Measures โ€‹

We implement appropriate security measures for cookies:

  • Secure flag set for cookies transmitted over HTTPS
  • HttpOnly flag to prevent JavaScript access where appropriate
  • SameSite attribute to prevent CSRF attacks
  • Regular security audits of cookie implementations
  • Encryption of sensitive cookie data

Data Breach Notification โ€‹

In the unlikely event of a security breach affecting cookie data:

  • We will assess the risk to individuals' rights and freedoms
  • Notify supervisory authorities within 72 hours if required
  • Notify affected individuals if high risk exists
  • Take immediate steps to contain and remedy the breach

Updates to This Cookies Policy โ€‹

Policy Changes โ€‹

We may update this Cookies Policy to reflect:

  • Changes in cookie usage or technologies
  • Legal or regulatory requirements
  • Improvements to user privacy protections

Notification of Changes โ€‹

Material Changes: We will notify you through:

  • Prominent notice on our Website
  • Updated effective date at the top of this policy
  • Email notification for significant changes (if you've provided contact information)

Minor Updates: Effective immediately upon posting with updated revision date

Version Control โ€‹

  • Current Version: 1.0
  • Last Reviewed: 13 September 2025
  • Next Scheduled Review: 13 September 2026

Your Rights and Choices Summary โ€‹

Under GDPR (EU/EEA) โ€‹

โœ… Right to granular cookie consent โœ… Right to withdraw consent at any time โœ… Right to access cookie data โœ… Right to erasure of cookie data โœ… Right to data portability โœ… Right to lodge complaints

Under CCPA/CPRA (California) โ€‹

โœ… Right to know about cookie data collection โœ… Right to delete cookie data โœ… Right to opt-out (where applicable) โœ… Non-discrimination protection

Under Other Privacy Laws โ€‹

โœ… Compliance with local cookie and privacy regulations โœ… Respect for browser Do Not Track signals โœ… Transparent cookie practices

Frequently Asked Questions โ€‹

What happens if I disable cookies? โ€‹

Essential cookies are necessary for basic website functionality. Disabling them may impair your ability to use certain features. Optional cookies can be disabled without affecting core functionality.

We recommend reviewing your preferences periodically, especially after browser updates or if your privacy preferences change.

Do you track users across other websites? โ€‹

No, our analytics cookies only track activity on our documentation website. We don't participate in cross-site tracking networks.

We don't knowingly collect data from children under 13. For users 13-15 in the EU, we require parental consent for optional cookies.

Can I use your website without accepting any cookies? โ€‹

Yes, you can decline optional cookies and still access all content. Only essential cookies (required for basic functionality) will be used.

Contact Information โ€‹

For questions about this Cookies Policy or to exercise your rights:

Email: [email protected] Subject Line: "Cookies Policy Inquiry" Response Time: Within 30 days as required by applicable law

Data Protection Officer โ€‹

Email: [email protected] Role: Handles GDPR compliance and data protection matters

General Support โ€‹

Email: [email protected] In-Website: Contact form in footer Response Time: Typically 24-72 hours

Supervisory Authority Complaints (EU/EEA) โ€‹

If you're not satisfied with our response, you can lodge a complaint with your local data protection authority. Find your authority: https://edpb.europa.eu/about-edpb/about-edpb/members_en


Technical Implementation Details โ€‹

  • Last cookie audit: 13 September 2025
  • Next scheduled audit: 13 December 2025
  • Audit scope: All cookies, tracking technologies, and third-party integrations

Compliance Verification โ€‹

  • GDPR compliance assessment: Complete
  • CCPA compliance review: Complete
  • Cookie categorization review: Complete
  • Consent mechanism testing: Complete
  • Legal review date: 13 September 2025
  • Reviewed by: Legal and Privacy Team
  • Next review: 13 March 2026

Last Updated: 13 September 2025 Document Version: 1.0 Legal Jurisdiction: Global with specific regional compliance Compliance Framework: GDPR, CCPA/CPRA, PIPEDA, LGPD, UK PECR

โš ๏ธ Important: This Cookies Policy is designed to provide comprehensive protection and transparency regarding our cookie usage. By using our Website, you acknowledge that you have read and understood this policy.

Sarah from Austin just downloaded NutriScan