9:41

Privacy Policy

This privacy policy explains how Obu Eats collects, uses, and protects your information in plain language. We've created this friendly version to help you understand your privacy without legal jargon.

For the complete legal version with all the details, switch to "Read More" above.

Last updated: September 16, 2025

Who We Are

Obu Eats KE is a Kenyan nutrition guidance platform. We help you discover recipes, plan meals, and track nutrition using AI and human experts.

We're registered with Kenya's Office of the Data Protection Commissioner and follow all local privacy laws.

What We Collect

Account Information

Your name, email, and password when you sign up

Profile Data (Optional)

Age range, dietary preferences, health goals, and allergies you choose to share

Usage Data

How you use the app - recipes you save, searches, meal plans you create

Device Information

Device type, operating system, browser, and app version

What We DON'T Collect

We don't collect official medical records, diagnostic reports, or protected health information. We're a nutrition guidance service, not a medical records system.

How We Use Your Data

We use your information to:

  • Personalize your experience - Give you meal suggestions based on your preferences
  • Improve our AI - Train our recommendation system to work better (we use anonymized data)
  • Keep you informed - Send important updates, security alerts, and support messages
  • Make the app better - Analyze trends to improve features and fix bugs
  • Process payments - Handle subscriptions and purchases securely
  • Comply with the law - Meet legal obligations when required

Who We Share With

We share limited data with trusted partners:

  • Cloud hosting providers - To keep your data secure and accessible (servers in Kenya)
  • Nutrition databases - To look up accurate nutritional information
  • Payment processors - To handle M-PESA and card payments securely
  • Analytics services - To understand how the app is used (anonymized data only)
We Never Sell Your Data

We do NOT sell your personal information to advertisers or third parties. Ever.

How We Protect Your Data

Security measures we use:

  • Encryption - All data is encrypted when transmitted (HTTPS/TLS)
  • Secure storage - Data stored on servers in Kenya with strong access controls
  • Regular audits - We conduct security reviews and vulnerability testing
  • Limited access - Only authorized staff can access your data, and only when necessary
  • Breach notifications - We'll inform you within 72 hours if there's a security incident

How Long We Keep Your Data

We only keep your data as long as needed:

  • Active accounts - As long as your account is active
  • After deletion - Deleted within 30 days (some backups may remain for 90 days)
  • Legal requirements - Some data kept for tax, accounting, or legal compliance (up to 7 years)
  • Anonymized data - May be kept indefinitely for research and improvement

Children's Privacy

In Kenya, anyone under 18 is considered a minor. Here's how we handle their data:

  • We require parental consent before collecting data from anyone under 18
  • We use age verification during signup
  • We don't market weight-loss programs to minors
  • Parents can request access to or deletion of their child's data anytime

If you're a parent and believe your child has shared information without consent, contact us immediately at dpo@obueatske.com

Your Privacy Rights

Under Kenyan law, you have the right to:

Access Your Data

Download a copy of all your personal information

Correct Your Data

Fix any inaccurate or incomplete information

Delete Your Data

Request complete deletion of your account and data ("right to be forgotten")

Download Your Data

Get your data in a portable format to transfer to another service

Object to Processing

Stop certain types of data processing

Withdraw Consent

Remove permission for data processing you previously agreed to

To exercise these rights, email us at dpo@obueatske.com or use the privacy controls in your account settings. We'll respond within 30 days.

International Data Transfers

Your data stays in Kenya! We keep at least one copy on Kenyan servers as required by law.

If we ever need to transfer data outside Kenya (for example, to global cloud providers), we ensure:

  • The destination has adequate data protection laws
  • We have appropriate safeguards in place
  • We get your explicit consent when required
  • We notify the Data Protection Commissioner

Questions About Your Privacy?

Data Protection Officer: dpo@obueatske.com

General Support: support@obueatske.com

File a Complaint: Office of the Data Protection Commissioner at www.odpc.go.ke