1. Who we are & scope
This Privacy Policy explains how NutriNomNom Foods LLP ("we", "our", "us") collects, uses, discloses, retains, and protects personal information when you use the website at nutrinomnom.com or our meal subscription service.
We are a "Body Corporate" under the Information Technology Act, 2000 and the SPDI Rules, 2011. Where applicable, we will comply with the Digital Personal Data Protection Act, 2023 ("DPDP Act") as it is enforced.
NutriNomNom Foods LLPHyderabad, Telangana, India
FSSAI License: 23625032007299
2. Information we collect
- Identity & contact: name, phone number (WhatsApp), and (optionally) email address.
- Delivery details: postal address, pincode, landmark, dietary preference, dish dislikes / allergies.
- Biometric inputs (calculator): age, sex, height, weight, activity level, target weight, and goal duration. These are used to compute your daily calorie target. You may use the service without providing these.
- Order & subscription history: plans purchased, payment status, delivery dates, skip/pause requests.
- Payment information: handled directly by Cashfree Payments. We never see or store your card number, CVV, UPI PIN, or net-banking credentials.
- Technical data: IP address, browser type, device type, pages visited, referring URL, cookies. Collected for analytics and abuse prevention.
3. How we use your information
- To create and fulfil your order — including communicating delivery slots and changes via WhatsApp.
- To verify your identity at checkout via OTP.
- To compute personalised calorie / macro recommendations.
- To process payments and issue refunds via our payment partners.
- To respond to support requests sent via WhatsApp or email.
- To improve the menu, the website, and the customer experience using aggregate analytics.
- To comply with legal, tax, and regulatory obligations.
We will not use your information for purposes incompatible with those listed without your prior consent.
4. Legal basis for processing
We process your personal information on one or more of the following bases:
- Performance of a contract (your order with us);
- Consent (e.g. marketing communications, where we ask separately);
- Legitimate interests (e.g. fraud prevention, network/site security);
- Legal obligation (e.g. statutory record-keeping under tax law).
5. Sharing & disclosure
We share information only with the following categories of recipients, and only for the purposes described:
- Payment processor: Cashfree Payments — for order creation, payment processing, refunds, and dispute handling. Cashfree's privacy practices are governed by their own policy at cashfree.com/privacy-policy.
- Authentication & data infrastructure: Supabase (database, authentication) — hosted on AWS infrastructure.
- Hosting: Vercel — for serving the website.
- Communication: WhatsApp Business API (Meta Platforms) for order updates; Resend for transactional email.
- Analytics & marketing: Google Analytics (via GTM) and Meta Pixel — only after you accept analytics cookies via the consent banner.
- Delivery: our in-house delivery team and, where used, third-party logistics partners.
- Government & legal: we will disclose information when required to by Indian law, court order, or regulatory authority.
We do not sell or rent your personal information to third parties.
6. International data transfers
Some of our processors (e.g. Vercel, Meta) may store or process information outside India. Where this happens, we rely on appropriate safeguards required by applicable Indian law (including the DPDP Act once enforced).
7. Retention
- Order and tax records are retained for at least 8 years per the GST and Income Tax Acts.
- Auth account & subscription data are retained for as long as your account remains active and for 12 months thereafter, unless deletion is requested earlier.
- Biometric calculator inputs are retained while your account is active. You may request deletion at any time.
- Aggregated analytics data with no personal identifiers may be retained indefinitely.
8. Your rights
Subject to applicable law, you have the right to:
- Access the personal information we hold about you.
- Correct inaccurate or incomplete information.
- Request deletion of your account and associated data (subject to legal retention obligations).
- Withdraw consent for marketing communications at any time.
- File a complaint with the Data Protection Authority once constituted under the DPDP Act.
To exercise any of these rights, write to hello@nutrinomnom.com. We respond within 30 days.
9. Cookies & tracking
We use strictly necessary cookies for authentication, security, and to remember your plan choices. Optional analytics and advertising cookies (Google Analytics, Meta Pixel) are loaded only after you accept them via the consent banner. You may revoke consent at any time from the banner.
Microsoft Clarity. We use Microsoft Clarity to capture anonymized usage data — including click and scroll patterns, mouse movements, and screen recordings — for the purpose of understanding how visitors interact with our site and improving the experience. Clarity automatically masks all input fields, including names, email addresses, phone numbers, and payment details, so personal information you type is never sent to or stored by Clarity. The data is collected by Microsoft on our behalf, processed under their privacy terms, and is not used for advertising. You can read more about Clarity's data practices in Microsoft's privacy statement and Clarity's overview.
10. Security
We use industry-standard measures including HTTPS for all traffic, scoped row-level security on our database, hashing of authentication tokens, server-side validation of payment amounts, and HMAC verification of inbound payment webhooks. No system can be 100% secure; we encourage you to keep your phone, OTP, and account access safe.
11. Children
The service is not directed to children under 18. We do not knowingly collect data from minors. If you believe a minor has provided us information, please contact us and we will delete it.
12. Grievance officer
In accordance with the Information Technology Act, 2000 and the rules made thereunder, the contact details for our grievance officer are:
Grievance Officer, NutriNomNom Foods LLP
Email: hello@nutrinomnom.com
WhatsApp: +919403893670
Response time: within 30 days of receipt of complaint.
13. Changes to this policy
We may update this policy from time to time. Material changes will be communicated via WhatsApp or email to active subscribers and reflected here with the updated "Last updated" date. Please review periodically.
14. Contact
Questions or concerns? Write to hello@nutrinomnom.com or message us on WhatsApp. You can also see our Terms of Service and Refund & Cancellation Policy.