Privacy Policy

Last updated: March 5, 2026

1. Introduction

FoodMedals (“we,” “us,” or “our”) operates the website at foodmedals.com (the “Service”). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our Service.

By using the Service, you consent to the data practices described in this policy. If you do not agree with these practices, please do not use the Service.

2. Information We Collect

2.1 Information You Provide Directly

  • Account Information: When you create an account, we collect your display name, email address, and password (which is stored in hashed form and never in plain text). You may optionally provide your city and state.
  • Medal Picks & Rankings: When you award Gold, Silver, or Bronze medals to restaurants, we store those selections along with your Crown Jewel designation.
  • Restaurant Suggestions: When you suggest a restaurant, we collect the restaurant name, address, city, state, ZIP code, and any optional description you provide.
  • Category Suggestions: When you suggest a new food category, we collect the category name, emoji, and any optional description you provide.
  • Votes: When you vote on community nominations (restaurants or categories), we record your vote.
  • Achievement Data: We track how many categories you have ranked to determine your achievement tier (e.g., Taste Tester, Local Legend, Oracle). Your tier is displayed on your public profile.

2.2 Information from Third-Party Sign-In

We offer sign-in through Google, Facebook, and X (Twitter). When you use one of these providers, we receive your name, email address, and profile picture from that provider. We do not receive or store your password for any third-party service. Each provider’s use of your information is governed by their own privacy policies:

2.3 Information Collected Automatically

  • Browser Geolocation: When you use the “Near Me” feature, your browser may ask for permission to share your location. This location data is used client-side only to filter results by distance and is not transmitted to or stored on our servers.
  • Log Data: Our hosting provider (Vercel) may automatically collect standard server log information such as your IP address, browser type, pages visited, and timestamps. This data is used for operational and security purposes.
  • Cookies: We use a single session cookie to keep you signed in. This is a functional cookie required for authentication and is not used for tracking or advertising purposes. We do not use any third-party analytics, advertising, or tracking cookies.

3. How We Use Your Information

We use the information we collect to:

  • Create and manage your account
  • Display your public profile, medal picks, rankings, and achievement tier
  • Generate community leaderboards and restaurant scores
  • Process restaurant and category suggestions and community votes
  • Geocode restaurant addresses to enable map and “Near Me” features
  • Maintain the security and integrity of the Service
  • Respond to your requests or inquiries

4. Public Information

Certain information you provide is publicly visible on the Service, including your display name, city, state, profile picture, medal picks, Crown Jewel selections, and achievement tier. Your email address is never displayed publicly.

5. Third-Party Services

We use the following third-party services to operate the Service:

We do not sell, rent, or share your personal information with any third parties for marketing or advertising purposes.

6. Data Security

We take reasonable measures to protect your personal information, including encrypting passwords with industry-standard hashing (bcrypt), using HTTPS for all data transmission, and restricting access to personal data to authorized personnel only.

However, no method of electronic transmission or storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee its absolute security.

7. Data Retention

We retain your account information for as long as your account remains active. If you wish to delete your account and associated data, please contact us using the information provided below. We will delete your personal data within 30 days of a verified request, except where retention is required by law.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal information we hold about you
  • Correct inaccurate or incomplete personal information
  • Delete your personal information
  • Object to processing of your personal information
  • Export your data in a portable format

To exercise any of these rights, please contact us using the information in Section 12 below.

9. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect and how it is used, the right to request deletion, and the right to opt out of the sale of personal information. We do not sell personal information.

10. Children’s Privacy

The Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by updating the “Last updated” date at the top of this page. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at:

FoodMedals
Email: [contact email coming soon]