Privacy Policy
Last updated: May 15, 2026
This Privacy Notice for Holy Smoke ("we," "us," or "our") describes how and why we might access, collect, store, use, and/or share ("process") your personal information when you use our services ("Services"), including when you:
- Visit our website at holysmoke.app
- Download and use our mobile application (Holy Smoke)
- Engage with us in other related ways, including marketing or events
Questions or concerns? Reading this Privacy Notice will help you understand your privacy rights and choices. If you do not agree with our policies and practices, please do not use our Services. If you have any questions, contact us at hello@holysmoke.app.
Summary of Key Points
- What personal information do we process? We process information you give us when you create an account or use the app — your email address, your cooks, your equipment, and any photos you add.
- Do we process sensitive information? No.
- Do we collect information from third parties? No.
- Analytics? Yes, we use Umami — a self-hosted, privacy-respecting analytics tool. No cookies, no cross-site tracking, no PII. See §5 below.
- How do we process your information? To provide and improve the Services and to comply with law.
1. What Information Do We Collect?
Personal information you disclose to us
We collect personal information that you voluntarily provide to us when you register on the Services or contact us. The personal information we collect may include:
- Email address (for sign-in via magic link)
- Display name and profile details you choose to add
- Cook entries, equipment entries, and photos you create in the app
Information automatically collected
We automatically collect aggregate usage data via our analytics tool (see §5). This information does not reveal your specific identity.
2. How Do We Process Your Information?
We process your personal information to:
- Create and authenticate your account (magic-link sign-in via email)
- Store and serve the cooks, equipment, and photos you create
- Identify usage trends and improve the app
- Comply with legal obligations
3. What Legal Bases Do We Rely On?
We only process your personal information when necessary, on the following bases:
- Consent — You have given us permission for a specific purpose
- Legitimate Interests — Reasonably necessary to operate and improve the Services
- Legal Obligations — To comply with applicable law
- Vital Interests — To protect your safety or that of others
4. When and With Whom Do We Share Your Information?
We may share your personal information in the following situations:
- Service providers — With infrastructure providers who host the Services on our behalf (Cloudflare, Resend for email delivery).
- Business transfers — In connection with a merger, sale, or acquisition.
- Legal requirements — When required by law or to protect our rights.
5. Cookies and Analytics
This website does not use cookies.
We use Umami, a self-hosted, privacy-respecting analytics tool, to collect aggregate usage data: page views, referrer, country, browser, and device type. Umami does not store cookies, does not track you across sites, and does not collect personally identifiable information. We do not use any other third-party analytics, advertising networks, or tracking technologies on this website.
6. How Long Do We Keep Your Information?
We keep your personal information only as long as necessary for the purposes set out in this Privacy Notice, unless a longer retention period is required by law. When we no longer have a legitimate need to process your information, we will delete or anonymize it.
7. Do We Collect Information From Minors?
We do not knowingly collect data from or market to children under 18. By using the Services, you represent that you are at least 18 or that you are a parent or guardian consenting to such minor's use. If we learn we have collected information from a user under 18, we will promptly delete it.
8. What Are Your Privacy Rights?
Depending on your location, you may have certain rights including:
- Right to access and obtain a copy of your personal information
- Right to request rectification or erasure
- Right to restrict processing of your personal information
- Right to data portability
- Right to withdraw consent at any time
If you would like to review, change, or terminate your account, contact us at hello@holysmoke.app.
9. Controls for Do-Not-Track Features
Most web browsers include a Do-Not-Track ("DNT") feature. At this stage, no uniform standard for recognizing and implementing DNT signals has been finalized, so we do not currently respond to DNT browser signals. We do, however, run a no-cookies, no-PII analytics stack regardless (see §5).
10. Do United States Residents Have Specific Privacy Rights?
If you are a resident of California, Colorado, Connecticut, Delaware, Florida, Indiana, Iowa, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, or Virginia, you may have additional rights including:
- Right to know whether we are processing your personal data
- Right to access your personal data
- Right to correct inaccuracies in your personal data
- Right to request deletion of your personal data
- Right to obtain a copy of your personal data
- Right to non-discrimination for exercising your rights
- Right to opt out of targeted advertising or profiling
To exercise these rights, contact us at hello@holysmoke.app.
11. Do We Make Updates to This Notice?
We may update this Privacy Notice from time to time. The updated version will be indicated by an updated "Last updated" date. If we make material changes, we may notify you directly.
12. How Can You Contact Us?
If you have questions or comments about this notice, email us at hello@holysmoke.app.
13. How Can You Review, Update, or Delete Your Data?
You may have the right to request access to, correct inaccuracies in, or delete your personal information. To do so, email us at hello@holysmoke.app.