Privacy Policy
Effective date: July 23, 2026
Last updated: July 23, 2026
1. Introduction
膳环 (MacroHalo) is a local-first food and nutrition logging app developed by Renchi Liu. The English product name has not been finalized; this policy uses 膳环 (MacroHalo) for now.
App details:
- Bundle ID:
com.renchiliu.MacroHalo - Current version: 1.0
- Category: Health & Fitness
- Minimum systems: iOS 17 and watchOS 10
- Website: https://renchiliu.com
- Developer: Renchi Liu
膳环 lets you photograph or select food photos, estimate nutrition with the OpenAI API, review and adjust the estimate, and save confirmed meal records. It can estimate calories, protein, carbohydrates, fat, and optional nutrients selected by you, such as sodium, dietary fiber, added sugar, potassium, cholesterol, and saturated fat.
Nutrition numbers are AI-generated estimates based on photos and your instructions. They are not medical test results and do not replace food labels, doctors, registered dietitians, or other qualified health professionals. 膳环 is not intended to diagnose, treat, prevent, or monitor any disease.
The current version does not require a 膳环 account, does not provide a developer-operated cloud account, does not include ads, does not use advertising tracking, does not include third-party analytics SDKs, does not sell personal data, does not use HealthKit, does not read contacts, microphone, or GPS location, does not use the advertising identifier, and does not include a developer server for app data. OpenAI API costs are charged to your own OpenAI API account and are not collected or paid by 膳环.
2. Information Stored on Your Device
The following information may be stored on your device using SwiftData, UserDefaults, App Group storage, or the system Keychain:
- Meal date and time
- Meal type, such as breakfast, lunch, dinner, or snack
- Food names and portions
- Calories, protein, carbohydrates, and fat
- Optional nutrients selected by you
- AI estimate confidence
- Your notes and estimate notes
- Original structured JSON, validation version, and source summary
- Daily nutrition goals and meal-time settings
- Archived status
- OpenAI API call time, status, model, token counts, and estimated cost
- Redacted request content and the raw OpenAI response
- A randomly generated installation identifier
- Your own OpenAI API Key
Your OpenAI API Key is saved in Apple Keychain and configured to be accessible only when the current device is unlocked. The API Key is not written into meal records, CSV exports, or API history.
Photos are not stored long term as meal records in the 膳环 database. API history does not store Base64 photo content.
Widgets, Live Activities, Dynamic Island, and the Apple Watch companion receive only today’s summary numbers, nutrition goals, recent meal names, meal times, and calories. They do not receive photos or your OpenAI API Key.
3. Information Sent to OpenAI
Direct in-app estimation is optional. 膳环 directly connects to OpenAI only if you configure your own OpenAI API Key, enable direct estimation, and actively submit a photo for estimation.
The current direct estimation endpoint is:
https://api.openai.com/v1/responses
The current model is GPT-5.6 Terra.
Each direct estimate may send the following to OpenAI:
- A compressed JPEG food photo, with the longest side no more than about 1600 pixels
- The nutrition-estimation prompt
- Additional text you enter for that meal
- Current date, time, and device time zone
- On-device recognition results, such as packaging text, image category, or barcode
- Nutrient fields selected by you
- A randomly generated installation identifier used as a safety and abuse-prevention identifier
- Your OpenAI API Key in the encrypted HTTPS request’s
Authorizationheader - Standard network information, such as IP address and request metadata, which OpenAI may process to provide the service
Requests are explicitly configured with store: false. 膳环’s developer does not receive or store these requests because the app connects directly from your device to OpenAI.
According to OpenAI’s current API data controls, API content is not used to train OpenAI models by default unless the OpenAI API account owner opts in to share data. OpenAI may still keep abuse monitoring logs that can include prompts, responses, images, or related metadata for up to 30 days by default. Legal, safety, or policy-violation investigations may require longer retention. Read OpenAI’s pages for details:
4. Camera and Photo Access
膳环 requests camera permission only when you actively choose to take a food photo. The camera is used to capture food photos.
When you select a photo from your library, 膳环 uses Apple’s system Photos Picker. The app receives only the image you explicitly select and does not request permission to browse your entire photo library.
Photos are first processed lightly on device using Apple Vision, for example to identify image category, packaging text, numbers on a scale, and barcodes. These results may be included in the prompt sent to OpenAI if you use direct estimation.
5. Apple Watch, Widgets and Live Activities
The app includes Home Screen and Lock Screen widgets, Live Activity and Dynamic Island support, and an Apple Watch today’s nutrition overview.
These surfaces receive limited summary data needed to display the feature: today’s nutrition totals, nutrition goals, recent meal names, meal times, and calories. They do not receive photos, your OpenAI API Key, full raw JSON, or full API request history.
6. Manual Import and External Services
You can also copy a 膳环-provided prompt, submit photos yourself to ChatGPT or another external AI service, and paste the returned structured JSON into 膳环.
In manual import mode, 膳环 itself does not make a network request to that external service. The AI, chat, or cloud service you choose has its own privacy policy and data practices. 膳环 does not control how those external services process your data.
7. How Information Is Used
Information stored on your device is used to:
- Save and display meal records
- Calculate daily calories and macronutrients
- Show weekly trends, monthly calendar heat maps, and nutrition statistics
- Store your daily goals and nutrient ratio preferences
- Let you adjust AI estimates before saving them
- Support CSV import/export backup workflows
- Power widgets, Live Activities, Dynamic Island, and Apple Watch summary views
- Show OpenAI API usage history, token counts, and estimated costs on your device
Information sent directly to OpenAI is used by OpenAI to return a nutrition estimate for the meal you submit.
If you email support, your email address and the contents of your message are used to respond to your request. Please do not send OpenAI API Keys, Authorization headers, complete photos, or CSV files containing sensitive health information.
8. Data Sharing
膳环 does not sell personal data. The current app does not include ads, advertising tracking, or third-party analytics SDKs.
Data may be shared or processed in these limited situations:
- If you use direct estimation, the app sends the selected photo and related prompt content directly from your device to OpenAI.
- If you email support, the email service provider processes your message for delivery and storage.
- If required by law, support correspondence or website records may be disclosed as legally necessary.
Website note: renchiliu.com is hosted as a static site through Cloudflare Pages according to the website source. When you visit this page, the hosting provider may process standard request information such as IP address, user agent, request time, and requested URL for security, delivery, diagnostics, or abuse prevention. These pages do not include a contact form, advertising scripts, or configured third-party analytics. The website and its theme may use localStorage for display preferences, including color scheme and the language choice on these pages. If additional website analytics, cookies, or contact forms are enabled later, this policy should be updated.
9. Retention and Deletion
Current app capabilities:
- You can delete the locally saved OpenAI API Key in Settings.
- You can delete individual local LLM API usage-history items or clear all local LLM API usage history.
- You can archive meal records so they no longer count toward statistics.
- The current version does not yet provide an in-app way to permanently delete one meal record or all meal records.
- You can export all meal records as CSV.
- Deleting the app usually removes the meal database and settings stored in the app container.
- Keychain items may remain after reinstalling the app, so you should delete the API Key from Settings before uninstalling if you want it removed.
- Deleting local data from the app does not automatically delete data that OpenAI has already processed or retained under its own policies. Requests about OpenAI-held data should be handled through your own OpenAI account or OpenAI privacy channels.
10. Security
膳环 is designed to keep meal records local to your device unless you choose to use direct OpenAI estimation or manually submit information to an external service. Your OpenAI API Key is stored in Apple Keychain and direct API requests use HTTPS.
No app, device, network, email, or cloud service can be guaranteed to be perfectly secure. You are responsible for keeping your device, OpenAI account, and API Key secure. Do not share your API Key by email or screenshots.
11. Children’s Privacy
膳环 is not designed to collect information from children and does not knowingly collect children’s personal data. The app’s nutrition estimates are not medical advice. Children and teens should use nutrition or health-related apps only with appropriate parent or guardian involvement and professional guidance when needed.
12. International Processing
App data stored locally remains on your device unless you choose an action that sends or exports it. If you use direct OpenAI estimation, your selected photo and related content are sent to OpenAI and may be processed in locations where OpenAI or its service providers operate. If you email support or visit this website, email and hosting providers may process related information in the jurisdictions where they operate.
13. Changes to This Policy
This policy may be updated when 膳环’s features, data practices, or legal requirements change. The updated policy will be posted on this page with a revised effective date or last updated date.
14. Contact Us
For privacy or support questions, email support@renchiliu.com.
This address is listed because it is already used by renchiliu.com support pages. A separate privacy mailbox should be added to this policy only after it has been created or confirmed.
隐私政策
生效日期:2026 年 7 月 23 日
最后更新日期:2026 年 7 月 23 日
1. 简介
膳环(MacroHalo)是 Renchi Liu 开发的一款本地优先的饮食与营养记录 App。英文产品名称尚未最终确定,因此本政策暂时使用“膳环(MacroHalo)”。
App 信息:
- Bundle ID:
com.renchiliu.MacroHalo - 当前版本:1.0
- 类别:Health & Fitness
- 最低系统:iOS 17、watchOS 10
- 网站:https://renchiliu.com
- 开发者:Renchi Liu
膳环可以让你拍摄或选择食物照片,通过 OpenAI API 估算营养,在确认和调整后保存为餐食记录。App 可以估算热量、蛋白质、碳水化合物、脂肪,以及你选择的其他营养元素,例如钠、膳食纤维、添加糖、钾、胆固醇和饱和脂肪。
所有营养数字都是 AI 根据照片和你的说明生成的估算值。它们不是医学检测结果,也不能代替食品标签、医生、注册营养师或其他合格医疗专业人士的建议。膳环不用于诊断、治疗、预防或监测任何疾病。
当前版本不要求注册或登录膳环账号,不提供开发者运营的云端用户账号,没有广告,不进行广告追踪,不包含第三方分析 SDK,不出售个人数据,不使用 HealthKit,不读取通讯录、麦克风或 GPS 位置,不使用广告标识符,也不包含用于保存 App 数据的开发者服务器。OpenAI API 费用由你自己的 OpenAI API 账号承担,膳环不会收取或代付。
2. 设备本地数据
以下信息可能通过 SwiftData、UserDefaults、App Group 或系统 Keychain 保存在你的设备上:
- 餐食日期和时间
- 早餐、午餐、晚餐或加餐类型
- 食物名称与份量
- 热量、蛋白质、碳水和脂肪
- 你选择的其他营养元素
- AI 估算置信度
- 你的补充说明和估算备注
- 原始结构化 JSON、校验版本和来源摘要
- 每日营养目标和餐段时间设置
- 已归档状态
- OpenAI API 调用时间、状态、模型、Token 数量及估算费用
- 脱敏后的请求内容和 OpenAI 原始响应
- 随机生成的安装标识
- 你自己的 OpenAI API Key
你的 OpenAI API Key 使用 Apple Keychain 保存,并设置为仅能在当前设备解锁时访问。API Key 不会写入餐食记录、CSV 导出或 API 历史。
照片不会作为餐食记录长期保存在膳环数据库中。API 历史也不会保存照片的 Base64 内容。
Widget、Live Activity、Dynamic Island 和 Apple Watch 配套 App 只接收今日汇总数字、营养目标、最近餐食名称、餐食时间和热量。它们不会接收照片或你的 OpenAI API Key。
3. 发送给 OpenAI 的数据
“在 App 内直接估算”是可选功能。只有当你配置自己的 OpenAI API Key、开启直接估算并主动提交照片时,膳环才会直接连接 OpenAI。
当前直接估算端点是:
https://api.openai.com/v1/responses
当前使用模型:GPT-5.6 Terra。
每次直接估算可能向 OpenAI 发送:
- 压缩后的食物 JPEG 照片,最长边不超过约 1600 像素
- 营养估算提示词
- 你为这餐输入的补充文字
- 当前日期、时间和设备时区
- 设备端识别到的包装文字、图片类别或条码
- 你选择的营养元素
- 随机生成的安装标识,用作安全与滥用防护标识
- 你的 OpenAI API Key,放在加密 HTTPS 请求的
Authorizationheader 中 - 标准网络信息,例如 IP 地址和请求元数据,OpenAI 可能会在提供服务时处理这些信息
请求明确设置 store: false。膳环开发者不会接收或保存这些请求,因为 App 是从你的设备直接连接 OpenAI。
根据 OpenAI 当前 API 数据控制说明,API 内容默认不会用于训练 OpenAI 模型,除非 OpenAI API 账号所有者主动选择共享。OpenAI 仍可能保留包含提示词、响应、图片或相关元数据的滥用监控日志,默认最长 30 天。法律、安全或违规调查可能导致更长保留。详情请阅读 OpenAI 页面:
4. 相机与照片权限
膳环仅在你主动选择拍照时请求相机权限。相机用于拍摄食物照片。
从相册选择照片时,膳环使用 Apple 系统 Photos Picker。App 只获得你明确选择的图片,不请求浏览整个照片库的权限。
照片首先会使用 Apple Vision 在设备本地进行轻量处理,例如识别图片类别、包装文字、秤上的数字和条码。如果你使用直接估算,这些结果可能会作为提示词的一部分发送给 OpenAI。
5. Apple Watch、Widget 和 Live Activity
App 包含主屏幕和锁定屏幕 Widget、Live Activity 和 Dynamic Island,以及配套 Apple Watch 今日营养概览。
这些界面只接收显示功能所需的有限汇总数据:今日营养总量、营养目标、最近餐食名称、餐食时间和热量。它们不会接收照片、你的 OpenAI API Key、完整原始 JSON 或完整 API 请求历史。
6. 手动导入和外部服务
你也可以复制膳环提供的提示词,自行在 ChatGPT 或其他外部 AI 服务中提交照片,再把返回的结构化 JSON 粘贴到膳环。
在手动导入模式下,膳环本身不会向该外部服务发起网络请求。你选择的 AI、聊天或云服务有自己的隐私政策和数据处理方式。膳环不控制这些外部服务如何处理你的数据。
7. 数据用途
保存在设备上的信息用于:
- 保存和显示餐食记录
- 计算每日热量和三大营养素
- 展示周趋势、月度日历热力图和营养统计
- 保存每日目标和营养比例偏好
- 让你在保存前调整 AI 估算结果
- 支持 CSV 导入和导出备份
- 支持 Widget、Live Activity、Dynamic Island 和 Apple Watch 汇总显示
- 在你的设备上显示 OpenAI API 使用历史、Token 数量和估算费用
直接发送给 OpenAI 的信息由 OpenAI 用于返回你提交餐食的营养估算。
如果你发送支持邮件,你的邮箱地址和邮件内容会用于回复你的请求。请不要通过邮件发送 OpenAI API Key、Authorization header、完整照片,或包含敏感健康信息的 CSV 文件。
8. 数据共享
膳环不出售个人数据。当前 App 不包含广告、广告追踪或第三方分析 SDK。
数据可能在以下有限情形中被共享或处理:
- 如果你使用直接估算,App 会从你的设备直接向 OpenAI 发送所选照片和相关提示词内容。
- 如果你发送支持邮件,邮件服务提供商会为投递和存储处理你的邮件。
- 如果法律要求,支持通信或网站记录可能会在必要范围内披露。
网站说明:根据网站源码,renchiliu.com 作为静态网站托管在 Cloudflare Pages 上。当你访问本页面时,托管服务商可能会出于安全、传输、诊断或滥用防护目的处理标准请求信息,例如 IP 地址、用户代理、请求时间和请求 URL。这些页面不包含联系表单、广告脚本或已配置的第三方分析。网站和主题可能使用 localStorage 保存显示偏好,包括配色和本页面语言选择。如果未来启用额外的网站分析、Cookie 或联系表单,本政策应相应更新。
9. 保留与删除
当前 App 能力如下:
- 你可以在设置中删除本机保存的 OpenAI API Key。
- 你可以逐条删除本地 LLM API 使用历史,也可以一次清空全部本地 LLM API 使用历史。
- 你可以将餐食记录归档,使其不再计入统计。
- 当前版本尚未提供永久删除单条或全部餐食记录的 App 内入口。
- 你可以将全部餐食记录导出为 CSV。
- 删除 App 通常会移除 App 容器中的餐食数据库和设置。
- Keychain 项目可能在重新安装后仍存在,因此如果你希望移除 API Key,建议先在卸载前通过设置删除 API Key。
- 从 App 删除本地数据不会自动删除 OpenAI 已按其政策处理或保留的数据。与 OpenAI 已保留数据相关的请求应通过你自己的 OpenAI 账号或 OpenAI 隐私渠道处理。
10. 安全措施
膳环的设计目标是在本设备保存餐食记录,除非你选择使用 OpenAI 直接估算或主动把信息提交给外部服务。你的 OpenAI API Key 保存在 Apple Keychain 中,直接 API 请求使用 HTTPS。
任何 App、设备、网络、邮件或云服务都不能保证绝对安全。你需要保护好自己的设备、OpenAI 账号和 API Key。请不要通过邮件或截图分享 API Key。
11. 儿童隐私
膳环并非为收集儿童信息而设计,也不会有意收集儿童个人数据。App 的营养估算不是医疗建议。儿童和青少年应在父母或监护人适当参与下使用营养或健康相关 App,并在需要时寻求专业指导。
12. 跨境处理
本地保存的 App 数据会留在你的设备上,除非你选择发送或导出。如果你使用 OpenAI 直接估算,所选照片和相关内容会发送给 OpenAI,并可能在 OpenAI 或其服务提供商运营所在地处理。如果你发送支持邮件或访问本网站,邮件和托管服务提供商也可能在其运营所在地处理相关信息。
13. 政策更新
当膳环的功能、数据处理方式或法律要求发生变化时,本政策可能更新。更新后的政策会发布在本页面,并注明新的生效日期或最后更新日期。
14. 联系方式
如有隐私问题或需要技术支持,请发送邮件至 support@renchiliu.com。
这里列出该地址,是因为它已经被 renchiliu.com 的支持页面使用。只有在专门的隐私邮箱创建或确认后,才应将其加入本政策。