kClo · Last updated 4 September 2026
kClo is operated by an individual, not a company:
Sidhartha Behera
Homburger Landstraße 765
60437 Frankfurt am Main
Germany
kclocalfitlog@gmail.com
Sidhartha Behera is the data controller for the personal data described on this page.
kClo is a diet, activity and sleep tracking app for Android. You set a weight goal, log what you eat and how you move and sleep, and the app calculates and adjusts a daily calorie and step target for you. There is a free tier supported by advertising, and paid tiers that reduce or remove the ads and unlock extra features.
| Category | Examples | When |
|---|---|---|
| Account | Google account identifier, email address, display name | Only if you sign in |
| Profile | Name you enter, age, gender, height, starting and goal weight, target date, activity level, sleep target | When you complete setup |
| Health & activity logs | Meals and calories, water, steps, exercise, weight history, sleep hours, bedtime, stress, pain area and severity, naps, fasting windows | As you log them |
| Photos and camera | Dish photos you upload, avatar image, photos you submit to AI estimation, barcodes you scan | Only if you use those features |
| Coins, tokens and purchases | Balances, redemption records, subscription status from Google Play, family plan membership | If signed in / if you purchase |
| Referrals | Your referral code, and the fact that an account signed up through someone's code | If you share or use a code |
| Approximate location | Coordinates used once to fetch local weather; we store the resulting place name and weather, not a location history | Only if you enable weather |
| Country, from IP | Your country, derived from your IP address at the moment of a request, to show the correct regional price and ad frequency. The IP address itself is not stored in our database. | On server requests |
| Advertising | Android advertising ID and standard ad-request data (device type, coarse region, which ad slot) | Free tier, and rewarded ads on any tier |
| Notifications | Reminder times you choose, and the device token needed to deliver them | Only if you enable reminders |
| Device-local settings | Theme, language, country catalog, tutorial progress | Stays on the device; not backed up |
kClo's free tier is funded by ads served through Google AdMob. There are three kinds: banners and occasional full-screen ads, which you cannot avoid on the free tier, and rewarded ads, which are always voluntary — you choose to watch one in exchange for coins or tokens, and nothing happens if you do not. The paid VIP tier removes ads entirely; the Hybrid tier reduces but does not remove them, and the app says so before you buy.
Ads involve reading your device's advertising ID. In the EEA, the UK and Switzerland you are asked, on first launch, whether you agree to personalised advertising. If you decline you still see ads, but non-personalised ones, and everything else in the app behaves identically. You can change that choice later in the app's settings, and you can reset or delete the advertising ID itself in your Android settings, which we cannot override. We never send your health logs, weight, meals, sleep or profile to an advertising network — advertising and your diary are separate systems that do not meet.
| Processor | Purpose | Where |
|---|---|---|
| Supabase | Database, authentication, file storage, server functions | EU (Frankfurt, eu-central-1) |
| Anthropic | AI chat, photo estimation, feedback reports | United States |
| Cloudflare | Hosting dish and recipe photos; country lookup | Global edge network |
| Google (Play, Sign-In) | Authentication and payment processing | Global |
| Google AdMob | Serving ads on the free tier, and rewarded ads | Global |
| RevenueCat | Subscription entitlement management | United States |
| Open-Meteo, BigDataCloud | Weather and place-name lookup | EU / Global |
Transfers outside the EEA rely on the European Commission's Standard Contractual Clauses or on an adequacy decision. We do not sell personal data. Google acts as an independent controller for parts of its advertising and payments business; its own privacy policy governs that processing.
When you use an AI feature, only the content of that request is sent — your message or photo, plus a short summary of that day's totals so the answer is relevant. Your full history is never uploaded. Our AI provider processes it to generate the reply and does not use it to train their models. There is no automated decision-making that produces legal or similarly significant effects for you: everything the app suggests is advisory, and you are free to ignore it.
Dish photos you upload to shared dishes are stored in a public bucket so the app can display them, and are checked automatically before publication. The file path does not contain your account identifier. Avatars are private to your account. Photos sent to AI estimation are not published anywhere. Barcode scanning reads the code on your device; that image is never uploaded.
A family plan links several accounts to one payer so they all get the paid tier. Linking shares membership status only. The payer cannot see other members' meals, weight, sleep or any other log, and members cannot see each other's. Leaving a family plan removes the link and nothing else.
Referrals work by code. We record that an account signed up through a code so the reward can be paid, and we check for obvious abuse — the same person claiming rewards repeatedly through new accounts. That check is the reason for the record described in section 8.
Your logs are kept until you delete them or delete your account. When you delete your account, your authentication record, profile, backups, wallet, photos and purchase records are removed. A small irreversible record derived from your email is kept to prevent repeated abuse of the referral, trial and reward systems; it cannot be used to reconstruct your address or to contact you. Records we are legally required to keep for tax and accounting purposes — essentially, that a purchase happened — are kept for the statutory retention period and used for nothing else.
Under the GDPR you have the right to access, correct, delete, restrict, port and object to processing of your data, to withdraw consent at any time, and to lodge a complaint with your local supervisory authority. Ours is the Hessischer Beauftragter für Datenschutz und Informationsfreiheit in Wiesbaden. The app gives you the main rights directly: export a full copy from This Week → Backup & Restore, and delete everything from Profile → Cloud Account → Delete account. For anything else, email kclocalfitlog@gmail.com and we will respond within 30 days.
kClo is not intended for anyone under 13, and the app asks you to confirm your age before it can be used. We do not knowingly collect data from children under 13. If you believe a child has provided us data, contact us and we will delete it.
Data in transit is encrypted with TLS. Server-side access is restricted by row-level security so one account cannot read another's data. Access to AI features and rewards is rate-limited and monitored for abuse. No system is perfectly secure, but we take this seriously and fix what we find.
If we change this policy materially we will update the date above and, where the change affects how your data is used, tell you in the app before it takes effect.