Overeasy

Overeasy privacy policy

Effective: August 23, 2026

Overeasy turns public recipe links and text you provide into recipes and syncs them across your devices. This policy describes the data needed to do that. Overeasy does not sell personal data, serve ads, or track activity across other apps or websites.

Data we collect and why

Service providers

Overeasy shares only data necessary to operate the selected feature:

These processors act to provide Overeasy's service. Overeasy does not disclose data to advertising or data-broker services.

Retention

Encrypted automated backups are retained for 35 days; continuous point-in-time recovery covers at least the latest seven days. Expired backups are destroyed by the infrastructure provider's lifecycle.

Account deletion

Every guest, Apple, and Google account can be permanently deleted in Account → Delete account. The operation verifies the current session, revokes Sign in with Apple credentials when applicable, and removes or anonymizes recipes, imports, sessions, devices, identity links, the display name, the provider's profile picture link, any profile photo you uploaded, provider usage, private text, sync history, Discover impression records, and unreferenced objects. It is idempotent so a network retry cannot recreate or partially delete the account.

Deletion cannot be undone. Backups are not used to restore an individual deleted account; any residual encrypted copy ages out within the 35-day backup schedule.

Security and changes

Private text uses authenticated, versioned encryption keys stored separately by environment in managed secret storage. Traffic uses TLS, production access is attested and rate limited, and workers are restricted from private-network and cloud-metadata egress.

Material policy changes will update the effective date and the in-app disclosure.

Contact

Questions about this policy, a privacy request, or anything that went wrong: hello@chetangoel.me. A person reads it. Overeasy is made by Chetan Goel.