最後更新:2026 年 8 月 1 日
Makro(以下稱「本 App」)是一款飲食營養記錄工具。本政策說明我們收集哪些資料、如何使用,以及你的選擇。核心原則:你的飲食與身體數據留在你的裝置上,不會上傳到我們的伺服器。
當你使用「掃描標示」功能拍照時,該照片會傳送到我們的伺服器,再轉送給 Anthropic(Claude API) 進行文字辨識。辨識完成後,照片即被丟棄,我們不儲存任何照片。照片僅用於這一次辨識,不作其他用途。
你記錄的飲食、熱量、蛋白質、體重與偏好設定,全部儲存在你裝置的本機儲存空間(localStorage),永不離開你的裝置、我們也看不到。你可以隨時透過「匯出備份」自行保存,備份檔由你自行保管。
掃描次數必須記在伺服器上(記在手機裡的數字改掉就沒有意義),因此我們需要一把能認出「這些次數是誰的」的鑰匙。
這把鑰匙是由 Apple 提供的 App 專屬識別碼(appTransactionID)經雜湊處理後產生的一串字元。它在你第一次開啟本 App 時就會建立——不論你是否購買過任何東西——因為免費次數同樣要記在某個地方。
我們的伺服器上,與這把鑰匙有關的資料只有:一串不可逆的雜湊值,加上一個次數數字。這組資料無法反推出你是誰,我們也拿不到你的 Apple 帳號本身。
附帶的好處:因為鑰匙來自你的 Apple 帳號而非這支手機,你重新安裝 App 或換一支手機後,剩餘次數會自動跟著你,不需要註冊帳號,也不需要「恢復購買」。
購買掃描次數包時,交易由 Apple App Store 處理,我們不會收到你的姓名、email 或付款資訊。我們只會收到 Apple 簽章的交易憑證,用來確認該筆購買有效,並把對應次數加到上述鑰匙底下。
本 App 提供「觀看廣告換取免費掃描次數」的選項(每日有上限)。廣告由 Google AdMob 提供,可能會收集裝置識別碼以投放廣告。在 iOS 上,我們會先透過「App 追蹤透明度」向你徵求同意——你可以拒絕,拒絕不影響 App 的任何功能,只是廣告與你的興趣較無關聯。
為防止服務被濫用,伺服器在處理掃描請求時會暫時讀取你的 IP 位址做流量限制。此資訊僅即時使用,不與你的身分連結、不長期保存。
本機資料:解除安裝 App 或清除 App 資料即全部刪除。伺服器上的次數資料:如需刪除,來信 support@fit-the-makro.com。
本 App 不針對 13 歲以下兒童設計,也不刻意收集其資料。
本政策更新時會修改本頁的「最後更新」日期。重大變更會在 App 內告知。
有任何疑問,請來信 support@fit-the-makro.com。
Last updated: 1 August 2026
Makro (the "App") is a diet and nutrition tracker. This policy explains what data we collect, how we use it, and your choices. Core principle: your diet and body data stays on your device and is never uploaded to our servers.
When you use "Scan label", the photo is sent to our server and forwarded to Anthropic (Claude API) for text recognition. Once recognition completes, the photo is discarded — we store no photos. It is used only for that single recognition.
Your logged food, calories, protein, weight and preferences are stored in your device's local storage and never leave your device; we cannot see them. You can export a backup at any time; that file is yours to keep.
Scan credits have to be held on a server — a number kept on the phone could simply be edited — so we need a key that tells us whose credits they are.
That key is a hash of the app-specific identifier Apple provides (appTransactionID). It is created the first time you open the App, whether or not you ever buy anything, because free credits also have to be recorded somewhere.
Against that key our server holds only an irreversible hash and a credit count. It cannot be traced back to your identity, and we never see your Apple account itself.
A useful side effect: because the key comes from your Apple account rather than this handset, your remaining credits follow you when you reinstall the App or move to a new phone — with no account to create and no "restore purchases" to tap.
Credit-pack purchases are handled by the Apple App Store; we do not receive your name, email or payment details. We receive only an Apple-signed transaction receipt, which we use to confirm the purchase is genuine and add the credits to the key above.
The App offers an option to watch an ad in exchange for free scan credits (subject to a daily cap). Ads are served by Google AdMob, which may collect device identifiers to serve them. On iOS we ask first via App Tracking Transparency — you may decline, and declining does not affect any App feature; ads are simply less relevant to you.
To prevent abuse, our server transiently reads your IP address for rate limiting when processing scans. It is used in the moment only, not linked to your identity and not retained.
On-device data: deleting the App or clearing its data removes everything. Server-side credit data: to delete it, email support@fit-the-makro.com.
The App is not directed to children under 13 and does not knowingly collect their data.
We update the "Last updated" date on this page when the policy changes. Material changes will be announced in-app.
Questions? Email support@fit-the-makro.com.