Burrow Budgie

Privacy Policy

Effective August 18, 2026 · Burrow Budgie family pilot

Who we are

Burrow Budgie is an independently built family meal-planning app, currently running as a small pilot. Questions and requests about your data go to hello@burrowbudgie.com.

What we collect

  • Every account: your email address, used for sign-in links and account communication.
  • Members aged 13 to 17: nothing extra and nothing different. The same email address, and the same data in their burrow (their household group) as anyone else. They join only by redeeming a single-use invite code an organizer generated, confirming at that moment that the invitee is at least 13.
  • Data your burrow creates: your burrow's name, your recipes, suggested meals, votes, weekly plans, shopping list items, and the budget number you set.
  • Store and price data: the Kroger store you pick, items you match to Kroger products, and prices you log ("I paid $X at store Z").

Burrow Budgie is for ages 13 and up

Children under 13 have no accounts, no profiles, and no presence in Burrow Budgie of any kind. We do not knowingly collect, store, or process any personal information from anyone under 13, and there is nowhere in the app for it to go. The app holds no data about children at all.

Every member of a burrow holds their own account and votes as themselves. Nobody votes on anyone else's behalf. Members aged 13 to 17 join only by redeeming a single-use invite code that an organizer in the burrow generated, confirming at that moment that the invitee is at least 13. We record who made that confirmation and when. We never ask for or verify anyone's date of birth, and we store no ages or birthdays. There is no self-serve way into a burrow.

What someone can do in a burrow depends on their role, not their age. An organizer plans the week, vetoes and schedules meals, sets the budget, builds the shopping list, and connects the Kroger account. A member suggests meals, votes, adds recipes, and edits the shopping list, and can do none of the organizer-only things. An organizer can give a member organizer powers, or take them back, at any time. That is the burrow's decision to make, and the app does not know anyone's age when it is made.

If you believe someone under 13 has created an account, email us and we will delete it.

Prices are a shared commons

When you log a price, other Burrow Budgie families can see the product, price, store name, and date. That sharing is what makes the price book useful. They never see your name, your email, your burrow's name, or anything else about who logged it.

Your Kroger connection

Linking a Kroger account is optional and happens on Kroger's own sign-in page. Burrow Budgie never sees or stores your Kroger password. We hold only the scoped, revocable permission Kroger issues, encrypted at rest, and use it for exactly one thing: adding the items you choose to your Kroger cart. Kroger does not let apps read your cart, and we never see your Kroger order history or payment details. Disconnecting in Burrow Budgie deletes the stored permission immediately. After that, Burrow Budgie cannot add anything to your cart. Kroger remembers that you once approved Burrow Budgie, so reconnecting won't ask you to approve it again; nothing reaches your cart unless you choose to reconnect.

Where your data lives, and who helps us run the app

A small number of services process data on our behalf. We name them so you know exactly who touches what:

  • Supabase (database and sign-in, hosted in the United States): stores everything listed under "What we collect".
  • Vercel (hosting): serves the app and its pages.
  • Resend (email delivery): sends the sign-in link emails and any notices we send about the app, so it processes member email addresses.
  • ImprovMX (email forwarding): relays anything sent to hello@burrowbudgie.com to us, including data requests.
  • Cloudflare (sign-in protection): runs the quick human-check on the sign-in screen, so it sees the network and browser signals of that check. Cloudflare states this check does not use advertising or tracking cookies.

Product and price lookups query Kroger's public API. We use no analytics trackers and no advertising SDKs. If we ever swap one of these services for an equivalent, we'll update this page.

What we never do

  • Sell or rent your data, or show ads.
  • Market to minors, or send anyone email beyond sign-in links, replies when you write to us, and occasional notices about the app itself.
  • Ask for, store, or automate retailer usernames or passwords.
  • Hold, move, or collect money. The budget bar is visualization only.

Retention and deletion

Your burrow's data stays until you delete it or ask us to. Disconnecting Kroger deletes the stored tokens right away. Email hello@burrowbudgie.com from your account address to have your burrow's data (recipes, votes, plans, lists, and logged prices) deleted.

Changes

If this policy changes in a way that matters, we'll tell every burrow by email before the change takes effect. The effective date above always reflects the current version.

Burrow Budgie is not affiliated with, endorsed by, or sponsored by The Kroger Co.