Privacy Policy
Last updated July 18, 2026
CribGourmet is a discovery directory and direct connection tool. We collect the information needed to run accounts, publish cook pages, prevent abuse, and let buyers contact cooks. We do not sell personal information.
What we collect
- Account identity: Clerk manages sign-in. We store the Clerk user identifier and the name, verified email address, or verified phone number associated with the account. CribGourmet does not receive or store your Clerk password.
- Cook-page information: kitchen name, general location, menu, prices, photos, availability, public contact links, and other information a cook chooses to publish.
- Buyer and community activity: saved cooks, reviews, reports, notification preferences, and support messages.
- Private cook messages: if you message a cook through CribGourmet, we store the name and contact information you provide, the conversation, selected items, fulfillment details, and any delivery address or cross streets you choose to send. This content is encrypted at rest and is available only to the buyer and the cook, subject to lawful access and service operations.
- Technical and engagement signals: page views, link taps, basic request information, and one-way hashed network fingerprints used for counts, fraud prevention, and rate limiting. We do not intentionally store raw IP addresses in application records.
Payments and transactions
CribGourmet does not process buyer-to-cook payments or store card or bank information. Buyers and cooks arrange orders, payment, pickup, delivery, refunds, and food-safety questions directly.
How we use information
We use information to authenticate accounts, operate and search the directory, publish and manage cook pages, deliver private messages and requested notifications, show cooks aggregated engagement, provide support, moderate content, and prevent fraud, spam, and account abuse.
Cookies and browser storage
Clerk uses cookies or browser storage to maintain authentication. CribGourmet also stores preferences, unfinished cook-page drafts, recently viewed cooks, and guest conversation access tokens on your device. Clearing browser data may remove drafts or access to a guest conversation.
Service providers
We use service providers to operate CribGourmet, including Clerk for authentication and billing, Render for hosting and databases, Cloudflare for bot protection, AWS for photo moderation, and—when configured—Resend for email and Slack for operational alerts. These providers process information on our behalf under their own security and privacy terms.
Public information and third-party links
Cook pages, public contact details, and published reviews are visible to anyone. Links to cooks' social profiles, messaging services, websites, and payment methods lead to third parties with their own privacy practices.
Retention, deletion, and your choices
You can update your profile, remove saved cooks, change notification preferences, export account data, or disable your active account from Settings. Disabling an account takes its cook page offline and prevents the local profile from resolving. Some records may be retained for fraud prevention, dispute handling, legal obligations, referential integrity, and backups. To request deletion or correction beyond the self-service controls, email hello@cribgourmet.com.
Children and security
CribGourmet is not directed to children under 13. We use reasonable technical and organizational safeguards, but no transmission or storage system can be guaranteed completely secure.
Contact
Questions or privacy requests can be sent to hello@cribgourmet.com.
