Skip to document
Pantry home

Privacy notice

Effective

Who operates Pantry

Cameron Low, an individual based in Ontario, Canada, operates Pantry at mypantrypro.com. Pantry is a product name. This notice covers this hosted service and the optional Pantry Zehrs Checkout extension. Contact hello@cameronlow.com about privacy, access, correction, export, deletion, or a concern.

Account and household data

We store your name, email address, a salted password hash, hashed session credentials, and account timestamps to provide and protect your account. Household names, membership roles, invitation email addresses, lists, carts, pantry inventory, favourites, schedules, and handoff/order records support grocery planning. Shared grocery records are visible to other members of your household. Invite only people who expect an invitation, and avoid adding sensitive information about others.

Retailer requests and checkout

Product searches and price retrieval send search terms, product identifiers, and the selected store to Zehrs/PC Express. Pantry is independent of those retailers. The optional extension receives a cart through a short-lived handoff token, opens Zehrs, and attempts to add items using your retailer session. It reports progress to Pantry. You review the retailer cart, prices, substitutions, delivery details, and payment there. Pantry does not collect payment-card details or your Zehrs password.

Browser storage and extension permissions

The website uses an essential pantry_session cookie lasting up to 30 days and local storage for theme, store, active cart, and checkout selections. Clearing cookies signs you out; clearing local storage removes device preferences. We do not embed advertising or visitor-analytics scripts. The optional extension requests storage, tabs, activeTab and access to Pantry, Zehrs, and local development origins. It stores the queued cart, handoff token, progress, and up to 200 diagnostic entries locally. Clear its queue/logs using the helper or remove its browser data or uninstall it. Do not share diagnostic logs without checking their contents.

Infrastructure and contact handling

The hosted application and database run on Hostinger infrastructure in the United States. Server requests can produce security and diagnostic records including IP address, path, time, and user agent; edge access logs normally rotate after 14 days. Cloudflare provides domain infrastructure and forwards contact email to Google mail. Those providers and the retailer may process data in other countries under their own terms. We do not sell personal information or use grocery records to target advertisements.

Retention and deletion

Account and household records remain until removed through available controls or handled following a verified request. There is no automatic inactivity-deletion promise. Sessions expire after up to 30 days, household invitations after 7 days, and checkout handoff access after 30 minutes; expiry does not itself erase stored history. Removing a list or pantry item affects the shared household. Ask Cameron for account closure, an export, or help removing shared records. We verify authority and explain what can be removed without deleting another member’s records. Backups and security records may remain after active-data removal; no fixed backup-erasure deadline is promised. We explain relevant limits when responding.

Your choices and changes

Use Pantry only if you can authorize the information you provide. It is intended for adults managing groceries, not for collecting children’s personal information. You can use the website without installing the extension. Contact Cameron for assistance, to withdraw an optional permission, or to raise a privacy concern; unresolved Canadian privacy concerns can be directed to the Office of the Privacy Commissioner of Canada. Material changes will be identified with an updated effective date and additional notice where required.