Terms of Service

Last updated: July 16, 2026

These terms govern your use of the hosted openplate instance we (LowCarbCheck) operate. openplate is a local-first food-tracking tool with bring-your-own-key AI plate identification. By creating an account on the hosted instance, or otherwise using it, you agree to these terms. openplate is open-source and can be self-hosted; if you run your own copy, these terms describe our hosted deployment only and do not govern your instance.

1. Acceptance of terms

By accessing or using the hosted openplate service, you agree to be bound by these Terms of Service and by our Privacy Policy. If you do not agree, please do not use the hosted service. If you are using openplate on behalf of an organisation, you represent that you have authority to accept these terms on its behalf.

2. What openplate is

openplate is a food-tracking tool. It is built local-first: your foods, food logs, weight entries, goals, and your AI provider key live in your browser on your own device, not on our servers. The hosted service additionally keeps a small account record so you can sign in, and — once premium sync ships — can store end-to-end-encrypted copies of your data that only you can decrypt. The core feature is bring-your-own-key AI plate identification: you connect your own AI provider and it estimates the macros and nutrition of a plate from a photo.

3. Not medical or nutritional advice

openplate is not a medical device and does not provide medical or nutritional advice. The macro and nutrition figures shown after a plate scan are estimates produced by the AI provider you have configured — they are approximations, not measurements, and can be wrong. Food-search nutrition data is likewise provided for general information only. You should not rely on openplate for medical, dietary, or health decisions; consult a qualified professional for those. To the fullest extent permitted by law, we are not liable for the accuracy of AI-generated estimates or of any nutrition data, or for any decision you make based on them.

4. Bring your own AI provider

AI plate identification is bring-your-own-key (BYOK) and runs entirely on your device. You connect your own AI provider (an OpenAI-compatible endpoint or Anthropic) and supply your own API key. That key is stored only on your device, and when you scan a plate the photo is sent straight from your browser to your provider using your key — neither the key nor the photo ever passes through our servers. Your AI provider is a separate third party that you choose and that bills you directly under your own account. We have no relationship with, and no liability for, that provider's service, pricing, availability, output, or how it handles your photo; that is governed by the provider's own terms and privacy policy, not by us. You are responsible for your own usage costs with your provider.

5. Acceptable use

When using the hosted service, you agree not to:

  • scrape, crawl, or bulk-harvest the service or its food data by automated means;
  • attempt credential stuffing, brute-forcing, or any other unauthorised access to accounts that are not yours;
  • send excessive automated requests — for example, hammering the food-search endpoint — beyond ordinary interactive use;
  • probe, disrupt, or overload the service, or attempt to circumvent its rate-limiting or security controls;
  • use the service for any unlawful purpose or to upload malicious code.

The hosted service applies rate-limiting and login/registration throttling to protect availability. Repeatedly tripping these limits, or otherwise abusing the service, may lead to temporary blocks or to suspension of your account under the next section.

6. Your account, suspension, and termination

You are responsible for keeping your account credentials secure. We may suspend or terminate access to the hosted service if you breach these terms, abuse the service, or where we are required to by law. Where practical and lawful we will give notice, but for serious abuse or security reasons we may act immediately. Terminating your access to the hosted service does not affect the tracker data stored locally on your own device.

You can stop using the hosted service at any time. Because openplate is local-first, most of your data is already under your direct control — clearing the site's local storage erases your on-device tracker data. We do not yet offer a self-service button to delete your server-side account record. Until we do, you can request deletion of your account by contacting us at the address below and we will action it. This mirrors our Privacy Policy — we are honest about the absence of a self-service flow rather than advertising one that does not exist yet.

7. Premium end-to-end encrypted sync

We are building an optional paid premium tier that will let you sync your tracker data across your own devices. It is not yet available, and the terms in this section apply only once it launches and you subscribe. When it ships, subscribing grants your account a sync entitlement; the terms below describe what that entitlement means so there are no surprises.

  • End-to-end encryption. Your data is encrypted on your device before upload. Our server stores only opaque ciphertext it cannot read, and the encryption keys are derived on your device from a passphrase only you hold.
  • Version retention. To make sync robust, the server keeps a limited history of your encrypted data — the five most recent versions per account. When you save a newer version, the oldest is automatically pruned. By using premium sync you agree to this retention model.
  • Cancellation or downgrade. If you cancel your premium subscription or delete your account, your locally stored tracker data on your own devices is unaffected. Your server-stored encrypted sync blobs are deleted within 30 days of cancellation or account deletion, after which they cannot be restored from the live service. (Routine encrypted backups may retain them a little longer before they rotate out, as described in the Privacy Policy.)
  • Passphrase and recovery-code loss. Because sync is end-to-end encrypted, we literally cannot recover a lost passphrase or recovery code, and we cannot decrypt or reset your synced data on your behalf. If you lose your passphrase and your recovery code, your server-stored synced data is permanently inaccessible. Safeguarding them is your responsibility, and any resulting data loss is not our liability.

8. No warranty and limitation of liability

The hosted service is provided "as is" and "as available", without warranties of any kind, to the fullest extent permitted by law. We do not warrant that it will be uninterrupted, error-free, or that AI estimates and nutrition data will be accurate. To the fullest extent permitted by law, we are not liable for indirect or consequential loss, for loss of data (including data made inaccessible by a lost passphrase), or for decisions made in reliance on estimates produced by your AI provider. Nothing in these terms limits any liability that cannot be limited under applicable law.

9. Self-hosting

openplate is open-source and can be self-hosted. These terms describe the specific hosted instance we operate. On a self-hosted deployment, the operator of that instance — not the openplate project — is responsible for its own terms, its own users, and its own operation, and these terms do not apply to it.

10. Changes to these terms

We may update these terms as openplate evolves — for example, when premium sync launches. When we make a material change, we will update the "Last updated" date above. Continuing to use the hosted service after a change means you accept the updated terms.

11. Governing law

These terms are governed by the laws of Germany, where the operator is based, without regard to conflict-of-law rules. Mandatory consumer-protection rights you have under the law of your country of residence are not affected.

12. Contact

Questions about these Terms of Service, or requests to delete your account, can be sent to us at partners@sportsight.de.