peristyle

Privacy Policy

Effective 2026-09-07

Peristyle Grocery Cart ("Peristyle", "we") is an API and MCP connector that lets an AI assistant such as Claude or ChatGPT find a recipe, match its ingredients to real products at Kroger or Walmart, and fill a Kroger cart or build a Walmart cart link for you. This policy explains what data the connector and its tools handle, why, who receives it, how long we keep it, and the controls you have. It covers shoppers using the connector, readers using the Peristyle widget or concierge chat on a recipe creator's site, and recipe creators with a Peristyle account.

What the tools take in and give back

Every tool the assistant can call sends its inputs to our API and returns its outputs to the assistant, which shows them to you. The inputs are the data you (or the assistant on your behalf) type:

The outputs are recipe details from our catalog, product listings (name, brand, size, price, stock, image) from Kroger's or Walmart's APIs, cart results, and your own saved preferences and pantry. Walmart cart links include affiliate identifiers so Walmart can attribute the cart to Peristyle; they do not identify you. Amazon cart links work the same way: as an Amazon Associate, Peristyle earns from qualifying purchases.

Data we collect and store

Account and store connection

Preferences

The keys above, stored on your account when you are signed in through a remote connector (claude.ai, ChatGPT). With a local (stdio) connection they live only in a file on your device, along with a recent-recipes history that is never uploaded.

Pantry (only after you opt in)

Pantry items and their state, and product/ingredient feedback and notes. Nothing pantry-related is recorded before you opt in.

Carts you build

An itemized record of each cart you build (products, quantities, store, recipe), held as a pending purchase confirmation until you answer whether the order went through or it expires after 14 days. This is kept for every signed-in shopper, whether or not the pantry is on: checkout happens in the store's own app and no store tells us what was actually bought, so your answer is the only record of it there is. Answering adds those items to your pantry only if you have one — without it, we record the answer and nothing about your kitchen.

Usage analytics

We record an event when a recipe is searched or viewed, products are searched or matched, a list is reviewed, a cart is created, a store is connected, or the pantry is used. Events carry your account id (if signed in), a client session id, the recipe and creator involved, the store and store location, item counts, an estimated cart value, which assistant made the call (e.g. "claude", "chatgpt"), and ingredient names we could not match. Search text is stored only as a truncated hash, except that the wording of a search that returned nothing is kept (up to 80 characters) so we can fix the catalog. Analytics events do not contain your IP address, user agent string, or email.

Operational logs

Our servers log each request's method, path, status code, timing, request id, your account id when signed in, and your IP address. Logs of our own outbound calls include the URL we called, which can contain a search term, ZIP code, or store id. Email sends log the recipient address and subject. Request bodies, tokens, and credentials are not logged.

Recipe URLs from other sites

When you paste a recipe URL from a site that is not yet in our catalog, we keep the domain, the pasted URL, a request count, and the account or session id that asked, so we can invite that creator to Peristyle.

Creators

For recipe creators we store the name, contact email, site URL, social handles, and notes you submit; domain-verification results; login and session tokens (hashed); and, if you subscribe, your Stripe customer and subscription identifiers and plan status. Card details go directly to Stripe and never touch our servers.

Stored in your browser or on your device

The widget on a creator's site keeps your Peristyle API key, chosen store, session id, and display settings in that page's browser storage. We do not set cookies. The local (stdio) connector keeps your API key and a preferences and history file in your user config directory.

Why we use it

We do not sell your data, do not share it with advertisers, and do not use it to train AI models.

Who receives it

We may also disclose data if required by law or to protect the service and its users.

How long we keep it

Your controls

Security

Data is encrypted in transit (TLS). Store tokens are encrypted at rest; API keys, sign-in tokens, and session tokens are stored as hashes. Secrets live in a managed secret store, not in code.

Children

The service is not directed to children under 13 and we do not knowingly collect their data.

Changes

We will update this page when our data practices change and revise the effective date above. Material changes to what we collect or who receives it will be called out here.

Contact

Questions or requests about this policy: [email protected]