Last updated September 10, 2026
Your recipes are personal. We treat them that way.
This policy describes how Okra and the Okra browser extension collect, use, store, and disclose information.
What Okra handles
Okra stores the recipes, meal plans, grocery lists, account information, and settings you choose to provide. The browser extension handles the URL and recipe content on the active page only after you click the extension.
How recipe pages are processed
The extension looks for published structured recipe data on your device and does not inspect pages in the background. It does not collect arbitrary page text or send page content to an AI provider. If no recipe data is available, you can choose to save the page title and source link instead.
Handwritten recipe beta
Handwritten-recipe import is available only in the installed iOS and Android apps. When you explicitly start an import, the app prepares the selected photos on-device and sends them with your user-supplied API key over encrypted transport for transcription by OpenAI. Okra does not retain the key or source photos, and the generated draft must be reviewed before you save it.
Storage and synchronization
The free local app stores recipes and chosen photos on your device. Okra+ sends the recipes and photos you choose to sync to Okra’s servers so they are available across your devices. Extension credentials are stored only in that browser and are not synchronized through Chrome.
Sharing and advertising
Okra does not sell personal data, browsing activity, or recipe data. Data is shared with infrastructure and AI providers only as needed to provide the feature you requested, or when required for security or law. Okra does not use this data for personalized advertising or credit decisions.
Control and deletion
You can disconnect the extension at any time, which revokes its server credential. Local data can be removed from the app, and connected account data can be deleted through the account support process. Subscription billing information is handled by Stripe or the applicable app store.
Security and retention
Okra uses encrypted transport for hosted services, stores extension credentials as hashes on the server, and limits access according to the connected account. Data is retained only while needed to provide the service, meet legal obligations, or resolve security and billing issues.
Okra’s use of information received from browser extension APIs adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements. This policy will be updated when product behavior or legal requirements change.