Privacy Policy

Privacy Policy for Five Dinners Limited T/A FiveDinners.com

Last updated: 1st October 2026

Welcome to FiveDinners! “FiveDinners”, “FiveDinners.com”, “Five Dinners”, “we”, “us” and “our” refer to Five Dinners Limited. We value your privacy and are committed to ensuring that your personal data is handled securely and responsibly.

This Privacy Policy explains how we collect, use, share and protect your personal information when you access or use the FiveDinners website, mobile applications, meal-planning platform and related services (collectively, the “Services”).

FiveDinners.com is a trading name of Five Dinners Limited.


Information We Collect

Depending on how you use the Services, we may collect:

  • Your name, email address, telephone number, login credentials and other account information.
  • Dietary, lifestyle, household and meal-planning preferences you choose to provide, including allergies, intolerances and health-related preferences.
  • Payment and subscription information, including subscription status, purchase history and transaction identifiers.
  • Information about your use of the Services, such as meal-plan selections, saved recipes and feature interactions.
  • Technical information, including IP address, device type, operating system, App version, device identifiers and language settings.
  • Diagnostic and security information, including crash reports, error logs and performance information.
  • Push-notification tokens and notification preferences.
  • Information you provide through feedback, competitions, support requests or other communications.
  • Information from payment providers or App Stores needed to verify purchases, administer subscriptions and prevent fraud.
  • Where relevant, the organisation or programme through which you receive access and information needed to confirm eligibility.

Full payment-card details are processed by our payment providers or the relevant App Store and are not stored by FiveDinners.

Dietary and Health-Related Information

Some preferences, including allergies, intolerances, pregnancy, menopause or diabetes, may reveal health information that receives additional protection under data protection law.

When you select these preferences and expressly agree to the consent statement displayed during registration or when updating your preferences, you consent to FiveDinners using that information to personalise your meal plans.

Providing these preferences is optional. You can withdraw consent by deselecting the relevant preferences and saving your changes, or by contacting us. We will stop using the corresponding information for personalisation and delete it unless a lawful basis and applicable special-category condition permit its retention. Your plans will no longer be tailored to the preferences you remove.

Withdrawal does not affect the lawfulness of processing carried out before consent was withdrawn. Consent to personalisation does not authorise unrelated uses of your identifiable health information.

How We Use Your Information

We use personal information where appropriate to:

  • Create and manage your account.
  • Provide recipes, meal plans and personalised features.
  • Remember and apply your preferences.
  • Process payments and administer subscriptions where applicable.
  • Confirm eligibility for organisation-funded access.
  • Operate, maintain and protect our website and applications.
  • Understand usage and improve the Services.
  • Identify and resolve technical problems.
  • Send account, security, subscription and other essential service messages.
  • Send marketing where we have permission or another lawful entitlement to do so.
  • Administer competitions and promotions.
  • Respond to enquiries and provide support.
  • Prevent fraud and misuse.
  • Meet legal obligations and establish, exercise or defend legal claims.

Our Lawful Bases

We rely on the following lawful bases, depending on how we use your information:

Contract: To provide the Services you request, manage your account and administer your subscription.

Consent: To use optional sensitive preferences to personalise your meal plans, and for marketing, cookies or similar technologies where consent is required. Where preferences reveal health information or other special-category information, we rely on consent under Article 6(1)(a) and explicit consent under Article 9(2)(a) of the UK GDPR.

You may withdraw consent at any time. For personalisation, you can do this by deselecting the relevant preferences and saving your changes, or by contacting us. Your plans will then no longer be personalised using those preferences. Withdrawal does not affect the lawfulness of processing before consent was withdrawn.

Legitimate interests: To protect and administer our business, prevent fraud, handle enquiries and improve the reliability of our Services, where these interests are not overridden by your rights and freedoms. We do not use legitimate interests to bypass a requirement for consent.

Legal obligation: To meet applicable legal requirements, including financial record-keeping and responding to legally binding requests.

Organisation-Funded Access

Access Through Participating Organisations

If you receive access through an employer, council, NHS body or another participating organisation, we may use information about that arrangement to activate your access, confirm eligibility and administer the programme.

We do not share your name or email address with participating organisations. We may provide anonymised, aggregated reports about programme participation and use, as described below. These reports do not identify individual users.

Receiving access through an organisation does not give it access to your individual account, health information or dietary preferences. Any sharing of identifiable information for eligibility, support or programme administration is separate from anonymised statistical reporting.

Anonymised and Aggregated Reporting

We may create anonymised, aggregated statistics about overall registrations, engagement and use of the Services for reporting, service improvement and business planning or marketing and promotion.

These reports may be shared with organisations funding access, including employers and public bodies. They do not include individual account records or identifiable dietary or health preferences.

We do not attempt to re-identify individuals from anonymised reports. Information that remains reasonably identifiable is treated as personal information, even if names have been removed and are not shared.

Any processing of personal information to prepare these reports must have an appropriate lawful basis and, where relevant, a special-category condition.

Cookies, App Analytics and Similar Technologies

Our website and applications may use cookies, local storage, analytics tools, software development kits and similar technologies to operate the Services, remember preferences, protect accounts and understand performance and usage.

Where consent is required, we obtain it before activating the relevant technology. Where a lawful exception applies, we provide the information and choices required for that exception.

Our website cookie controls allow you to accept, reject or customise optional technologies. Information about their purposes, providers and duration is available through those controls or our cookie information.

You can change your choices or withdraw consent through the relevant controls. Contact us if you need help finding them. Browser and device settings may provide additional options, but they do not necessarily control every technology used within the Services.

Rejecting optional analytics does not prevent access to the core Services, although disabling technologies needed for a feature may affect that feature.

Mobile Application Permissions

The App may request permission for notifications or particular device features where needed for functionality you choose to use.

We will explain the purpose and request the relevant permission before accessing features that require it. You may change device permissions through your settings.

We do not access your camera, photographs, precise location, contacts or microphone unless a relevant feature requires access and you have granted the necessary permission.

A device permission does not replace any separate consent required under data protection law.

Artificial Intelligence and Automated Personalisation

We use artificial intelligence in conjunction with human specialists to help assess recipes and their suitability for dietary categories and preferences. Our own algorithm uses recipe information and your selected preferences to create personalised meal plans.

We do not provide AI providers with your personal information. Information supplied for recipe assessment is limited to recipe content and relevant dietary criteria, without details that directly identify you.

Where personalisation involves health-related or other sensitive preferences, we rely on your explicit consent, as explained above. You can withdraw consent by deselecting the relevant preferences and saving your changes, or by contacting us. Your plans will then no longer be personalised using those preferences.

Recipe assessments, dietary classifications and personalised suggestions may contain errors. They provide general guidance, not medical advice or a guarantee of dietary suitability. Always check recipes, ingredients and product labels against your individual dietary and health needs.

App Stores and Payment Providers

If you download the App or subscribe through Apple, Google or another App Store, that provider processes information under its own privacy policy.

We may receive transaction identifiers, subscription status, renewal or expiry information, country or region and payment confirmation. We use this to activate access, manage subscriptions, maintain records and prevent fraud.

Payment providers and App Stores may act as independent controllers for activities such as payment processing, fraud prevention and meeting their legal obligations. Other providers may process information on our behalf, depending on the service involved.

FiveDinners does not receive or store the full payment-card details used for App Store purchases.

Marketing, Communications, Competitions, Comments & Reviews

We send essential messages relating to your account, security, subscription and use of the Services.

We send marketing where you have consented or another lawful permission applies. You can opt out using the unsubscribe option or by contacting us. This does not stop essential service messages.

If you enter a competition or prize draw, we use your information to administer your entry, select and contact winners, and arrange prizes. Where necessary, we may share a winner’s name and email address with the participating organisation or prize provider identified in the competition information. We explain these arrangements and the applicable lawful basis before entry. Entry does not automatically subscribe you to marketing.

To demonstrate that prizes have been awarded, we may publish or make available limited winner information and, where relevant, the winning entry. The competition information will explain what will be disclosed and how to object or request that less information be disclosed. We may still need to provide evidence to the Advertising Standards Authority if challenged. We do not publish winners’ email addresses.

Reviews and comments you submit to public areas of FiveDinners are publicly visible and may be quoted on our website, social media and in promotional materials. We make this clear when you submit them. We may shorten quotations without changing their meaning and do not include your email address or other private account information.

We seek separate permission before including your name, identifiable photograph or information revealing your health in promotional materials, or using feedback submitted privately. You can contact us to request that we stop using your review or comment in future promotions.

Who We Share Information With

We do not sell your personal information to third parties.

We may share information with providers needed to operate the Services, including:

  • Relevant infrastructure providers for hosting.
  • Payment processors and App Stores.
  • Email and communication providers.
  • Customer-support providers.
  • Analytics and diagnostic providers.
  • Security and fraud-prevention providers.
  • Authorised developers and technical-support providers.
  • Any AI providers identified in the section above.

Providers acting as processors may use the information only under appropriate contractual instructions and safeguards. Providers acting as independent controllers are responsible for their own processing under their privacy policies.

We may also share information with professional advisers or authorities where necessary and lawful, including to meet legal obligations or establish, exercise or defend legal claims. We limit disclosures to what is appropriate for the purpose.

Sharing connected with funded access, reporting or a business transfer is explained in the relevant sections of this policy.

How Long We Keep Information

We retain personal information only for as long as needed for its purpose, taking account of legal obligations, security needs and relevant claims.

Where a legal requirement or active dispute justifies longer retention, we restrict the information retained and its use accordingly.

Information no longer needed is securely deleted or effectively anonymised. Anonymised statistics that no longer identify individuals may be retained for longer.

Business Transfers

If FiveDinners undergoes a sale, merger, reorganisation or transfer of its business, relevant personal information may be disclosed to advisers and prospective purchasers where necessary and lawful, subject to appropriate confidentiality and access restrictions.

If the transaction proceeds, information may transfer to the successor organisation so that it can continue providing the Services. We will provide appropriate information about any change of controller and how your information will be used.

A business transfer does not remove your data protection rights or automatically authorise use of your information for unrelated purposes.

Data Security

We use technical and organisational measures appropriate to the nature of the information and the risks involved. These include restricting access, protecting accounts, using secure connections and working with suitable hosting and technical providers.

Security and recovery arrangements are intended to reduce the risk of unauthorised access, loss or damage. No system can be guaranteed completely secure, but this does not remove our responsibilities under data protection law.

Please contact us promptly if you believe your account or personal information has been compromised.

Your Data Protection Rights

Depending on the circumstances, you may have the right to:

  • Access your personal information.
  • Correct inaccurate or incomplete information.
  • Request deletion.
  • Restrict processing.
  • Object to processing, including processing based on legitimate interests.
  • Receive certain information in a portable format.
  • Withdraw consent where processing relies on it.

You have the right to object to the use of your personal information for direct marketing.

To make a request, contact us using the privacy contact above. We may ask for proportionate information to verify your identity. We will respond within the applicable legal timeframe and explain any lawful restriction or reason we cannot meet a request in full.

Where another organisation controls the information concerned, we will explain this and help direct your request appropriately.

Account and Data Deletion

You may request account deletion through the available account controls or by contacting us.

Following a verified request, we will delete or anonymise the associated personal information unless a lawful reason requires limited retention. Any retained information will be used only for the relevant purpose.

Deletion from active systems may occur before copies expire from backups. Residual backup information remains protected and is not used for ordinary business purposes. If a backup is restored, relevant deletion requests must be reapplied.

Deleting your account does not automatically cancel a subscription purchased through an App Store. Cancel that subscription separately through the relevant store account.

Children’s Information

The Services are intended for account holders aged 18 or over.

Please do not provide names, dates of birth or other identifying details about children or other household members unless a feature specifically requires them and explains the relevant privacy arrangements. General household preferences should be provided without unnecessary identifying information.

If you believe a child has created an account or provided personal information inappropriately, please contact us.

Changes to This Privacy Policy

We may update this policy to reflect changes to the Services, our processing or legal requirements. The current version will be available through the Services with its last-updated date.

We will draw material changes to your attention through an appropriate channel. Where a new use requires consent, we will request it before that processing begins. Continued use of the Services does not, by itself, provide consent where a separate choice is required.

Contact or Questions

Five Dinners Limited is responsible for the personal data described in this Privacy Policy. For questions or comments regarding our Privacy Policy, please contact the FiveDinners team via our contact us page here.

You can also read our Terms of Service here.