Privacy notice
Last updated: 20 July 2026 1. DATA CONTROLLER The data controller is Pavel Filingeri (the "Controller"). For any request about your data, write to pavel.filingeri00@gmail.com. 2. WHAT DATA WE PROCESS • Account data: email address, password (stored only as a cryptographic hash, never in plain text), or your Google identifier if you sign in with Google. • Health data (Art. 9 GDPR): the food sensitivities you declare (e.g. FODMAP, histamine, gluten, lactose), your allergies and intolerances to specific foods, your food diary and the symptoms you log. They are the reason this app exists: without them we cannot give you personalised verdicts. • Content you send us: label photos and texts you submit to the scanner. Photos are processed for the analysis and are not stored on our servers afterwards; if you save an analysis to your diary, we keep only the text verdict. • Technical data: IP address (for security, anti-abuse limits and technical logs), registration date and last sign-in. • Location: only if you enable it, to show nearby stores or validate an in-store report. You can save a preferred location in Settings. 3. WHY AND ON WHAT LEGAL BASIS • Providing the service (account, profile, verdicts, diary, recipes): performance of the contract (Art. 6.1.b) and, for health data, your explicit consent collected during onboarding (Art. 9.2.a). You can withdraw it at any time by deleting your account. • AI label analysis and recipe generation: explicit consent to transferring the necessary data to the AI provider (see point 4). • Security and abuse prevention (rate limiting, logs): legitimate interest (Art. 6.1.f). • Transactional emails (verification, password recovery, confirmations): performance of the contract. 4. ARTIFICIAL INTELLIGENCE AND TRANSFERS OUTSIDE THE EU To analyse labels, generate recipes and interpret free-text allergy descriptions we use AI models delivered through OpenRouter (a provider based in the United States). The transfer happens only with your explicit consent, collected during onboarding. We route requests in "zero data retention" mode where supported (the provider does not retain request contents) and apply automatic checks so your email or user identifier is never included in AI requests. Transactional emails are sent via Resend. 5. COOKIES AND ANALYTICS We only use essential technical cookies for your sign-in session. Usage statistics are collected with Umami (self-hosted, cookieless, no cross-site tracking). No profiling or third-party cookies. 6. HOW LONG WE KEEP DATA • Account and profile data: for as long as you keep your account. • Account deletion: permanently removes diary, symptoms, recipes, restrictions and contributions; the account is anonymised (email, signup IP and last sign-in removed). • Technical backups: kept for 14 days, then deleted automatically. • Technical logs: rotated automatically within a few days. 7. YOUR RIGHTS You have the right of access, rectification, erasure, restriction, portability and objection (Arts. 15-22 GDPR), plus the right to withdraw consent at any time. Directly from the app you can: download a complete copy of your data as JSON (Settings → "Download your data") and permanently delete your account (Settings → account deletion). For any other request write to pavel.filingeri00@gmail.com. You also have the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it) or your local supervisory authority. 8. SECURITY Argon2 password hashing, encrypted connections (HTTPS), database not publicly exposed, single-use expiring verification and recovery tokens, anti-abuse limits on the APIs. 9. MINORS The service is not intended for children under 16. If you believe a minor has provided us personal data, contact us for removal. 10. CHANGES If this notice changes substantially we will update the date above and, for relevant changes to health-data processing, ask for renewed consent.