Data controller: ShereOn Group OÜ · Registry code 17560022 ("we"). Address: õõtsa tn 5, 11415 Tallinn, Estonia. Questions about data and requests about your rights: [email protected].
| Category | What exactly | Why |
|---|---|---|
| Account | email, name, password hash (we don't know the password itself), registration date, last activity, the date and version of your consent | sign-in, security, contacting you |
| Profile and health | sex, age, height, weight, target weight, activity, sleep, water, waist, body fat %, stress, blood type, supplements, allergies, eating style, dislikes, favorites, cooking time, budget, country, household (names and restrictions of family members), "what's at home" | calculating targets and personal tips; safe recommendations that take allergies into account. This may be health data — which is why we need your explicit consent |
| Food entries | dish names, ingredients and portions, calories and nutrients, time, how you felt after eating, saved dishes, shopping list, menu, scanned products | the diary, tips, the weekly overview |
| Photos and text for AI | photos of food, restaurant menus or labels and your text descriptions — only for the duration of the request | recognition. We don't store the photos themselves; only the analysis result is stored |
| Payment | Stripe customer and subscription identifiers, plan and validity period. We never see or store your card | access to paid features |
| Telegram (optional) | chat identifier when you link the bot; photos and messages you send to the bot | adding entries from Telegram |
| Technical data | IP address and request times in server logs, session user-agent, AI call log (type, token count, cost, errors — without the content of photos and texts) | security, abuse protection, cost accounting |
| Barcode products | when you photograph the label of a product that is not in Open Food Facts, the name, ingredients and figures from the label (not the photo itself) are stored under the barcode in the shared Hroomy product database and are visible to other users. Your name and email are not shown to others; we keep only an internal link to your account so we can remove wrong entries, and it disappears when you delete your account (the product record itself stays) | so the next person with this barcode finds the product at once |
| Anonymous analytics | page views and actions in the app (for example “entry added”, “pricing opened”): time, page, where you came from (domain and utm tags), device and browser type, language, action name. No content of dishes or texts. To count unique visitors we use a daily anonymised hash (IP + browser + a random daily salt) — the IP address itself is not stored in analytics and no cookies are set | understand which features are useful, where users get stuck, and improve the service |
Only the providers needed to run the service, and only to the extent required for a specific feature:
| Provider | What it receives |
|---|---|
| Anthropic (Claude AI) | photos and texts for recognition, your profile restrictions and the day's data for tips. Without your name and email |
| Stripe | email and payment details to set up and manage the subscription |
| Resend | email address and the text of service emails (welcome, password recovery) |
| Telegram | bot messages, if you use it |
| USDA FoodData Central, Open Food Facts | only ingredient names and product barcodes — not linked to you |
| DeepL | only product names and ingredient texts for translation — not linked to you |
| Server hosting provider | stores the data on a server managed by the operator |
Some of these providers may process data outside your country, including outside the EU/EEA; they do so under their own data processing terms and standard safeguards. We don't sell data and don't pass it to advertising networks.
You can: get a copy of your data (Profile → "Download my data"), correct it in the app, delete your account together with all data (Profile → "Delete account"), withdraw consent, restrict or object to processing, and lodge a complaint with the data protection authority in your country. If you can't do something yourself, write to [email protected] and we'll reply within 30 days.
We use one strictly necessary session cookie (hroomy_session, httpOnly), without which sign-in is impossible, and a small preference cookie for the interface language (zl). There are no advertising or third-party analytics cookies or trackers; our own analytics works without cookies. The browser may briefly remember the plan you chose before signing up (sessionStorage) and your language choice (localStorage).
Passwords are stored only as a strong hash (scrypt), the connection is protected by HTTPS, and access to the database is restricted. No system is 100% secure; if a breach affecting you occurs, we will notify you and the supervisory authority within the periods required by law.
Hroomy is intended for people aged 16 and over. We knowingly do not collect data from younger users. If you learn that a child has registered, write to us — we will delete the account.
Hroomy gives general food tips and does not diagnose. Estimates from photos and data from open databases may be inaccurate or outdated; with an allergy, always check the ingredients on the package. More in the Terms of Use.
We use only necessary cookies (session, language) — no advertising and no third-party analytics (our own analytics is cookieless). More: cookie policy.
If we change the policy materially, we will tell you in the app or by email. The current version is always here, with the date at the top.