Last updated: July 23, 2026
Zello is a personal health assistant: you manually log food, workout, sleep, water, weight, labs, supplements and medication data, and the app uses AI (Anthropic Claude and/or Google Gemini, depending on your choice) to cross-reference that information and return recommendations. This page explains what data is stored, what is sent to the AI, what is never saved, and who your data is shared with.
Login is done via Google OAuth. We store the name, email and profile photo Google provides.
Every new user starts as pending until manual approval by the administrator — there is no open self-signup.
Food (photo of your plate): the photo is compressed and saved (Vercel Blob), so you can review the entry later.
Label/nutrition facts: the photo is used only to extract the values and then discarded — never saved.
Labs: the lab photo is never saved. Only the extracted markers (text/numbers) and the AI's comment are stored.
Medications (prescription): the photo or PDF of the prescription is never saved. Only a text summary of what was identified is kept.
Supplements (composition photo): the label photo is used only to extract the composition table and then discarded — never saved.
Workout (photo OCR): the photo only fills in the workout description as text; the image itself is not saved.
Photos/PDFs received via "Share" from your phone sit in a temporary space only until processed, and are deleted right after.
We never send your raw history to the AI. Insights questions and diet/workout suggestions use an aggregated summary (last 7 days, profile, goals) — not a line-by-line export of your entries.
Labs and Medications (prescription) always use Anthropic (Claude), regardless of the provider you chose for the rest of the app, since they're more sensitive health data. Supplements (vitamins, label photo) follows your normally chosen provider.
If you set up your own API key (BYOK), processing runs with your key — the app doesn't use a shared key to read or pass your data to third parties beyond the AI provider chosen.
The "Tell us about your life" field (Profile) is summarized by AI once, when saved, into a few short factors — only that summary, never the original text, is sent in diet/workout/cardio suggestions and Insights. The original text stays saved only for you to reread and edit later, and follows the provider (Anthropic/Gemini) you chose — it isn't forced to use Anthropic like Labs/Medications.
Your Anthropic and/or Gemini API tokens are stored encrypted (AES-256-GCM) in the database — never in plain text. No one with database access can read your key directly.
Google: authentication (OAuth).
Anthropic / Google Gemini: AI processing, as described above.
Open Food Facts: the barcode scanner queries this public database only by product code — no personal data of yours is sent.
Vercel: app hosting, database (Neon), file storage (Blob) and aggregated usage metrics (Analytics/Speed Insights).
If you enable notifications, we store your device's subscription (the browser's technical endpoint) only to send alerts — no health data goes into the notification content beyond the alert text itself (e.g. "you missed logging sleep today").
Deleting a single record is done item by item, inside the module itself (with a 5-second undo).
If you're logged in and your account is approved, you can delete your entire account and all associated data with 1 click, below — immediate and permanent, no need to go through the administrator.
Banned or pending-approval users: request deletion via the contact email below.
Questions, data deletion requests, or any other privacy request: privacy@zello.ia.br