Last update: October 3, 2025
Last updated: October 26, 2025
At Zellium, we value your privacy as much as your wellbeing.
This Policy explains what personal data we collect, why we collect it, how we protect it, and the rights you have over it.
1. Data Controller
Zellium Labs S.L.
NIF: B23921778
Address: Camí Pla de la Torreta 2, 08392 Sant Andreu de Llavaneres (Barcelona), Spain
Main contact: contact@zelliumlabs.com
App support: info@zellium.app
Website: https://zellium.app
2. Data We Collect
- Account data – name, email, password (encrypted).
- App usage data – foods logged, symptoms, health habits, goals, AI-generated analyses.
- Technical data – device identifiers, operating system, app version, crash logs, performance metrics.
- Payment data – handled exclusively by the App Store or Google Play. We do not store card details.
- Communications – interactions with emails and push notifications (if enabled).
Health-related information is treated as a special category of data under the EU GDPR.
3. Purposes of Processing
We process your data in order to:
- Provide Zellium’s nutritional, digestive and cellular analysis features.
- Maintain your account and history across sessions and devices.
- Improve security, reliability and performance of the app.
- Send reminders or notifications if you have consented (you may disable them anytime).
- Manage subscriptions and billing through the App Store or Google Play.
- Comply with legal and accounting obligations.
4. Legal Basis (Articles 6 & 9 GDPR)
- Performance of a contract (Art. 6 (1)(b)): to create and operate your account.
- Consent (Art. 6 (1)(a) and 9 (2)(a)): for processing health data, habits, notifications and analytics. You may withdraw consent at any time.
- Legal obligation (Art. 6 (1)(c)): for invoicing and tax compliance.
- Legitimate interest (Art. 6 (1)(f)): for app security and quality improvement, with minimal privacy impact.
5. Data Recipients and Service Providers
We work with trusted processors strictly bound by data-protection agreements:
- Infrastructure / Analytics: Google Firebase (authentication, database, crash reporting, metrics).
- AI Services: OpenAI (generation of nutritional insights based on your inputs).
- Payments / Distribution: Apple App Store and Google Play.
All providers comply with the EU GDPR or offer equivalent safeguards.
6. International Transfers
Some providers may process data outside the EEA (e.g., U.S.).
When that occurs, Zellium Labs S.L. applies the European Commission’s Standard Contractual Clauses and additional security measures to ensure adequate protection.
7. Data Retention
- Account & usage data: kept while your account remains active, or up to 24 months after last activity (unless deletion is requested).
- Technical logs: up to 12 months.
- Billing records: 6 years (as required by Spanish law).
After these periods, data is deleted or irreversibly anonymized.
8. Your Rights
You may exercise the following rights at any time: access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
To do so, email contact@zelliumlabs.com or use the in-app Support section.
If you believe your data has not been handled properly, you can lodge a complaint with the Spanish Data Protection Agency (AEPD) – www.aepd.es.
9. Minors
Zellium is intended for users aged 16 or older.
If you are between 13 and 16, parental or guardian consent may be required under local law.
Accounts that do not meet this requirement will be disabled and deleted.
10. Security
We apply robust technical and organizational measures such as encryption (in transit and at rest), access control, logging, and backups.
No system is completely immune—please use strong passwords and keep your devices updated.
11. Artificial Intelligence and Data Accuracy
Zellium uses artificial-intelligence models to generate personalized analyses.
While designed to be accurate, AI output may contain errors or omissions.
All content is educational and not a medical diagnosis or treatment. Always consult a qualified professional for health decisions.
12. Advertising and Data Use
Zellium contains no third-party advertising and never sells personal data.
Your information is used solely to operate and improve the app as described here.
13. Managing Your Privacy
- Edit / delete data: within your in-app profile.
- Download / port data: email a request to contact@zelliumlabs.com.
- Delete account: available directly in the app or via email request.
- Notifications: disable anytime in your device or app settings.
14. Changes to This Policy
We may update this Policy from time to time to reflect improvements, new services, or regulatory changes.
If changes are material, we’ll notify you within the app or by email before they take effect.
