Privacy policy

Last updated : 1er juin 2025

Atlo SAS is committed to protecting your privacy. This policy explains how we collect, use and protect your personal data when you use atlo.app.

1. Data collected

When you use Atlo, we collect the following data:

- Account data: email address, username. - Health data you voluntarily enter: weight, goals, meals, workouts, daily steps. - Usage data: pages visited, actions performed in the app, session duration. - Technical data: device type, operating system, anonymized IP address.

We never collect health data from third-party sources without your explicit consent.

2. How we use your data

Your data is used to:

- Provide the service: display your dashboard, calculate your calorie balance, generate AI coach recommendations. - Improve the product: analyze aggregated usage trends to improve the interface and algorithms. - Communicate with you: notification emails (launch, product updates) if you joined the waitlist.

Your health data is never sold, shared with third parties, or used for advertising purposes.

3. Legal basis

The processing of your data is based on:

- Contract performance for data necessary to operate the service. - Your consent for marketing communications (waitlist, newsletter). - Our legitimate interest for product improvement and service security.

You may withdraw your consent at any time.

4. Data retention

Your data is retained as long as your account is active. If you delete your account, your data is anonymized or deleted within 30 days. Technical logs are retained for a maximum of 90 days.

5. Your rights

Under the GDPR, you have the following rights:

- Access: obtain a copy of your data. - Rectification: correct inaccurate data. - Erasure: request deletion of your data. - Portability: receive your data in a structured format. - Objection: object to the processing of your data.

To exercise these rights, contact us at privacy@atlo.app. We will respond within 30 days.

6. Cookies

Atlo only uses cookies strictly necessary for the operation of the service (authentication, security). No advertising or tracking cookies are used. No consent banner is required as we do not use cookies subject to consent.

7. Security

We implement technical and organizational measures to protect your data: encryption in transit (TLS 1.3), encryption at rest, strong authentication, access monitoring. In the event of a data breach, we will inform you within 72 hours in accordance with the GDPR.

8. Contact

For any questions about this policy or how we process your data, contact us at privacy@atlo.app or by mail at Atlo SAS, 128 rue La Boétie, 75008 Paris, France.

You also have the right to file a complaint with the CNIL (www.cnil.fr) or your local data protection authority.