Privacy Policy

Last updated: 2026-10-08

This policy explains what the Hello Pantry Telegram bot (@hello_pantry_bot) and its Mini App do with data.

The short version: there is no account and no password, because Telegram already knows who you are. What you write down is stored on one server so that it can be shown back to you, and it is used for nothing else. There is no analytics, no advertising, no profiling and no third party with a copy.

Who is responsible

Gabriele Proietti Mattia (https://gpm.name), reachable at apps@gpm.name, is the data controller. The server is in Germany.

What is stored

Everything below is stored because the bot cannot do its job without it, and nothing is stored that it can do its job without.

What is never stored

Open Food Facts

When you scan or type a barcode, the number may be looked up on Open Food Facts, a free, open database of food products. Only the barcode is sent: nothing that says who you are, which pantry it is for, or what else is in it. What comes back (name, brand, size, picture) is shown to you to confirm. Open Food Facts handles that request under its own privacy policy, not this one.

Email, licences and reports: apps-management

An email address is optional. The bot works, and Pro can be bought, without one.

If you choose to link one (you confirm it with a code sent to it), it is used with apps-management, the service that handles licences and feedback for the apps in this family. It is used for three things only: your licence, so that Pro can follow you to a new Telegram account (it is valid for one Telegram account at a time); the replies to the reports you send; and the votes you cast on the features still to be built. apps-management knows people only by a verified email and does not receive your Telegram id.

Two other things are recorded there whether or not you link an email:

Telegram’s part

You are talking to this bot through Telegram, and Telegram carries what you send. What Telegram does with that is covered by Telegram’s own privacy policy, not by this one.

Two consequences worth stating plainly:

Shared pantries

In a shared pantry the other members see its contents, your Telegram name, and who added or used up each thing. They are also sent a notification when you do, unless they have muted it. Only an owner can invite or remove people. Leaving a pantry, or being removed, ends your access to it.

The Mini App and the web app

The Mini App is a page served from https://hello-pantry-tg.gpm.name. It stores one thing in your browser: a note that you have seen the welcome screen. That note never leaves the device and is not readable by anyone else.

Inside Telegram, every request the Mini App makes carries the session Telegram signs for it, which is what proves the request is yours.

The web app at https://hello-pantry-app.gpm.name is the same page, opened in a browser, with a sign in of its own: a link sent to your email, Google, or the Telegram login button. It needs the same data, and keeps a session cookie in the browser so that you stay signed in until you sign out. Signing in with an email or with Google stores that address, or the Google account identifier, to recognise you the next time.

The page loads its fonts from Google Fonts, which means Google sees the request for those files. Nothing about you is sent with it beyond what any browser sends when it fetches a file.

Retention

What you keep in your pantry is kept until you delete it.

Settings → Delete all data, inside the bot, deletes your pantries, products and shopping lists permanently and immediately. It is not a request that gets processed: the rows are gone when the confirmation comes back. Your profile and the conversation itself survive, so the bot still works afterwards; deleting those too is a request to the address above.

Backups of the server exist for disaster recovery and are retained for a limited period. Data deleted from the live database is not restored from them.

Your rights

You may ask for a copy of your data, its correction, or its deletion, and you may object to its processing. One of those needs nobody’s help: Settings → Delete all data is the deletion. For anything else, write to apps@gpm.name.

You also have the right to complain to a supervisory authority.

Children

Hello Pantry is not directed at children and asks for nothing that would identify one.

Changes

This page carries the date it was last substantively changed. A change that affects what is collected will be said in the changelog as well, rather than only here.