Privacy Policy of Nomello
Last updated: 18 July 2026
This Application generates pet name suggestions from a photo. It collects some Data from its Users, described below. The short version: there is no account, no advertising, no analytics and no tracking; your pets, their photos and your favourite names stay on your device.
Owner and Data Controller
Nomello app
Owner contact email: info@nomello.app
Types of Data collected
The types of Data that this Application handles, by itself or through third parties, are:
- the pet photo selected by the User when requesting names (processed transiently, never stored for this purpose);
- a randomly generated, anonymous device identifier;
- family vote Data: the pet photo, the candidate names, and each voter's anonymous device identifier together with the chosen name and, if the voter types one, a short nickname shown to the person who started the vote;
- pet page share Data: the pet photo, the chosen name and its short description;
- feedback Data: the text of a "Suggest a feature" message or of a name report, together with the device identifier, app version, platform and language;
- crash Data, collected with personal information disabled;
- Usage Data: technical request metadata recorded by the server infrastructure, such as IP addresses, timestamps and response codes.
No other Data is collected. This Application does not request or process names, email addresses, phone numbers, contacts, location, advertising identifiers or usage analytics. Users are not required to provide any Personal Data to use the Application; the photo and the optional features above are supplied by the User's own choice.
For transparency: the Owner keeps anonymous, aggregate daily totals of feature usage (for example, how many name generations happened on a given day). These are plain counts with no identifier attached; they cannot be linked to any User or device and are not Personal Data.
Mode and place of processing the Data
Methods of processing
The Owner processes Data with computers and IT-based procedures, following organisational and technical measures intended to prevent unauthorised access, disclosure, modification or destruction of the Data. Processing is fully automated; no staff other than the Owner has access to anything. In some cases, Data may be accessible to external providers appointed as Data Processors (such as the hosting and infrastructure providers listed in the detailed section below).
Place
The Data is processed on Amazon Web Services infrastructure located in the European Union. It does not leave the EU.
Retention time
- Pet photo sent for name generation: not retained, processed on the fly.
- Daily usage counters tied to the device identifier: deleted automatically each day.
- Family votes and shared pet pages: deleted automatically after 14 days, or earlier when the User removes them in the app.
- Feedback and name reports: stored without an automatic expiry, kept as long as needed to act on them and to improve the name quality, deleted on request.
- Crash Data: 90 days (Sentry's standard retention).
- Usage Data / system logs: 14 days.
The purposes of processing
The Data is processed so that the Owner can provide the Service, comply with legal obligations, respond to enforcement requests, protect the rights and interests of the Owner and the Users, detect malicious or fraudulent activity, and monitor the infrastructure. Specifically: generating name suggestions from the photo, enforcing a fair daily usage limit, running family votes and shared pet pages, reading feedback, fixing crashes and preventing abuse.
Detailed information on the processing of Personal Data
Personal Data is processed for the following purposes and using the following services:
AI name generation
When the User requests names, the selected photo is downscaled on the device, sent to the Owner's backend and forwarded to an AI model to produce the suggestions. The photo is processed transiently and never stored by the backend; after the response, it exists only on the User's device.
Personal Data processed: the pet photo; the taste options selected in
the app.
Service provided by: Amazon Web Services EMEA SARL (Amazon Bedrock, EU
region).
Hosting and backend infrastructure
The backend that receives requests, applies the daily limit and stores the temporary vote and share content runs on Amazon Web Services in the European Union.
Personal Data processed: the anonymous device identifier; daily usage
counters; Usage Data; the temporary vote and share content described below.
Service provided by: Amazon Web Services EMEA SARL (EU region).
Infrastructure monitoring (crash reporting)
This Application uses Sentry to be notified of crashes and errors. Personal information is disabled in the reports: a crash report describes what the app was doing, not who the User is. There are no analytics and no behaviour tracking of any kind.
Personal Data processed: crash and error Data, with PII collection
disabled.
Service provided by: Sentry (Functional Software, Inc.), with Data
stored in the EU.
The family vote
If the User starts a family vote, the pet's photo and the candidate names are stored on the Owner's server, in the EU, so invited people can view them and vote. When someone votes, their device's anonymous identifier and the chosen name are also kept, purely to prevent double voting. The vote lives behind an unguessable link, is excluded from search engines, and is deleted automatically after 14 days, or earlier if the User ends the vote or deletes the pet in the app. Users can also request immediate deletion by email.
Personal Data processed: the pet photo; candidate names; voters' anonymous device identifiers, their choices and the optional nickname each voter types.
Sharing a pet page
If the User shares a pet's page, the photo, the chosen name and its short description are stored on the Owner's server, in the EU, so the link works for its recipients. The same rules as the vote apply: an unguessable link, excluded from search engines, deleted automatically after 14 days, or earlier if the User deletes the pet in the app.
Personal Data processed: the pet photo; the chosen name and its short description.
Feedback and name reports
If the User sends a "Suggest a feature" message, the text is stored together with the device identifier, app version, platform and language, and reaches the Owner by email. Users should not include personal details; they are not needed. If the User reports an inappropriate name, the name, the selected reason and a few generation details (species, vibe, tone, language) are stored with the device identifier to improve the generator, never the photo. Either can be deleted on request by email.
Personal Data processed: the message or report text; the anonymous device identifier; app version, platform and language.
Further information for Users in the European Union
Legal basis of processing
The Owner processes the Data above on one of the following legal bases:
- performance of the Service requested by the User (contract): generating names from the photo, running a family vote, serving a shared pet page, handling feedback the User chose to send;
- legitimate interest of the Owner in keeping the Service fair, secure and working: the device identifier and daily counters (rate limiting), Usage Data and system logs (abuse prevention and maintenance), crash Data (fixing bugs) and name reports (improving the generator).
No processing is based on consent today, because there is nothing that requires it: no advertising, no analytics, no marketing. Processing may also occur where necessary to comply with a legal obligation.
Further information about retention time
The concrete retention periods are listed in "Retention time" above. Once a retention period expires, the Data is deleted and the rights of access, erasure, rectification and portability can no longer be exercised over it.
The rights of Users based on the General Data Protection Regulation (GDPR)
Users may exercise the following rights, at any time and free of charge:
- access their Data and obtain a copy;
- verify its accuracy and ask for it to be corrected;
- obtain its erasure;
- restrict its processing;
- object to processing carried out on the basis of legitimate interest;
- receive their Data in a structured, commonly used and machine-readable format and have it transmitted to another controller, where technically feasible;
- lodge a complaint with their data protection authority. In Italy this is the Garante per la protezione dei dati personali.
Details about the right to object to processing
Where Data is processed on the basis of legitimate interest, Users may object at any time on grounds relating to their particular situation, and the Owner will stop unless overriding legitimate grounds exist. Since this Application does no direct marketing, there is no marketing processing to object to.
How to exercise these rights
Send a request to info@nomello.app. Requests are free of charge and answered as early as possible, always within one month. One honest caveat: because the Data is anonymous, in most cases the Owner could not identify "your" Data even on request, which is the point of the design. Where action is possible, for example on an open vote, a shared page or a feedback message the User points to, it will be taken.
Additional information about Data collection and processing
Legal action
The User's Data may be used for legal purposes by the Owner in court or in the stages leading to possible legal action arising from improper use of this Application or the related Service, and may be disclosed to public authorities upon lawful request.
Additional information about User's Personal Data
Everything not listed above stays on the User's phone: pets, generated names, favourites, settings. It is stored locally, never uploaded, and deleting the app deletes it. The app requests camera or gallery access only when the User taps to take or pick a photo, uses it only for that, never in the background, and the permission can be revoked at any time in the phone's settings. There is no advertising; if a future version adds ads, this policy will be updated first and consent will be requested where the law requires it. The nomello.app website sets no cookies, runs no analytics and embeds no trackers.
System logs and maintenance
For operation and maintenance purposes, this Application and its infrastructure providers collect system logs: files that record interactions with the servers and may contain IP addresses. They are kept for 14 days and used only for security and diagnostics.
Information not contained in this policy
More details concerning the collection or processing of Personal Data may be requested from the Owner at any time using the contact information above.
Changes to this privacy policy
The Owner may change this privacy policy at any time by publishing the new version on this page, with the updated date at the top. If a change ever concerned processing based on consent (for example advertising), the app would collect that consent before anything else happens.
Definitions and legal references
Personal Data (or Data): any information that directly, indirectly or
in connection with other information allows for the identification of a natural person.
Usage Data: information collected automatically by the infrastructure,
such as IP addresses, request times and response codes.
User: the individual using this Application.
Data Controller (or Owner): the person who determines the purposes and
means of the processing of Personal Data, reachable at the contact email above.
Data Processor: a provider that processes Data on behalf of the Owner,
such as the services listed in the detailed section.
This Application: the Nomello mobile app and the nomello.app website.
Service: the pet name generation and sharing features this Application
provides.
European Union (or EU): unless otherwise specified, all references to
the EU include all current member states of the European Union and the European
Economic Area.
This privacy statement has been written to be read by humans. Questions are welcome at info@nomello.app; a real person reads them, the same one who built the app.