🥦Ndiro

What Ndiro stores

Your meal descriptions, optional context notes, fiber amounts, optional meal photos, and your account's email and name — from Google if you sign in with Google, or the ones you typed at signup for email/password accounts. Email/password accounts additionally store account-security metadata: a salted hash of your password (never the password itself), hashed one-time verification/reset tokens while a link is outstanding, and a failed sign-in counter for the lockout. It is all stored in the operator's AWS account (DynamoDB and a private S3 bucket). The app also sends the occasional account email to the address on file: verification and password-reset links for email/password accounts, and — whichever way you sign in — a short notice if someone enters your address in the signup or reset form.

Who can see your data

AI estimates

If you use the fiber estimator, the meal description or photo you submit is sent to OpenAI to compute the estimate, on the operator's API key. Estimates are capped per user per day.

Ground rules

Deleting your data

You can delete your account yourself in Settings. That permanently removes your meals, your photos, your share links, and your account record — everything goes with it.

🏠