Effective Date: April 2026 | Version 2.0
Previously known as DietCare4All
1. Introduction and Identity of the Data Controller
This Privacy Policy describes how Practical Nutrition (formerly known as DietCare4All) collects, uses, stores, and protects the personal data of users of the Practical Nutrition mobile application (the “App”) and related services.
Business Name: Practical Nutrition – Nutrition Consulting Services
Data Controller: Nikos Tsamis
Contact Email: info@practicalnutrition.gr
App Name: Practical Nutrition (formerly DietCare4All)
Package Identifier: gr.iservices.dietcare
Technical Developer: iservices
Nikos Tsamis, operating under Practical Nutrition, is the Data Controller as defined under the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and applicable Greek data protection legislation. iservices acts as a Data Processor on behalf of the Data Controller for technical infrastructure and database management.
2. Scope of This Policy
This Privacy Policy applies to all users of the Practical Nutrition mobile application, available on the Google Play Store. It governs the personal data of clients registered by dietitian Nikos Tsamis as part of nutrition consulting and meal-tracking services.
Note on name change: The application was previously published under the name DietCare4All (package: gr.iservices.dietcare). It has since been renamed Practical Nutrition. This Privacy Policy supersedes any prior versions associated with the DietCare4All name. All references to data practices herein apply equally to the application under both its former and current name.
3. Personal Data Collected
The Practical Nutrition app collects and/or accesses the following categories of personal data:
3.1 Personal Identification Data
Full name
Email address
Phone number
Home or contact address
Note: Address, phone number, and email are not mandatory fields. A client profile can be created without providing this information.
3.2 Health and Biometric Data (Special Category Data)
The following data constitutes special category data under GDPR Article 9 and is treated with the highest level of protection:
Height
Weight
Age
Medical history (optional, not a mandatory field)
Meal photographs uploaded or captured through the app
Health data is collected exclusively for the purpose of providing personalised dietetic consultation and meal-tracking services. This data is never used for any other purpose.
3.3 Device Permissions
The app requests the following device permission:
Camera access: Required to allow users to photograph their meals for review and discussion during dietetic consultations.
No other device permissions (location, microphone, contacts, storage beyond meal photos) are requested by the app.
4. Purpose and Legal Basis for Data Processing
All personal data collected through the Practical Nutrition app is processed for the following specific and legitimate purposes:
Provision of dietetic services: To create and manage individual client profiles and track nutritional progress.
Meal tracking and review: To enable clients and their dietitian to photograph, record, and discuss food choices during consultations.
Health monitoring: To record and monitor health metrics such as weight and height over the course of the dietetic programme.
Communication: To contact clients regarding appointments or follow-ups, where contact details have been voluntarily provided.
Legal Basis: Processing of general personal data is based on the explicit written consent of the data subject (GDPR Article 6(1)(a)). Processing of special category health data is based on explicit written consent (GDPR Article 9(2)(a)). Consent is obtained in writing prior to the creation of any client profile and the collection of any data.
5. Consent
Prior to any data collection, clients are required to provide explicit written consent. This consent covers:
The collection and processing of their personal identification data.
The collection and processing of their health and biometric data (special category data).
The upload and storage of meal photographs.
Consent is freely given, specific, informed, and unambiguous. Clients are fully informed of the purposes of data collection before providing consent. Providing data for optional fields (address, phone, medical history) is subject to separate, distinct consent.
Clients have the right to withdraw their consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out prior to the withdrawal. To withdraw consent or request deletion of data, clients should contact: info@practicalnutrition.gr.
6. Data Storage and Location
All client data collected through the Practical Nutrition application is stored in a secure cloud environment managed by iservices, the technical developer and Data Processor.
Server Provider: Hetzner Datacenters
Storage Location: EU-based servers
Data Processor: iservices
Data is not stored on individual devices beyond the temporary use required for camera functionality. No client data is stored in spreadsheet files, local databases, or unprotected third-party platforms.
Access to client data is strictly limited to Nikos Tsamis (Data Controller) and iservices (Data Processor) solely for technical maintenance purposes. iservices does not access, process, or use client data for any purpose other than the technical operation of the application.
7. Data Sharing and Third Parties
Practical Nutrition does not sell, rent, trade, or otherwise share personal data with any third parties for commercial, marketing, or any other purposes.
Client data is not shared with:
Other healthcare providers or medical professionals
Analytics or advertising platforms
Insurance companies
Any other external organisations
The only exception is the technical access granted to iservices as Data Processor, strictly for the purposes of maintaining and operating the application infrastructure. iservices is contractually bound to process data solely on the instructions of the Data Controller and in compliance with GDPR.
8. Data Retention
Personal data is retained only for as long as necessary for the purposes described in this policy.
8.1 Retention Period
Client data is retained for the duration of the active client relationship. A client is considered active for as long as they are engaged in an ongoing dietetic programme with Practical Nutrition.
A client account is classified as inactive after a continuous period of 12 months without any recorded activity or consultation. Upon reaching this threshold, all personal data associated with that client profile is automatically deleted from the system within 30 days.
8.2 Automatic Deletion
An automated deletion process is implemented to permanently remove data from all storage systems after the inactivity threshold is reached. This includes personal identification data, health and biometric data, and all meal photographs.
8.3 Early Deletion on Request
Clients may request the deletion of their data at any time, regardless of whether their account is active or inactive (see Section 9 below).
9. Your Data Rights
As a data subject under GDPR, clients of Practical Nutrition have the following rights:
Right of Access (Art. 15): The right to request a copy of all personal data held about you.
Right to Rectification (Art. 16): The right to request correction of inaccurate or incomplete data.
Right to Erasure / Right to be Forgotten (Art. 17): The right to request immediate deletion of your personal data.
Right to Restriction of Processing (Art. 18): The right to request that processing of your data be restricted.
Right to Data Portability (Art. 20): The right to receive your data in a structured, machine-readable format.
Right to Object (Art. 21): The right to object to processing of your data.
Right to Withdraw Consent (Art. 7(3)): The right to withdraw consent at any time.
9.1 How to Exercise Your Rights
To exercise any of the above rights, clients should submit a request by email to:
info@practicalnutrition.gr
All requests will be actioned immediately upon receipt and confirmation of identity. Data deletion requests are processed manually by iservices upon instruction from Nikos Tsamis. There is no charge for exercising these rights.
10. Data Security
Practical Nutrition and iservices implement appropriate technical and organisational measures to protect personal data against unauthorised access, accidental loss, destruction, or disclosure. These measures include:
Secure cloud storage with access controls
Restricted access limited to the Data Controller and Data Processor only
Encrypted data transmission
Regular review of security practices
In the event of a personal data breach, the Data Controller will notify the Hellenic Data Protection Authority (HDPA) within 72 hours of becoming aware of the breach, in accordance with GDPR Article 33. Affected data subjects will be notified without undue delay where the breach is likely to result in a high risk to their rights and freedoms.
11. Children's Data
The Practical Nutrition application is intended for use by adult clients engaged in dietetic consultation services. The app is not directed at children under the age of 16. If a client profile is created for a minor, explicit written consent must be provided by a parent or legal guardian prior to any data collection.
12. Right to Lodge a Complaint
Clients who believe their data protection rights have been violated have the right to lodge a complaint with the competent supervisory authority:
Authority: Hellenic Data Protection Authority (Αρχή Προστασίας Δεδομένων Προσωπικού Χαρακτήρα – ΑΠΔΠΧ)
Website: www.dpa.gr
Address: Kifissias 1-3, 115 23 Athens, Greece
Phone: +30 210 6475 600
13. Updates to This Policy
This Privacy Policy may be updated periodically to reflect changes in our data practices, legal requirements, or operational procedures. When material changes are made, users will be notified through the application and/or by email. The effective date at the top of this document will be updated accordingly.
Continued use of the application following notification of changes constitutes acceptance of the updated policy.
14. Contact
For any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal data, please contact:
Data Controller: Nikos Tsamis
Business: Practical Nutrition – Nutrition Consulting Services
Email: info@practicalnutrition.gr
We are committed to responding to all data protection enquiries promptly and transparently.
Nikos Tsamis
Data Controller – Practical Nutrition
info@practicalnutrition.gr