Privacy policy
We get straight to the point: here's exactly what we touch, what we don't, and why.
Data controller
Maxime Ravoisier — contact@allociao.com. Site: allociao.com.
What we collect
Protection works without an account. Without your consent, we collect only this:
- A random anonymous identifier, generated on your phone at install. It's a string of characters with no link to you, your number or an account; its only purpose is to stop the same device artificially inflating the score of a reported number.
- The numbers you choose to report, with the reason. Reporting is voluntary: nothing is sent until you tap "Report".
What we don't collect: your phone number, your name, your email, your location, your contacts, your call log, the content of your texts. Call filtering is 100% local on your phone — the official ranges are embedded in the app.
One exception only, described just below: the messages you send us yourself to have checked, if you have agreed to it.
The messages you ask us to check (only if you agree)
Just above, we said we don't collect the content of your messages. Here is the one exception, and it only happens if you agree to it. When you ask the app to check a message — pasted text, an email, a link, a QR code — that message can be sent to us to improve scam detection. It only applies to messages you submit yourself: the ones the app spots on its own are never sent.
What it's for: to recognise a scam, you have to have seen real ones. A hundred real messages teach us more than a thousand made-up ones. What you share helps protect everyone better, you included. The analysis itself still happens on your phone.
It's your choice, and it's separate from everything else. The app asks you this question apart from the one about usage statistics: saying yes to one is not saying yes to the other. Nothing is sent before you have confirmed your choice. You can change your mind whenever you like, in the app's Settings. Saying no takes nothing away from you: the app protects you exactly the same. The legal basis for this is your consent (Article 6(1)(a) GDPR).
What is sent, and nothing else:
- The text of the message, as you submitted it. Beyond 4,000 characters, the end is cut off. If you have an image, a screenshot or a PDF checked, only the text read inside it is sent — never the file.
- What the app answered (safe, suspicious, dangerous) and the reasons for its answer, your phone's language, and the tool used (text, email, link, QR code…). That is what lets us see when it got it wrong.
- The anonymous identifier described above, the same one as for reported numbers. It doesn't say who you are: the app has no account, and your phone number is never sent to us.
What is never sent: the number or the name of the person who wrote to you, your contacts, your phone's identity. This isn't just a promise: our database has no field to put a sender in, and our server refuses any submission that contains one. One thing you should know, though: if the message itself contains a number or a first name ("call 07… back", "hi mum"), it is sent as it is, because that is precisely the text to be analysed.
How long we keep it. After 7 days, the anonymous identifier is erased from the message: nothing links it to a phone any more. After 12 months, the message is deleted. Both erasures are automatic, a clean-up runs every night. Your IP address is never kept as it is: it is turned into an unreadable fingerprint, kept just long enough to count one hour of submissions, then erased by the same clean-up. Its only purpose is to stop a robot flooding the service.
After that, once read and sorted by hand, some messages are copied into the file used to train and score the detection. That copy no longer contains any identifier. We keep it for as long as it is useful to the detection. It is never published, never shared and never sold to anyone.
Your rights. You can ask what we have received from you, have it corrected, have it deleted, and withdraw your agreement at any time. To have a specific message deleted, send us its text: we find it by its content, even with no identifier, and we erase it. One limit we would rather tell you plainly: after 7 days we have no way left of listing the messages that came from your phone — that is the other side of anonymity. We reply within 30 days at most, and you don't have to give a reason. Write to contact@allociao.com.
App usage statistics (opt-in)
Since version 1.6.9, the app can collect anonymous usage statistics (screens visited, features used) via Google Firebase Analytics — only if you explicitly accept it in the app. Without your consent, nothing is collected. You can change your mind at any time in Settings → Anonymous usage statistics.
These statistics never contain your number, your contacts, or the content of your messages, and are never used for advertising (the app doesn't use an advertising identifier). They are kept for a maximum of 2 months, then automatically deleted.
Delete your data
You can ask us to delete your data (usage statistics, reports, messages sent for checking) by writing to contact@allociao.com. We handle each request within 30 days, with no justification required.
What we never do
- In the app: no ads, no advertising network.
- No reselling or sharing of your data with third parties.
- In the app: no advertising tracking or tracking cookies (the website uses audience-measurement cookies and, with your consent, advertising cookies — see the Cookies section below).
- No access to your contacts, your call log or your texts.
Why
Reports are used to build a community database that complements the official ranges: when several people report the same number, we detect new cold-call or scam numbers, and protection improves for everyone.
Legal basis
The anonymous identifier relies on Allociao's legitimate interest in fighting abusive cold calling and fraud. Processing reports relies on your consent: you explicitly choose to report a number, and you're free not to.
Retention period
Reports are kept in pseudonymous form for as long as they remain useful to protecting the community. A number that hasn't been reported in 3 years is purged, or kept only in aggregated form. The anonymous identifier stays on your phone for as long as the app is installed and disappears when you uninstall it.
Hosting and data location
Data is hosted and processed in the European Union: server functions run in Paris (Vercel) and the database is hosted in the EU (Neon). These providers are US companies, but in normal operation of the service, no personal data is transferred outside the European Union.
Cookies and analytics
A technical cookie may remember your display language; it is strictly necessary for the site to work and exempt from consent.
To measure site traffic (page views, visits), we use Vercel Web Analytics: an anonymous, cookieless measurement that collects no personal data and can't identify you or track you from one site to another.
With your consent, we also use Google Analytics and Meta Pixel, which transmit data to Google and Meta for advertising purposes.
Your rights
In line with the GDPR and the French Data Protection Act, you have the rights of access, rectification, erasure, objection and withdrawal of consent.
To have a reported number removed: write to contact@allociao.com stating the number in question, and we'll remove it from the community database. For numbers coming from the official ranges themselves, the request falls to the regulator that publishes them.
You can also lodge a complaint with the CNIL.
Changes
This policy may change. Last updated: 30 July 2026.