This Privacy Policy describes how Pavel Stoma ("we", "us", or "our") collects, uses, stores, and discloses information when you use our mobile application ("Application") and related services (collectively, the "Services").
We are committed to protecting your privacy and handling your personal information transparently. This Privacy Policy explains what information we collect, how we collect it, why we use it, which service providers may receive it, and how long different categories of information are retained.
We may collect the following types of information depending on how you use our Services.
When you use an image or AI-powered feature, you may choose to provide a photograph. The photograph may contain your face or the faces of other people. The face-related information processed for this feature is the visual information contained in the photograph you submit.
We do not ask you to provide a separate facial scan. We do not intentionally create or maintain a separate database of facial biometric identifiers, face templates, or face embeddings from the photographs as part of this feature.
Photos are used only to provide the feature for which you submitted them. We do not use submitted photos or face information for advertising, behavioral profiling, or marketing.
When you use the Application, we may automatically collect certain information such as:
We do not collect precise location data, financial information, or other personally identifying information unless you explicitly choose to provide it.
We use collected information to:
We do not sell, rent, or trade your personal information.
Certain features of the Application use the OpenAI API to process photographs and provide AI-generated results.
When you choose to use an AI-powered feature, the photograph you submit for that feature is transmitted for processing. The photograph may contain your face or another person's face. Depending on the feature, related instructions or text necessary to process the image may also be transmitted.
The photograph is first transmitted to our backend infrastructure and may be temporarily stored in an Amazon Web Services (AWS) S3 storage location while the request is being processed. Our backend then sends the required image data to OpenAI through the OpenAI API.
OpenAI is a third-party service provider used solely to provide the requested AI processing. We do not send photographs to OpenAI for advertising, marketing, or user profiling.
Before the Application sends a photograph to the third-party AI service for the first time, the Application presents a separate in-app disclosure explaining that the photograph will be temporarily uploaded to our server and sent to OpenAI for AI processing. The disclosure identifies the type of information being sent and the recipient. You must choose to continue before the photograph is transmitted for that AI feature.
Acceptance of this Privacy Policy or the Terms of Service does not, by itself, replace this feature-specific permission prompt.
We use the OpenAI API and configure our API usage so that, unless otherwise stated by OpenAI for a particular service or endpoint, API inputs and outputs are not used by OpenAI to train or improve its models by default. OpenAI may retain API inputs and outputs for up to 30 days for service operation and abuse monitoring, subject to applicable exceptions and the specific OpenAI service and data-processing terms applicable to our account.
For current information about OpenAI's handling of API data, please see OpenAI Business Data Privacy and OpenAI Enterprise Privacy.
Photos submitted for AI processing are not intended to be permanently stored by us. A temporary copy may be stored in Amazon Web Services (AWS) S3 storage while the request is being processed.
The temporary photo stored in our AWS infrastructure is deleted after the processing request is completed. We do not retain the submitted photograph in our application database for ongoing use, advertising, profiling, or unrelated purposes.
If a processing request fails, temporary files are subject to deletion and are not retained for an unrelated purpose. Our temporary storage is intended only to support the processing of the requested feature.
After the photograph has been transmitted to OpenAI, OpenAI may retain API inputs and outputs for up to 30 days under its applicable API data retention practices, unless a different retention period or eligible zero-data-retention arrangement applies to the relevant service or endpoint, or retention is required by law.
Accordingly, while we delete the temporary copy from our own storage after processing, deletion from our infrastructure does not necessarily mean that the same data is immediately deleted from a third-party processor's systems.
We use selected third-party service providers to operate and improve the Services. These providers may process information on our behalf only as necessary to provide their services.
We do not sell your personal information to these providers. Where a provider processes personal information on our behalf, we require appropriate confidentiality and data-protection obligations consistent with the purpose for which the information is provided.
Some service providers may process information outside your country of residence. Where applicable, we use appropriate contractual or other lawful safeguards for international transfers.
Personal information is retained only for as long as reasonably necessary to provide the Services, fulfill the purposes described in this Privacy Policy, resolve disputes, enforce our agreements, and comply with applicable legal obligations.
Different categories of information may have different retention periods. In particular, photos submitted for AI processing are treated as temporary processing data as described in Section 4, while OpenAI's retention of API inputs and outputs is governed by the applicable OpenAI API terms and retention policies described in Section 3.
Depending on applicable law, you may have rights to access, correct, delete, restrict, or object to certain processing of your personal information, as well as rights to data portability.
You may request deletion of personal information we hold about you by contacting us at:
Please note that information already processed by a third-party service provider may also be subject to that provider's applicable retention, deletion, security, and legal policies.
We use reasonable technical and organizational measures designed to protect personal information against unauthorized access, alteration, disclosure, or destruction. No method of transmission or storage can be guaranteed to be completely secure.
The Services are not intended for children where use of the Services is prohibited by applicable law. We do not knowingly collect personal information from children in violation of applicable law. If you believe that a child has provided personal information to us, please contact us so that we can take appropriate action.
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the "Last updated" and "Effective date" above. Where required by law, we will also provide additional notice or obtain consent.
If you have any questions or concerns about this Privacy Policy or our processing of personal information, please contact us: