Privacy Policy

Last updated: August 28, 2025 | Effective date: August 28, 2025

Introduction

At SkinPal AI ("we," "our," or "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and web services (collectively, the "Service").

By using SkinPal AI, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this privacy policy, please do not access the Service.

What We DO NOT Collect

⚠️ Important Clarification

  • We do NOT use Face ID or any biometric authentication technology
  • We do NOT collect biometric data of any kind
  • We do NOT perform face scanning for authentication purposes
  • We ONLY capture regular photos using your device camera

SkinPal AI works exclusively with standard photographs that you take with your camera. These are regular image files (like any photo on your phone), not biometric scans or Face ID data.

Information We Collect

1. Personal Information

  • Email address (when you create an account)
  • Name (if provided)
  • Profile information (age, gender, skin type - optional)
  • Authentication data from Google or Apple Sign-In

2. Facial Photographs (NOT Face ID)

  • Standard camera photographs that you voluntarily take for skin analysis
  • Extracted skin metrics from photos including:
    • Hydration levels
    • Texture patterns
    • Pore visibility
    • Acne detection
    • Dark spots and pigmentation
    • Overall skin tone uniformity
  • Skin analysis history and progress tracking
  • Skincare routine information (if provided)

📸 We Use Photos, NOT Face ID

SkinPal AI does NOT use Face ID or biometric authentication. We only analyze regular photographs taken with your camera.

These are standard image files (JPEG/PNG) - the same as any photo in your camera roll. We process these photos using AI to extract skin health metrics. Your photos are encrypted and stored securely. We NEVER share your photos with third parties.

To delete your photos and data: Email [email protected]

3. Usage Data

  • App usage patterns and frequency
  • Features accessed
  • Device information (type, OS version)
  • IP address (for security and analytics)

How We Use Facial Photographs (Not Face ID)

Your camera photographs are analyzed by AI exclusively for:

  • AI-powered skin condition analysis to detect issues like acne, dryness, and uneven texture
  • Progress tracking by comparing photos over time to show skin improvements
  • Personalized skincare recommendations based on detected skin conditions
  • Daily skin health score calculation based on analyzed metrics

🔒 Photo Protection Commitment

Remember: We analyze regular photos, NOT biometric data or Face ID.

  • Photos are NEVER shared with third parties
  • Photos are stored securely on our servers with encryption
  • Only you have access to your photos through your authenticated account
  • Photos are retained as long as you maintain an active account
  • All photos are permanently deleted within 30 days of account deletion
  • To request deletion: Email [email protected]

How We Use Your Information

We use your information to:

  • Provide AI-powered skin analysis
  • Track your skin health progress over time
  • Personalize recommendations based on your skin type
  • Improve our AI algorithms and Service quality
  • Communicate with you about your account and updates
  • Ensure security and prevent fraud
  • Comply with legal obligations

How We Protect Your Data

  • End-to-end encryption for all data transmission
  • Secure cloud storage with industry-standard encryption
  • Regular security audits and updates
  • Limited access to personal data (need-to-know basis)
  • Automatic data anonymization for AI training
  • Secure authentication through trusted providers

Your Rights and Choices

You have the right to:

  • Access - Request a copy of your personal data
  • Correction - Update or correct inaccurate data
  • Deletion - Request deletion of your account and data
  • Portability - Export your data in a machine-readable format
  • Opt-out - Unsubscribe from marketing communications
  • Restrict - Limit how we process your data

📧 Data Deletion Requires Email Request

For security reasons, data deletion MUST be requested via email.

We cannot delete data directly through the app. To request deletion of your account and all photos:

  1. Send an email to: [email protected]
  2. Include "Data Deletion Request" in the subject line
  3. Provide your registered email address
  4. We will confirm receipt within 48 hours
  5. Your data will be completely deleted within 30 days

⚠️ Warning: Deletion is permanent. You will lose all your photos, skin analysis history, and progress data. This cannot be undone.

Data Retention and Deletion

Photo Retention (Not Face ID Data)

  • Active accounts: Camera photos retained as long as your account is active
  • Account deletion: All photos permanently deleted within 30 days of email request
  • No third-party retention: Photos are never shared or retained by third parties
  • No biometric data: We don't store Face ID or any biometric information
  • Deletion request: Must be made via email to [email protected]

Other Data Retention

  • Active account data: Retained while your account is active
  • Deleted account data: Removed within 30 days of deletion request
  • Anonymized analytics: May be retained indefinitely for improvement
  • Legal compliance: Some data may be retained as required by law

Third-Party Services

We use the following third-party services:

  • Supabase - Database and authentication
  • Google Analytics - Usage analytics (anonymized)
  • Google/Apple Sign-In - Secure authentication
  • Cloud Storage - Secure photo storage

These services have their own privacy policies. We only share necessary data for service functionality.

Children's Privacy

SkinPal AI is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately at [email protected].

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data in accordance with this privacy policy.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. For significant changes, we will notify you via email or in-app notification.

Frequently Asked Questions

Q: Does SkinPal AI use Face ID?

No. SkinPal AI does NOT use Face ID or any biometric authentication. We only use regular camera photos for skin analysis. These are standard image files (JPEG/PNG), not biometric scans.

Q: Is my biometric data collected?

No. We never collect biometric data of any kind. We only analyze regular photographs that you take with your camera. No face scanning, no Face ID, no biometric authentication.

Q: How do I delete my photos and data?

Email us at [email protected] with "Data Deletion Request" in the subject line. For security reasons, we require email verification before deleting any data. We cannot delete data directly through the app.

Q: What happens to my photos after deletion?

All your photos and associated data are permanently deleted from our servers within 30 days of your email request. This deletion is complete and irreversible.

Q: Are my photos shared with anyone?

Never. Your photos are never shared with third parties. They are stored securely on our encrypted servers and only you have access to them through your authenticated account.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: [email protected]

Response Time: We aim to respond within 48 hours

Legal Compliance

This Privacy Policy is designed to comply with applicable privacy laws including:

  • General Data Protection Regulation (GDPR) - EU
  • California Consumer Privacy Act (CCPA) - California, USA
  • Personal Information Protection and Electronic Documents Act (PIPEDA) - Canada
  • Other applicable regional privacy laws