Avatify Privacy Policy
Introduction
Avatify ("we," "us," or "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application "Avatify" (the "App"). By using the App, you agree to the terms of this policy. This policy complies with the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and Apple App Store requirements.
Data We Collect
User-Provided Data
- Photos: Images uploaded by users to create an AI avatar. These are used exclusively for AI model training to personalize avatar generation. Photos are stored securely and automatically deleted after 48 hours.
- Facial Feature Data: Derived from uploaded photos during AI training. This data is stored as part of a personalized trained model used solely for generating images for the user. It is never shared with third parties and is deleted 90 days after a user's subscription expires, or earlier upon user request.
- Generated Images: Final AI-generated avatars are stored on the user's device. Copies on our servers are deleted automatically after 30 days.
- User Feedback: If a user marks a generated image as "inaccurate" within the App, we may temporarily access that image solely for the purpose of quality assurance and improvement of our image generation system. These images are reviewed in aggregate to identify and resolve generation issues. They are not shared with third parties and are deleted once they are no longer needed for this purpose.
- Unique Advertising Identifier (IDFA/AAID): Used for analytics and advertising purposes.
Automatically Collected Data
- Device Information: Device type, OS version, and IP address.
- Usage Data: Interaction metrics such as session duration and features used.
How We Use Your Data
- Service Delivery:
- To generate and personalize your AI avatar.
- To train AI models using your uploaded photos.
- User Feedback Processing: To review images marked as inaccurate and improve generation quality.
- Analytics: To improve App functionality via Google Analytics and Meta Ads.
- Advertising: To deliver targeted ads via Google Ads and Meta Ads.
- Legal Compliance: To comply with regulatory and legal obligations.
Third-Party Services
We share data only as necessary to support core App functionality:
- Replicate: For facilitating image generation.
- Supabase: For secure database management.
- Upstash: For caching and rate-limiting.
- Google Analytics / Meta Ads: For app usage analytics and ad targeting. No face data is used for these services.
Data Retention
- Source Photos: Automatically deleted 48 hours after upload.
- Generated Images: Stored on user devices. Copies on our servers are deleted automatically after 30 days.
- Marked "Inaccurate" Images: May be temporarily retained for diagnostic and improvement purposes and deleted when no longer necessary.
- Facial Feature Data (Trained Model): Deleted 90 days after subscription expiration or earlier upon user request.
- Aggregated Analytics Data: Retained for up to 24 months.
Users may request earlier deletion of any data by contacting us at [email protected].
Your Rights
GDPR (EU Users)
You have the right to:
- Access, correct, or delete your personal data.
- Restrict or object to processing.
- Data portability.
CCPA (California Users)
You have the right to:
- Opt out of the sale of personal data (note: we do not sell data).
- Request access to or deletion of your personal data.
To exercise these rights, contact us at [email protected].
Children's Privacy
The App is not intended for users under the age of 13 (or 16 in the EU). We do not knowingly collect personal data from minors. If we discover that we have inadvertently collected data from a child, we will promptly delete it.
Security Measures
We implement strong security measures to protect your data, including:
- Encryption in transit (TLS) and at rest.
- Regular security audits.
- Access controls to limit internal access to sensitive information.
Updates to This Policy
We may update this Privacy Policy periodically. We will notify users of any material changes via in-App alerts or email.
Contact
NA2 – Seweryn Maciejewski
M.Dabrowskiej 13/44, 39-400 Tarnobrzeg, Poland
VAT ID: PL8672240878
Email: [email protected]