Your privacy matters.
Last updated: March 3, 2026
Face Data Collection & Use
GlowUp AI uses your device camera to capture a single front-facing photo for skin health analysis. Here is exactly how your face data is handled:
- Collection: A single photo is captured using Apple's native camera framework (AVFoundation). No facial geometry, biometric identifiers, or face mapping data is collected. The photo is used solely for dermatological skin analysis (detecting concerns such as acne, dark spots, pores, wrinkles, and skin type).
- Processing: The photo is temporarily uploaded to our secure server and sent to our skin analysis service for processing. The analysis returns numeric skin health scores and text-based concern labels only.
- Deletion: Your photo is permanently deleted from our servers immediately after analysis completes, typically within seconds. Photos are deleted in all cases, whether the analysis succeeds or fails.
- No local storage: The photo is held in device memory only during the scan session. It is never saved to your device storage, photo library, or any local cache.
- No facial recognition: Your photo is never used for facial recognition, identity verification, or any purpose other than skin health analysis.
What We Store
After your skin analysis, only the following non-image data is saved on your device:
- Numeric skin health scores (e.g., hydration, clarity, texture, evenness).
- Text-based skin concern labels (e.g., "acne", "dark spots") and severity levels.
- Personalized skincare recommendations and routine data.
- Your skin profile preferences from onboarding (skin tone, skin type, concerns, goals).
- Product scan history and ingredient information.
This data is stored locally on your device. Deleting the app removes all GlowUp AI data from your device.
Third-Party Services
GlowUp AI uses the following third-party services to provide skin analysis:
- Skin Analysis API: Your face photo is sent to our skin analysis provider solely for dermatological analysis. The photo is processed and immediately discarded by the service. Only numeric scores and text labels are returned to the app.
- Secure Backend (Supabase): Used for user authentication (Apple Sign-In), temporary photo storage during analysis, and serverless function hosting. Photos are deleted immediately after processing.
- Apple StoreKit: Used for managing in-app subscriptions. Payment processing is handled entirely by Apple; we do not collect or store payment information.
We do not use any third-party advertising networks, analytics trackers, or data brokers.
Data Sharing
- Face photo: Shared only with our skin analysis provider for the sole purpose of dermatological analysis. The photo is not retained by the provider after processing.
- No selling of data: We never sell, rent, or trade your personal data to any third party.
- No advertising data: We do not share data with advertisers or ad networks.
Data Retention
- Face photos: Retained for the duration of a single analysis request only (typically 3 to 10 seconds). Permanently deleted from our servers immediately after analysis.
- Scan results: Stored locally on your device. Up to 12 scan history entries are kept. Older entries are automatically removed.
- Account data: If you sign in with Apple, your authentication session is managed by Supabase. You can delete your account at any time.
Your Rights & Choices
- You can deny camera access at any time through iOS Settings. The app will not capture photos without your explicit permission.
- You can delete all your data by uninstalling the app or clearing app storage.
- You can request deletion of any server-side data by contacting us.
- Each photo capture requires your explicit confirmation before analysis begins.
Security
- All data transmission uses HTTPS/TLS encryption.
- Photo uploads use authenticated, time-limited URLs.
- Local data is protected by your device's built-in security (passcode, biometrics, OS encryption).
Contact Us
If you have questions about this privacy policy or how your data is handled, contact us at laxmanshah45@gmail.com.