FaceLens Privacy Policy
Last updated: September 15, 2026
FaceLens ("we," "our," "the app") analyzes photos you take to offer cosmetic skin-care suggestions. This
policy explains what we collect, why, and how you can control or delete it.
Information We Collect
- Account information: first name, last name, email address, and a securely hashed
password, when you create an account.
- Ethnicity (optional): if you choose to share it, at signup or anytime from Settings,
used only to give more relevant food and skincare suggestions. Never required, and you can clear it at
any time.
- Scan photos: the facial photos you capture or upload for analysis.
- Scan results: the skin score, estimated skin age, detected concerns, and tone data
generated from each analysis, so you can track changes over time in History.
- Face ID sign-in: if you enable Face ID to sign in, your device's Secure Enclave
handles that match locally. FaceLens never receives or stores the Face ID data used for authentication —
only an authentication token is kept, in your device's Keychain.
Facial Images & Biometric Information
Because FaceLens works on photographs of your face, we are specific about what happens to them:
- Your scan photo is uploaded. When you request a skin analysis, the photo is transmitted to our servers and to our third-party AI provider, Google (Gemini API), which performs the analysis. It is then stored privately in your account so you can track changes over time.
- We do not build a face-recognition template. We do not create, store, or use a faceprint or facial-geometry template to identify you, to match you against other people, or to recognize you across images.
- How photos are used. Photos are analyzed to produce your results (including via Google's Gemini AI, a third-party model). They're never sold, never used for ads, and never used to train AI. We do not share facial images beyond the analysis provider named above.
- Consent. Before your first scan, the app tells you the photo will be sent to Google's Gemini AI for analysis and asks your permission — nothing is sent until you agree. You can withdraw consent by deleting your data (see Your Rights).
How We Use Your Information
- To generate your skin analysis and cosmetic product recommendations.
- To maintain your scan history so you can see progress over time.
- To authenticate you and secure your account.
We do not sell your personal information or scan photos to third parties, and we do not use your photos
for advertising.
Your photos are never used for advertising. Scan photos are used only to produce your
own analysis and history. They are never used for advertising or marketing, never used for use-based data
mining, and never used to identify or track you or any anonymous person.
Third-Party Processing
FaceLens uses two processors that may handle face-related data. Here is what each receives, whether it stores data, why, how long, and how it is protected. FaceLens does not use Apple Health.
Google's Gemini AI (scan photos only)
- Receives: the photo you submit for a scan.
- Stores? Yes — logged for a limited period under Google's Gemini API Paid Services terms, solely for abuse / prohibited-use detection and required legal disclosures — not for Google's own products or ads.
- Purpose: return your cosmetic skin analysis.
- Why that length: Google's API abuse-monitoring window. FaceLens must stay on paid Gemini; free AI Studio terms are different.
- Equal protection: processed under Google's API DPA / paid-service data terms; FaceLens does not authorize any other use.
- On account delete: FaceLens deletes its copies immediately; Gemini logs age out per Google's limited retention window.
Photos are analyzed to produce your results (including via Google's Gemini AI, a third-party model). They're never sold, never used for ads, and never used to train AI.
Supabase (accounts + History storage)
- Receives/stores: account data, scan photos, results, saved Studio images, wishlist.
- Purpose: authentication, private History, and sync across sessions.
- Retention: while the account is active.
- Why: so History and wishlist work; no longer than needed for that.
- Equal protection: private buckets and row-level security; only your account can access your data.
- On delete: Settings → Purge Scan Data & Delete Account removes FaceLens-held copies immediately.
Studio (on-device)
Studio face-tracking uses on-device Apple Vision. No facial geometry is uploaded. The only Studio content that may be stored is a final rendered image you choose to save, kept privately in your account like other photos.
Data Storage & Security
Scan photos and other account content FaceLens stores are kept in private Supabase storage with row-level
security — they are not public or guessable. See the Supabase bullets above for retention and deletion.
FaceLens does not claim equal protection beyond what those processors provide under their own terms; we do
require contractual / API terms that limit use to analysis (Gemini) and account hosting (Supabase).
Your Rights
You can permanently delete your account, scan history, and photos at any time from
Settings → Purge Scan Data & Delete Account inside the app. This is irreversible and takes
effect immediately — no need to contact us first.
Children's Privacy
FaceLens is not directed at, and is not intended for use by, children under 13. We do not knowingly collect
personal information, including photos, from children under 13. If you believe a child has created an account
or submitted photos without parental consent, contact us using the information below and we will delete the
account.
Changes to This Policy
If we make material changes to this policy, we'll update the "Last updated" date above and, where
appropriate, notify you in the app.
Contact Us
Questions about this policy or your data can be sent to
plakhani001@gmail.com.