Privacy Policy (GlassShia AI)
Effective Date: January 2025
Developer & Data Controller: Kaan Ceylan (individual)
Acceptance of Terms
By using the GlassShia AI application, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with any part of this Privacy Policy, you must not use the Service and should exit the application immediately.
Your continued use of the Service after any modifications to this Privacy Policy constitutes your acceptance of those changes. If you do not agree with the terms of this Privacy Policy, you may discontinue use of the Service at any time.
1) Personal Data We Collect
We collect data you provide (account information, image processing preferences), data collected automatically (device information, usage analytics, app performance), payment data (subscription status, purchase history), and data from third parties when you interact with their services.
When you process images through the Service, we collect the original images you upload, processing type preferences (sunglasses reflection removal, glare removal, etc.), and other content you submit. This data is stored in Firebase Storage and Firestore.
2) How We Use Data
We use your data to:
Provide and operate the Service (AI image processing, reflection and glare removal, image enhancement)
Process your image processing requests through third-party AI services
Improve and secure the Service
Personalize your experience
Communicate with you (notifications, support)
Comply with legal obligations
Enforce our Terms of Service and content policies
3) AI Processing & Third-Party Providers
To provide AI image processing features, we send your images and processing parameters to third-party AI providers:
Google Gemini: For processing images to remove reflections, glares, and highlights from glasses lenses
We also use Firebase (Firestore, Authentication, Storage, Functions) for hosting, authentication, data storage, and server-side processing. RevenueCat is used for managing in-app purchases and subscriptions.
When you process images, your original images and processing parameters are sent to Google Gemini API. Original and processed images are stored in Firebase Storage. All image processing is done server-side through Firebase Cloud Functions for security.
4) Data Sharing
We share data with:
Service providers: Firebase, Google Gemini, RevenueCat
Payment platforms: Apple (App Store) and Google (Google Play) for in-app purchases
Authorities: When required by law or to protect rights and safety
We do not sell your personal information for money. We may share aggregated, anonymized data for analytics and service improvement purposes.
5) Image Content & Privacy
All images you upload and process are stored privately in your user account:
Original images are stored securely in Firebase Storage
Processed images are stored securely in Firebase Storage
Images are only accessible by you through your authenticated account
We do not share your images with other users or make them publicly accessible
Images are stored in your personal user folder with proper access controls
You can delete your processed images at any time through the app. Deleted images are permanently removed from our servers within 30 days, except where we are required to retain them by law.
6) Your Rights
You have the right to:
Access your personal data and image content
Correct inaccurate data
Delete your account and associated data
Port your data (export your images)
Withdraw consent for data processing
Contact us at kcey9714@gmail.com to exercise these rights. We will respond within 30 days.
7) Account Deletion
The application does not provide an in-app account deletion feature. If you wish to delete your account and associated data, you must contact us directly via email at kcey9714@gmail.com with your request.
Upon receiving your account deletion request, we will:
Remove your profile and account information
Delete your original and processed images from our servers
Cancel any active subscriptions
Delete your credit balance and usage history
We will process your account deletion request and respond within 30 days. Please note that account deletion is permanent and cannot be undone.
8) Children's Privacy
The Service is intended for users aged 13 or older. If you are under 18, you must have a parent or legal guardian's permission to use the Service.
If you are under a certain age (as determined by applicable laws in your jurisdiction), you may not use the Service without verifiable parental consent. We collect data from all users who use the Service, regardless of age, as long as they meet the minimum age requirement and have necessary parental consent where required.
If you are a parent or guardian and believe your child has used the Service without your consent, please contact us immediately at kcey9714@gmail.com.
9) International Transfers
We may transfer your data to countries outside your own, including the United States (for Firebase, Google services) and other countries where our service providers operate.
We use appropriate safeguards to protect your data during international transfers, including:
Standard Contractual Clauses (SCCs) where required by law
Adequacy decisions by relevant authorities
Service provider compliance with applicable data protection laws
By using the Service, you consent to the transfer of your data to these countries.
10) Data Retention
We reserve the right to retain your data for as long as we deem necessary for our business purposes, legal compliance, or service operation. There is no predetermined retention period for most data types.
We may retain:
Image content: For an indefinite period until you request deletion or delete your account
Account information: For an indefinite period while your account is active and after account deletion as we determine necessary
Usage analytics: For an indefinite period for service improvement and analytics
Payment records: As required by applicable law
Logs and error reports: For an indefinite period for service improvement and debugging
Backups: For an indefinite period in encrypted form
We may retain your data indefinitely unless you request deletion or we are required to delete it by applicable law. We are under no obligation to delete your data after any specific period.
11) GDPR & CCPA Rights
If you are in the European Economic Area (EEA), United Kingdom, or California, you have additional rights:
GDPR/UK GDPR Rights:
Right to access your personal data
Right to rectify inaccurate data
Right to erasure ("right to be forgotten")
Right to restrict processing
Right to data portability
Right to object to processing
Right to withdraw consent
California (CCPA/CPRA) Rights:
Right to know what personal information is collected
Right to access your personal information
Right to delete your personal information
Right to correct inaccurate information
Right to opt-out of sale/sharing of personal information
Right to non-discrimination
Contact us at kcey9714@gmail.com to exercise these rights.
12) Security & Limitation of Liability
We implement technical and organizational measures to protect your data:
Encryption in transit (HTTPS/TLS)
Encryption at rest for sensitive data
Access controls and authentication
Server-side processing through Firebase Cloud Functions
Secure signed URLs for image uploads and downloads
Regular security assessments
Monitoring for suspicious activity
However, no system is 100% secure. We cannot guarantee absolute security. You are responsible for keeping your account credentials secure. If you suspect a security breach, please notify us immediately at kcey9714@gmail.com
LIMITATION OF LIABILITY:
We assume no responsibility or liability for:
Any unauthorized access to or theft of your data, personal information, or account credentials
Any financial loss, damages, or harm resulting from payment processing errors, fraud, or unauthorized transactions
Any data breaches, security incidents, or unauthorized disclosure of your information
Any loss or corruption of your images, data, or content
Any damages arising from the use or inability to use the Service
Any actions or omissions of third-party service providers (Firebase, Google Gemini, RevenueCat, Apple, Google)
By using the Service, you acknowledge and agree that:
We are not liable for any direct, indirect, incidental, special, or consequential damages
You use the Service at your own risk
You are solely responsible for maintaining the security of your account
Any payment transactions are processed by third parties (Apple, Google) and we are not responsible for payment-related issues
If you do not agree with these limitations, you must not use the Service.
13) AI-Generated Content & Privacy
When you use AI features to process images:
Your images are sent to Google Gemini API for processing
AI providers may use your data according to their privacy policies
Processed images are stored in our systems and may be used to improve the Service
Similar images may be processed using similar techniques for other users
You retain ownership of processed images you create, subject to applicable law and third-party rights.
14) Cookies & Tracking
We use cookies and similar technologies to:
Authenticate your account
Remember your preferences
Analyze usage patterns
Improve service performance
We use Firebase Analytics, which may use cookies and tracking technologies. You can control cookie preferences through your device settings, though this may affect Service functionality.
15) Do Not Track & Global Privacy Control
We honor platform-level privacy choices:
iOS: App Tracking Transparency (ATT)
Android: Privacy settings and controls
Global Privacy Control signals (where implemented)
You can control tracking preferences in your device settings. We will respect your choices to the extent technically feasible.
16) Changes to this Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
In-app notification
Email (if you have provided an email address)
Posting the updated policy with a new effective date
Continued use of the Service after the effective date of changes means you accept the updated Privacy Policy. If you do not agree with the changes, you must stop using the Service and exit the application immediately. You may also request account deletion by contacting us at kcey9714@gmail.com.
17) Contact
For questions, concerns, or to exercise your privacy rights:
Email: kcey9714@gmail.com
Postal Address: 07010 Antalya, Turkey
Developer: Kaan Ceylan
We will respond to your inquiries within 30 days.