Privacy Policy

Effective Date: December 1, 2025

Information We Collect

Personal Information

We collect personal information when you create an account, including your email address and name when you sign up directly or through third-party authentication services (Apple Sign In, Google Sign In). We also store your account preferences, credit balance, and usage history.

Photos and Generated Content

When you upload photos to generate headshots, we temporarily process these images using our AI technology. Your original photos are temporarily stored on Replicate's secure servers during processing (typically 1-3 minutes) and are automatically deleted immediately after your headshots are generated. Generated headshots are saved to your account and remain accessible until you delete them or delete your account.

Face Data Collection and Use

We collect facial features and characteristics from photos you upload. This face data is used exclusively to generate professional headshots through our AI technology. The face data is:

  • Sent to Replicate's secure AI servers for processing
  • Processed for 1-3 minutes during headshot generation
  • Automatically deleted immediately after your headshots are generated
  • Never used for facial recognition, identification, or AI model training

Usage Data

We collect information about how you use the app, including generation requests, feature usage, and technical performance data. This helps us improve our service and troubleshoot issues.

Device Information

We may collect device identifiers, operating system version, and app version information for security and functionality purposes.

How We Use Your Information

Service Provision

We use your photos and personal information solely to provide AI headshot generation services, manage your account, process payments, and maintain your personal gallery.

AI Processing

Your uploaded photos are sent to our trusted AI provider (Replicate) solely for headshot generation. Your images are processed on secure servers and are never used to train AI models or shared for any other purpose.

Communication

We may send you account-related notifications, service updates, and support communications. You can opt out of non-essential communications.

Improvement and Analytics

We analyze usage patterns to improve our app performance, but this analysis is conducted on anonymized data that cannot be traced back to individual users.

Information Sharing

No Third-Party Sharing

We do not sell, rent, or share your personal information or photos with third parties for their marketing purposes.

Third-Party Services

We use the following services:

  • Supabase: Account authentication and data storage
  • RevenueCat: Subscription and payment processing
  • PostHog: Analytics to understand app usage (linked to your account)
  • Replicate: Your photos are sent to our secure AI service for headshot generation

These providers are contractually bound to protect your data and use it only for providing services to us.

Legal Requirements

We may disclose information if required by law, regulation, or legal process, or to protect our rights, users, or others from harm.

Data Security

Encryption

All data is encrypted in transit using industry-standard TLS encryption. Personal information and photos are stored using enterprise-grade security measures.

Access Controls

Your photos and generated headshots are accessible only through your authenticated account. We implement strict access controls to prevent unauthorized access.

Data Isolation

User data is isolated using unique identifiers, ensuring your content remains private and inaccessible to other users.

Your Rights

Data Access

You can access all your personal information and generated content through the app's gallery and profile sections.

Data Deletion

You can delete individual photos or clear your entire gallery at any time through the app. You may also request complete account deletion by contacting support.

Data Portability

You can download your generated headshots directly through the app's sharing features.

Account Control

You can update your account information, manage authentication methods, and control app preferences through the profile section.

Opt Out

You can opt out of data collection by not using the app.

Data Retention

Uploaded Photos with Face Data

Uploaded photos containing face data are deleted immediately after processing (typically 1-3 minutes). These photos are not permanently stored.

Generated Headshots

Generated headshots are stored in your account until you manually delete them or delete your account.

Account Data

Account information, preferences, and usage history are retained while your account is active. When you delete your account, all account data is permanently deleted within 30 days.

Analytics Data

Analytics data collected through PostHog is retained for up to 2 years.

Legal Compliance

Some data may be retained longer to comply with legal obligations or resolve disputes.

Children's Privacy

PhotoAlike is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13.

Data Storage and International Transfers

Face data is processed on Replicate's servers located in the United States. Generated headshots and account data are stored using Supabase cloud storage with servers in the United States. Your data may be processed and stored in the United States and other countries where our service providers operate. We ensure appropriate safeguards are in place for international transfers.

Changes to Privacy Policy

We may update this Privacy Policy periodically. We will notify users of material changes through the app or email. Continued use of the service after changes constitutes acceptance of the updated policy.

Contact Us

For questions about this Privacy Policy or your data, contact us at: