Legal
Privacy Policy
Effective and last updated: September 14, 2026
This Privacy Policy explains how DateShot AI ("DateShot AI," "we," "us," or "our") collects, uses, discloses, stores, and deletes personal information when you use the DateShot AI mobile application, website, support channels, and related services (collectively, the "Service").
1. Information we collect
Information you provide
- Account and identity data: your email address, name, account identifier, sign-in provider, and information returned by Apple or Google when you choose those sign-in methods.
- Profile inputs: gender, relationship intent, age, height, weight, body type, skin complexion, hair colour, and the style or scene preferences you select.
- Photos and generated content: reference photos, custom style photos, selected model-photo templates, AI-generated photos, edits or replacement images, and image metadata needed to process and store them.
- Requests and communications: manual-review requests, support emails, feedback, and any information you include in them.
- Purchase information: subscription, entitlement, credit balance, credit-use, transaction, refund, and restoration records. Apple processes your payment details; we do not receive your full payment-card number.
Information collected automatically
- Usage and operational data: session and generation identifiers, feature status, timestamps, selected templates, generation provider/model, job attempts, errors, review status, and related diagnostic events.
- Device and app data: platform, app version, device or installation identifiers used by service SDKs, crash logs, performance and diagnostic information, and push-notification tokens and preferences if you enable notifications.
- Website and network data: standard server logs may include IP address, browser type, device type, requested pages, and request date and time.
2. Face Data: collection, use, sharing, storage, retention, and deletion
What Face Data the app processes
For this policy, Face Data means: (a) the reference photos you choose, including the required headshot, side-profile, and full-body photos when a face is visible; (b) any custom style photo you choose when a face is visible; (c) generated or replacement photos that show your face; and (d) temporary, on-device face-detection results consisting of whether a face was detected, the number of faces detected, each detected face's bounding rectangle, and the detector confidence value.
DateShot AI does not create, collect, or store faceprints, facial-recognition templates, facial embeddings, identity-match scores, Face ID data, or facial landmark records. It does not compare your face against another person or a face database.
How Face Data is collected and used
When you select a photo, the app performs a local face-presence check so it can tell whether the photo contains at least one usable face. The check runs entirely on your device. Although the device detector returns face count, bounding rectangles, and confidence values in temporary memory, the app uses only the face-present result and face count to accept or reject the selected photo. Those detection results are discarded as soon as that individual check finishes. They are not written to device storage, uploaded to DateShot AI, or shared with a third party.
Before the app sends personal information to an AI processing service, it presents a separate permission screen that identifies the information and providers described here. If you choose Not Now, the app does not begin the AI-provider upload or generation. If you choose Allow & Continue, we record the version and time of your choice for the anonymous preview session or your signed-in account.
For ordinary photo generation, we send OpenAI your three reference photos, any custom style photo you chose, and the profile fields needed to preserve your requested appearance: gender, age, height, weight, body type, skin complexion, and hair colour. We do not send OpenAI your name or relationship intent. OpenAI processes those items to generate the photo you requested. DateShot AI's photo-safety service also checks uploaded photos for prohibited sexual content before generation.
If you expressly request a manual-review replacement, a trained member of our team may view your reference photos, generated photos, relevant profile inputs, and associated technical records. To create the requested replacement, we may send the same generation inputs to OpenAI, Google Gemini, fal.ai/FLUX, or Kie.ai. Team access may also occur when necessary to resolve a support or safety issue or investigate abuse.
We use Face Data only to check photo suitability and safety; generate, deliver, retry, or replace the photos you request; maintain your private photo library; complete a manual review you request; provide support; and investigate safety or abuse. We do not use Face Data to identify or authenticate you, determine protected or sensitive traits, build a face-recognition database or user profile, track you, advertise to you, or train DateShot AI's own general-purpose AI models. Do not upload another person's photo unless you have their permission and the legal right to have it processed in this way.
Who receives Face Data and where it is stored
- On your device: your selected local photos and generated photos you download may remain in app or device storage. The temporary face-detection results described above remain only in memory for the duration of the face-presence check.
- Supabase: DateShot AI stores submitted reference photos, generation-session records, and generated or replacement photos in access-controlled database records and private object-storage buckets. Media is delivered to the app through time-limited signed links.
- DateShot AI photo-safety service: submitted reference photos and a user-supplied custom style photo are sent to our safety-processing endpoint solely to classify prohibited sexual content. The service is not used for facial identification.
- OpenAI: for ordinary generation, the submitted reference photos and selected template or custom style photo are sent to OpenAI solely to create the requested result.
- Manual review only: if you request a manual-review replacement, the relevant photos may be viewed by an authorised DateShot AI reviewer and sent to OpenAI, Google Gemini, fal.ai/FLUX, or Kie.ai solely to create that replacement.
Face Data is encrypted in transit. Server-side photos are kept in private storage rather than a public gallery. We do not share Face Data with advertisers, advertising platforms, data brokers, analytics providers, or social networks, and we do not sell it. We require service providers that receive Face Data to process it only for the instructed service and to provide the same or an equal level of protection as described in this policy.
How long Face Data is retained and how it is deleted
- On-device detection results: retained only in temporary memory while the selected photo is checked, then immediately discarded.
- Local photo files: retained on your device until you replace or delete them, clear the app's storage, or remove the app, subject to your device's own backup settings.
- DateShot AI active systems: reference, generated, and replacement photos are retained while their anonymous preview remains recoverable or, after the preview is linked to you, while your account remains active. You may ask us to delete an unclaimed anonymous preview by contacting info@dateshotai.com. Deleting your account in the app deletes the associated reference, generated, and replacement photos and generation or review records from DateShot AI's active Supabase database and private storage.
- Processing providers: providers may retain limited request content or security logs for their documented processing, security, and abuse-prevention periods. For the ordinary OpenAI image-edit workflow, OpenAI states that API abuse-monitoring logs may be retained for up to 30 days unless a longer period is legally required. Providers used only for a requested manual-review replacement may apply their documented service-retention period. DateShot AI does not use a provider's copy as your permanent photo library.
- Backups and legal exceptions: deleted data may remain temporarily in encrypted backups or restricted security logs until the applicable rotation cycle completes. We may retain a record longer only where required by law or necessary to investigate a documented security or abuse incident. Face Data is not included in the limited purchase or subscription-anchor records we may retain after account deletion.
Withdrawing AI processing permission in Settings → AI data consent stops new Face Data from being sent for AI generation or safety processing. Withdrawal does not undo completed processing or delete an existing photo library; use Settings → Delete account or contact us to request deletion.
3. Why we use information
- Provide anonymous preview generation and, after sign-in, save and manage your photo library and account.
- Generate, moderate, deliver, download, retry, review, replace, and recover photos.
- Match relevant model-photo styles to the profile information you provide.
- Authenticate users, secure the Service, prevent duplicate preview abuse, and detect fraud or prohibited activity.
- Manage subscriptions, purchased credits, entitlements, restorations, refunds, and credit accounting.
- Send service and optional notification categories you enable, such as generation or review updates, credit updates, and tips.
- Diagnose crashes and errors, maintain reliability, improve safety and product performance, and provide support.
- Comply with law, enforce our Terms, protect rights and safety, and establish or defend legal claims.
4. Legal bases
Where law requires a legal basis, we process information as necessary to perform our contract with you; based on your consent (which you may withdraw where applicable); for our legitimate interests in operating, securing, supporting, and improving the Service; and to comply with legal obligations. Withdrawing consent does not affect processing already completed and may prevent features that require photos or notifications from working.
5. How we disclose information
We disclose information only as reasonably needed for the purposes described above:
- Infrastructure and account services: Supabase for authentication, database, Edge Functions, and private image storage; Apple and Google for optional sign-in.
- AI and image processing: OpenAI and, depending on the generation or manual-review workflow, Google Gemini, fal.ai/FLUX, Kie.ai, and image-moderation providers.
- Purchases: Apple and RevenueCat for subscriptions, credit purchases, entitlement status, restorations, refunds, and fraud prevention.
- Diagnostics and notifications: Google Firebase Crashlytics for crash diagnostics and Expo and platform push-notification services for notifications.
- Operations: hosting, security, professional advisers, and support vendors working under appropriate obligations.
- Legal and business events: authorities or other parties when required by law or necessary to protect rights and safety, and a buyer or successor in a merger, financing, reorganization, or sale, subject to appropriate safeguards.
We do not sell personal information for money. We do not use personal information for third-party targeted advertising, and the app does not request Apple's App Tracking Transparency permission. We do not use your photos to train our own general-purpose AI models or permit AI providers to use your content for their advertising. We require every provider that receives personal information from us to provide the same or an equal level of protection as stated in this policy, including purpose limitations, confidentiality and security obligations, retention limits, and deletion or return obligations. We assess providers before use and remain responsible for the processing we instruct them to perform.
6. Anonymous previews and accounts
You may begin an onboarding preview before signing in. We assign a random client session identifier and a recovery token so an interrupted preview can be recovered and later linked to your account. Reference photos, profile inputs, selected styles, generated preview, generation records, and diagnostic information may therefore be processed before account creation. Creating or signing into an account links the eligible preview session to that account.
7. Storage and retention
The app may keep local copies of selected photos, generated images, onboarding state, preview recovery data, and authentication credentials on your device. Authentication credentials are stored using secure device storage where supported. Server-side account records and private image files are generally kept while your account remains active so your library, credits, and review history continue to work.
We retain operational, purchase, fraud-prevention, and legal records for as long as reasonably necessary for the stated purposes. After account deletion, we delete the account and associated app data from our active systems, including stored user photos, generation sessions, review requests, push tokens, preferences, and credit-account data. Limited transaction or subscription-anchor records may be retained when necessary to prevent credit or subscription abuse, honor refunds, meet tax/accounting obligations, resolve disputes, or comply with law. Data may remain temporarily in encrypted backups and provider logs until their normal rotation or deletion cycles complete.
8. Your choices and rights
- Change notification categories in Settings and device-level notification permission in your operating-system settings.
- Choose which photos to upload and delete local downloaded copies through your device.
- Review or withdraw AI photo-processing permission through Settings → AI data consent. After withdrawal, the Service blocks new AI generation and safety-provider requests and cancels pending manual-review processing until you review the current disclosure and choose Allow again. Withdrawal does not undo processing already completed or delete photos already created.
- Request access, correction, deletion, restriction, objection, portability, or withdrawal of consent where applicable.
- Delete your account in the app through Settings → Delete account. Deleting the app alone does not delete your account.
- Appeal a privacy-request decision or complain to your local data-protection authority where your law provides that right.
Email info@dateshotai.com to exercise a right. We may need to verify your identity and may retain information that law permits or requires us to keep. Authorized agents may submit requests where permitted, subject to verification of their authority.
9. Security
We use safeguards designed to protect information, including access controls, authenticated service requests, private storage, signed temporary media links, and restricted administrative access. No system is completely secure, and we cannot guarantee that unauthorized access, loss, or misuse will never occur.
10. International processing
We and our providers may process information in countries other than the one where you live, including the United States. Where required, we rely on approved transfer mechanisms and contractual safeguards.
11. Children
DateShot AI is intended only for adults aged 18 or older. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided information, contact us so we can investigate and delete it.
12. Changes to this policy
We may update this policy as the Service or law changes. We will post the revised policy with a new effective date and provide additional notice when required. Material changes apply prospectively unless law permits otherwise.
13. Contact
For privacy questions or requests, contact DateShot AI at info@dateshotai.com. Please do not attach sensitive photos to an unencrypted support email unless our support team specifically asks for them.