Privacy Policy
Effective date: 25 June 2026
Your privacy matters to us. This policy explains what data we collect, why we collect it, and what happens to it when you use InkCraft.
1. What We Collect
Information you provide
- Account data: email address and display name when you create an account.
- Purchases: subscription and credit purchase records (processed via Apple App Store / Google Play — we do not store full payment card details).
Information collected automatically
- Usage analytics: anonymous events (pages visited, features used, session length) collected via Plausible Analytics, a privacy-focused tool that does not use cookies and does not track individuals across sites.
- Device metadata: app version, OS version, device model, and locale stored in your user profile to help us improve compatibility.
- Crash reports: anonymous crash logs to diagnose and fix bugs.
Information you upload
- Photos for the try-on: when you upload a photo to preview a tattoo placement, the image is processed transiently — it is sent to our server solely to render the placement preview and is not persisted server-side after the session ends. We do not store, share, or use your photos for any other purpose.
- EXIF metadata: EXIF location data is stripped from your photo client-side before upload so your location is never transmitted to our servers.
2. How We Use Your Data
| Data | Purpose | |------|---------| | Account data | Authenticate you and sync your saved designs across devices | | Usage analytics | Understand which features are used so we can improve them | | Device metadata | Diagnose compatibility issues, personalise language and region defaults | | Try-on photos | Render the tattoo placement preview — nothing else | | Purchase records | Activate subscriptions, credit packs, and manage billing |
We do not sell your data. We do not use your photos or designs to train AI models.
3. Legal Basis for Processing (GDPR)
If you are in the European Economic Area, we process your data on the following bases:
- Contract: to provide the Service you signed up for.
- Legitimate interests: to operate and improve the Service, detect abuse, maintain security, and measure aggregate usage with our cookieless, privacy-preserving analytics (Plausible), which does not track or identify individuals.
4. Photo Processing in Detail
When you use the web or app try-on:
- Your photo is loaded and displayed locally in your browser or device.
- EXIF metadata (including GPS location) is stripped before any data leaves your device.
- The photo is transmitted over an encrypted HTTPS connection to our processing server.
- Our server renders the tattoo placement and returns the preview image.
- The uploaded photo is deleted from server memory at the end of the request. It is not written to persistent storage, logged, or retained in any form.
This is the same posture described in our Terms of Service §5.
5. Data Sharing
We share data with:
- Firebase / Google Cloud — authentication and Firestore database for account data.
- Cloudflare — CDN and serverless compute for the try-on pipeline.
- Apple / Google — purchase validation via their respective platforms.
- Plausible Analytics — anonymous aggregated analytics (no personal data shared).
All sub-processors are bound by contracts prohibiting them from using your data for their own purposes.
6. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your account and associated data.
- Export your data in a portable format.
- Object to processing based on legitimate interests.
To exercise any of these rights, email [email protected]. We will respond within 30 days.
7. Data Retention
- Account data: retained while your account is active. Deleted within 30 days of account deletion.
- Usage analytics: aggregated and anonymised; individual events are not retained beyond 24 months.
- Try-on photos: not retained (see §4).
- Purchase records: retained for 7 years to meet accounting obligations.
8. Security
We use TLS for all data in transit. Firebase security rules restrict access to your data to your own account. Our server infrastructure is access-controlled and audited periodically.
9. Children
The Service is not directed at children under 13. We do not knowingly collect data from children under 13. If you believe a child under 13 has provided us data, contact us and we will delete it promptly.
10. Changes to This Policy
We may update this policy. If changes are material, we will notify you via in-app notice or email at least 14 days before they take effect.
11. Contact
Data protection questions: [email protected]