Back to GlowAI

Privacy Policy

Effective Date: September 3, 2026

Company: Guyon Informatique & Web

Contact: vguyon.dev@hotmail.com

GlowAI turns a selfie into generated portraits. Photos of your face are sensitive data, so this policy states exactly what we store, for how long, and what we never do with it.

What We Collect

Your selfie: the photo you upload to generate a portrait, together with its dimensions and upload date. It is stored in our Cloudflare R2 bucket under a key derived from your account, never from anything your device chooses, at a path that is not indexed or listed anywhere.

Your generated portraits: the images GlowAI produces from your selfie, plus the template you picked and the status of each generation.

Account: your email address, and your name if you provide one.

Credits and purchases: your credit balance, the credit journal behind it, and a record of each purchase made through Apple In-App Purchase or Stripe (product, amount, currency, transaction identifier). We never receive or store your card details.

Technical: IP address, device and browser data, logs, and diagnostics needed to operate and secure the service.

Push notifications: if you turn notifications on, a push token identifying your device, so we can send the single transactional alert that tells you a portrait is ready — never marketing. We keep a short log of each attempted delivery (sent, skipped, or failed) for a limited time to diagnose delivery problems. The device token is removed as soon as you turn notifications off, when you sign out, or when you delete your account.

How We Use It

We use your selfie for one purpose: generating the portraits you ask for. We use the rest to run your account, apply your credits, process payments, provide support, secure the service, and keep required accounting records.

We never use your photos to train any model, we never sell them, and we never share them for advertising or analytics.

How Long We Keep Your Photos

Source selfies are deleted 30 days after upload. A scheduled job runs several times a day, deletes the stored image file first, then the database row that pointed at it. This is automatic and happens whether or not you ask for it.

Generated portraits are kept while your account exists, so you can find them in your gallery. You can delete any portrait yourself at any time, which deletes its image file too.

Deleting Your Account

You can delete your account from the app, in Settings. Deletion removes your email and name from your account record and erases your sign-in identity, then deletes every selfie and every generated portrait — database rows and stored image files alike, in batches until nothing is left. Each image file is deleted before the row pointing at it, so a failure can never leave an unreferenced photo behind. Your push notification device token, notification preference, and delivery log are deleted the same way, as part of the same batched cleanup.

The deleted account itself is never reused: any session still holding its credentials is permanently refused, and its unused credits are lost. Purchase and credit records from it are kept without your identifying details attached, because accounting and tax rules require us to retain proof of transactions. You are free to create a new account with the same email afterward — it starts fresh, with no connection to the deleted one. You can also request deletion by writing to vguyon.dev@hotmail.com.

Who We Share It With

We use service providers to operate GlowAI: Convex (application backend and database), Cloudflare R2 (image storage), Apple and Stripe (payments), and our email provider (sign-in codes and account emails). They process data on our behalf under their own terms.

Today the engine composes your photo into the template's studio setup on our own backend; a generative AI model is not in use. If we ever route your selfie to a third-party image model, we will update this policy and say who that provider is before doing so.

Security

Uploads are always signed by our server for a short, limited time, and the storage path of a photo is always derived from your account server-side — never from anything your device sends — so one account can never write into another account's files. Reads happen either through a short-lived signed link or directly from our storage provider's bucket domain at that same server-derived path, which is not indexed, listed, or guessable, but is not itself protected by a login check — treat any link to your images as usable by anyone who has it. We use encryption in transit and at rest. No online system is fully secure.

Your Choices

You can delete an individual portrait, delete your whole account, or contact vguyon.dev@hotmail.com to ask what we hold about you. We answer within a reasonable time unless retention is required by law.

Children

GlowAI is not intended for children under 13, and we do not knowingly collect their photos or personal data.

Changes

We may update this policy as needed. The latest posted version controls.