Privacy Policy — SuperIRIS
Effective date: 17 November 2025
This Privacy Policy explains how superdesignlabs
(“we”, “us”, “our”) collects and uses information
when you use the SuperIRIS mobile application (“App”).
If you have any questions, contact
superdesignlabs@gmail.com.
1. Who we are
Controller: superdesignlabs.
Contact email:
superdesignlabs@gmail.com.
2. Scope
This Policy applies to your use of the App. It does not cover third-party websites or
services that we do not control.
3. Data we collect
A) Pseudonymous account & purchases
- Pseudonymous user ID created automatically (no email, password, or social login required).
- Credits balance and subscription status/expiration.
- Purchase history for in-app purchases (e.g., which products you bought).
B) Content you provide
- Photos and images you choose to style in the App.
C) Face Data
When you use features that detect or manipulate faces, we may collect and process
Face Data (such as facial landmarks or depth data) to identify facial features
solely for the purpose of applying AI styles and effects.
- Usage: This data is used immediately to map the AI style to your face and is not used for
user identification or authentication.
- Sharing: We do not share Face Data with third parties, except as part of the image processing
necessary to generate your AI output (via our AI providers listed in Section 6). We do not sell Face Data.
- Retention: Face Data is processed in real-time and is not retained on our servers. It is
deleted immediately after the styling process is complete.
D) Device & usage data
- Device information such as operating system, device model, language, and app version.
- Usage events such as which styles or packs are used.
E) Diagnostics
- Crash logs, error reports, and basic performance data.
4. How we use data
- Provide core features – process your photos with AI models, manage credits and subscriptions,
and keep the App working correctly.
- Improve and debug the App – understand which features are used, investigate crashes and
errors, and make performance improvements.
- Payments & subscriptions – validate purchases, grant credits, and allow restore of past
purchases.
- Security and abuse prevention – detect misuse, protect our services, and enforce our terms.
- Legal and compliance – respond to lawful requests and meet accounting or tax obligations
where applicable.
5. How AI processing works (photos & prompts)
- When you apply a style, your image and prompt are transmitted securely (over HTTPS) from your device to our
backend.
- Our backend forwards the image to the AI provider (Google's NanoBanana) to generate the styled output. Images
may be held temporarily in memory as needed to complete the request.
- We do not permanently store your original or styled photos on our servers. Final styled
images are saved locally on your device (and in your device backups) unless you delete them.
- We may retain non-image metadata about the request (for example, time, provider used, and selected style) for
analytics, debugging, and abuse prevention.
Model training:
We do not use your images to train our own models. Where our AI providers offer controls,
we configure them to not use your content for model training or service improvement.
For more details on how each provider handles data, please see their own privacy policies.
6. Third-party services
We rely on the following service providers to operate the App:
- Supabase – database, authentication, and backend infrastructure.
- RevenueCat – in-app purchases and subscription management.
- PostHog – product analytics.
- Sentry – crash reporting and error diagnostics.
- Google – AI image processing (Gemini / NanoBanana).
- Expo – tooling and infrastructure used to build and ship the App.
These providers process data on our behalf under their own security practices and
data-processing terms. We do not sell your personal data.
7. When we share data
We may share data:
- With the service providers listed above, so they can operate analytics, crash reporting, AI processing,
billing, and infrastructure on our behalf.
- With authorities or third parties when required by law, or when necessary to protect our rights, safety, or
other users.
- In connection with a business transfer (for example, a merger, acquisition, or similar transaction). If this
happens, we will take steps to ensure your privacy rights continue to be protected.
We do not share data with third-party ad networks for targeted advertising or cross-app tracking.
8. Retention
We keep data only as long as reasonably necessary for the purposes described above:
- Pseudonymous account, credits, and subscription status – kept while you actively use the App.
If you delete your profile (see below), we remove or de-identify this data except where we must retain limited
records for legal or accounting reasons.
- Photos & styled images – not kept permanently on our servers; stored on your device until
you delete them. Temporary copies created during processing are removed automatically after the request is
completed.
- Analytics & usage data – kept for a limited period by our analytics providers, typically
no longer than 24 months, then deleted or aggregated.
- Crash logs and diagnostics – retained by our crash reporting provider for a limited period to
help us fix issues, then deleted or aggregated.
9. Your choices & controls
- Delete Profile – you can delete your profile from within the App (Settings → Delete Profile).
This removes your Supabase account and related data we store for your profile. Images saved on your device or in
your device backups are not removed automatically.
- Permissions – you can revoke photos, or storage permissions at any time in your device
settings. If you do, some features of the App may not work.
- Contact us – you can email us at
superdesignlabs@gmail.com
with questions about this Policy or to request access, correction, or deletion of data
where applicable law gives you those rights.
10. Children
The App is designed for users aged 13 and older (or the minimum age in your country if higher).
We do not knowingly collect personal data from children under this age.
If you believe a child has provided data to us, please contact us so we can delete it.
11. Security
We use reasonable technical and organizational measures, and rely on reputable third-party providers,
to protect your information. However, no system is perfectly secure, and we cannot guarantee
absolute security of data transmitted or stored by the App.
12. Changes to this Policy
We may update this Privacy Policy from time to time. When we do, we will update the “Effective date”
at the top. If we make material changes, we may provide additional notice in the App.