This Privacy Policy explains how the Auralis mobile application (the "App") handles your information. The App is designed around a simple principle: your face data never leaves your device.
To provide its features, the App processes the following data locally on your device:
Because this data stays on your device, deleting the App — or using Profile → Delete my data inside the App — permanently removes it. We cannot recover it for you, because we never had it.
This section describes specifically how the App collects, uses, discloses, shares, stores, retains and deletes face data.
Face data is used for one purpose only: to compute and display your own cosmetic, informational facial measurements and scores to you inside the App, and to personalize the self-improvement routine the App suggests to you. Face data is not used to identify or authenticate you or anyone else, is not used to build a face template for recognition, is not matched against any database, and is not used for advertising, marketing, profiling, or any form of tracking.
Face detection and all measurement calculations run entirely on your device, using machine-learning models bundled inside the App. No internet connection is used or required for a scan. Camera frames are analysed in memory and are never recorded. The detected landmark coordinates are discarded as soon as the measurements are computed and are never written to storage.
Only two things persist, and both are stored exclusively in the App's private, sandboxed storage area on your device: (a) the computed numeric measurements and scores, and (b) your scan photos, which are written to the App's own Documents folder. Nothing is written to your photo library, to iCloud, or to any server. We operate no server that receives face data, and no copy of your face data exists anywhere outside your device.
We do not share face data with any third party. Face data is never uploaded, transmitted, sold, rented, licensed, or disclosed — not to us, not to any service provider, not to any analytics or advertising provider, and not to any other third party. No third-party SDK included in the App receives face data; in particular, our subscription-management provider (RevenueCat) receives only anonymized transaction information such as a random app-instance identifier and App Store receipt data, and never receives face data, photos, or questionnaire answers. The only way face data leaves your device is if you deliberately choose to share a result image yourself through the system share sheet.
Face data is retained only on your device, and only for as long as it is useful to you. The App keeps a rolling history of your twelve most recent scans together with their scan photos; when a thirteenth scan is saved, the oldest scan and its photo are deleted automatically. Because no copy exists on any server, there is no retention period on our side — we retain nothing.
You can erase all face data at any time using Profile → Delete my data inside the App, which permanently deletes both the stored measurements and every scan photo from your device. Deleting the App from your device also removes all of it. Once deleted, the data cannot be recovered by us, because we never received it.
To understand which parts of the App are used and where people get stuck, the App can record anonymous product events — for example "a scan finished", "the paywall was shown", or which onboarding step was reached. Each event carries a random identifier generated on your device, which is not linked to your name, email, Apple ID, or advertising identifier, and is regenerated whenever you delete your data in the App.
What is never included in these events: camera frames, photographs, your scan selfies, your facial measurements or scores, and your questionnaire answers. Those remain on your device, as described above.
When this feature is active, events are processed on our behalf by PostHog, a product-analytics provider, acting as our processor. Analytics is disabled by default and is controlled by a remote setting, so it may be off entirely at any given time. It is never used for advertising, profiling, or cross-app tracking.
Subscriptions are processed by Apple through your App Store account. We do not receive or store your payment card details. Apple's handling of your payment information is described in Apple's own privacy policy. If we use a purchase-management provider (such as RevenueCat) to validate subscriptions, that provider receives only anonymized transaction information (such as a random app-instance identifier and receipt data) — never your face data, photos, or questionnaire answers.
If you enable reminders, the App schedules local notifications on your device (for example, a morning routine nudge). No push-notification service is used and no token is sent to a server. You can disable reminders at any time in the App or in your device settings.
Some features let you actively share content — for example, sharing your FaceCard image or sending a challenge link that contains your scores. A challenge link opens a page on our website that displays those scores and then hands off to the App or the App Store; the scores travel inside the link itself and are not stored on a server. Sharing happens only when you choose it, through the apps you select (for example, your messaging app). Once you share content, its further distribution is governed by the receiving service.
The App is not directed at children under 13, and you must be at least 13 years old to use it. We do not knowingly collect personal information from children — as described above, the App does not collect personal information from any user.
All App data lives on your device. The App keeps a rolling history of your recent scans (up to 12) and recent scan photos on-device. You can erase everything at any time via Profile → Delete my data, or by deleting the App. Retention and deletion of face data specifically are described in sections 3.5 and 3.6.
Your data is protected by your device's built-in security (such as device encryption and passcode/Face ID), and by iOS application sandboxing, which prevents other apps from reading the App's stored scans and photos. Because no copy exists on our servers, the primary way to protect your data is to protect your device.
Depending on where you live (for example, under the GDPR or the Turkish KVKK), you may have rights to access, correct, or delete personal data. Because the App stores all data locally on your device and we hold no copy, you can exercise these rights directly using the in-app deletion feature. For any privacy question or request, contact us at the address below.
If we change how the App handles data — for example, by introducing an online feature — we will update this policy and change the effective date above before the change takes effect.
Auralis — y41161714@gmail.com