Privacy Policy
Last updated: January 25, 2025
1. Introduction
Vaionex Corporation ("Company," "we," "us," or "our"), a Delaware corporation, operates Makeover AI (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services.
We are committed to protecting your privacy and handling your data in an open and transparent manner. Please read this Privacy Policy carefully. By accessing or using our Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy.
If you do not agree with the terms of this Privacy Policy, please do not access or use our Service.
2. Information We Collect
2.1 Information You Provide Directly
We collect information you provide directly to us, including:
- Account Information: When you create an account, we collect your name, email address, and authentication credentials. If you sign up using a third-party service (such as Google), we receive your name and email address from that service.
- User Content: Images and photographs you upload to our Service for processing, as well as the AI-generated results created from your uploads.
- Payment Information: When you make a purchase, our payment processor (Stripe) collects your payment card details, billing address, and transaction information. We do not store your complete credit card numbers on our servers.
- Communications: When you contact us for support or other inquiries, we collect the information you provide in your messages, including your email address and the content of your communications.
- Preferences: Information about your preferences, settings, and how you configure your account.
2.2 Information Collected Automatically
When you access or use our Service, we automatically collect certain information, including:
- Device Information: Information about the device you use to access our Service, including hardware model, operating system and version, unique device identifiers, and mobile network information.
- Log Information: Server logs that record information about your use of the Service, including access times, pages viewed, IP address, and the page you visited before navigating to our Service.
- Usage Information: Information about your interactions with our Service, such as the features you use, the actions you take, and the time, frequency, and duration of your activities.
- Location Information: We may derive your approximate location from your IP address.
2.3 Cookies and Similar Technologies
We use cookies and similar tracking technologies to collect and track information about your activity on our Service. Cookies are small data files stored on your device. We use the following types of cookies:
- Essential Cookies: Required for the operation of our Service, including authentication and security.
- Functional Cookies: Enable personalized features and remember your preferences.
- Analytics Cookies: Help us understand how visitors interact with our Service, allowing us to improve user experience.
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
3. How We Use Your Information
We use the information we collect for various purposes, including to:
- Provide and Maintain Our Service: Process your images using our AI technology, manage your account, and deliver the features and functionality of our Service.
- Process Transactions: Process payments, manage subscriptions, track credit usage, and send transaction confirmations.
- Communicate With You: Send service-related notices, respond to your inquiries, provide customer support, and send promotional communications (with your consent).
- Improve Our Service: Analyze usage patterns, diagnose technical issues, and develop new features and services.
- Ensure Security: Detect, prevent, and address fraud, abuse, security risks, and technical issues.
- Comply With Legal Obligations: Comply with applicable laws, regulations, legal processes, or governmental requests.
- Enforce Our Terms: Enforce our Terms of Service and other agreements.
4. How We Share Your Information
We may share your information in the following circumstances:
- Service Providers: We share information with third-party vendors and service providers who perform services on our behalf, such as payment processing (Stripe), cloud hosting (Google Cloud, Firebase), AI image processing (Replicate), and analytics. These providers are contractually obligated to protect your information and use it only for the purposes for which it was disclosed.
- Business Transfers: If we are involved in a merger, acquisition, financing, reorganization, bankruptcy, or sale of company assets, your information may be transferred as part of that transaction.
- Legal Requirements: We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).
- Protection of Rights: We may disclose information when we believe disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a government request.
- With Your Consent: We may share your information for other purposes with your explicit consent.
We do not sell your personal information to third parties.
5. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements.
- Account Information: Retained for the duration of your account and for a reasonable period thereafter for legal and business purposes.
- User Content (Images): Your uploaded images and generated results are stored for your continued access. You may delete your content at any time through your account settings or by contacting us.
- Transaction Records: Retained for the period required by applicable tax and accounting laws (typically 7 years).
- Usage Data: Aggregated and anonymized data may be retained indefinitely for analytical purposes.
When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain certain information for legal or legitimate business purposes.
6. Data Security
We implement appropriate technical and organizational security measures designed to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL protocols
- Encryption of sensitive data at rest
- Regular security assessments and vulnerability testing
- Access controls limiting employee access to personal information
- Secure authentication mechanisms
- Regular backups and disaster recovery procedures
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.
7. International Data Transfers
Your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate. These countries may have data protection laws that are different from the laws of your country.
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, we ensure that transfers of personal data to countries outside these regions are subject to appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission.
8. Your Rights and Choices
8.1 General Rights
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request access to the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete personal information.
- Deletion: Request deletion of your personal information, subject to certain exceptions.
- Data Portability: Request a copy of your personal information in a structured, machine-readable format.
- Objection: Object to the processing of your personal information in certain circumstances.
- Restriction: Request restriction of processing of your personal information.
- Withdraw Consent: Withdraw consent at any time where we rely on consent to process your information.
8.2 European Users (GDPR)
If you are located in the EEA, UK, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with your local data protection authority.
8.3 California Users (CCPA)
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA), including:
- The right to know what personal information we collect, use, and disclose
- The right to delete your personal information
- The right to opt-out of the sale of personal information (note: we do not sell personal information)
- The right to non-discrimination for exercising your privacy rights
8.4 Account Settings
You can review and update certain account information by logging into your account settings. You can also delete your content and request account deletion through your profile settings.
8.5 Marketing Communications
You can opt out of receiving promotional emails by following the unsubscribe instructions in those messages. Even if you opt out, you will still receive transactional and service-related communications.
9. Children's Privacy
Our Service is not directed to children under the age of 16, and we do not knowingly collect personal information from children under 16. If we learn that we have collected personal information from a child under 16, we will take steps to delete that information as quickly as possible.
If you are a parent or guardian and believe your child has provided us with personal information without your consent, please contact us at the email address below.
10. Third-Party Services
Our Service may contain links to third-party websites and services. We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policies of any third-party services you access.
Our Service uses the following third-party services:
- Google Firebase: Authentication and database services
- Stripe: Payment processing
- Replicate: AI image processing
- Google Cloud Storage: Image storage
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last updated" date at the top of this page
- Sending you an email notification (for material changes)
We encourage you to review this Privacy Policy periodically for any changes. Your continued use of the Service after any modifications indicates your acceptance of the updated Privacy Policy.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us at:
We will respond to your inquiry within a reasonable timeframe and in accordance with applicable law.