Privacy Policy
Last updated: August 2, 2026
This policy explains what data Glowki handles, how it is used, and the choices you have. Glowki runs mostly on your own device, and we keep what leaves it to a minimum.
1. What we collect
- Camera scans. Glowki uses your camera to read skin appearance and color. When you scan, the photo travels over HTTPS to our analysis providers (Supabase and Gemini), is processed in memory, and is dropped right after. We do not save raw photos or face templates on any server or disk.
- Glow-Up photos. Photos you send to the optional Glow-Up feature are used to generate the before and after images, then discarded. They are not kept on our servers unless you save or share them yourself.
- On-device data. Your results and settings stay on your device. That includes undertone mix, confidence levels, skin scores, face shape and feature labels, routines, habits, scan history, skin type and tone, anything you tell us about ethnicity or background, makeup preference, app language, and theme. We do not copy these to a central database.
- Account data. If you create an account, we store your email address, your Supabase user ID, and login tokens.
- Waitlist email. If you join the Glowki waitlist on our website, we store your email address with Resend to send your signup confirmation and future launch updates. You can ask us to remove it at any time.
- Purchases. Subscriptions run through RevenueCat and Google Play. We see transaction IDs, timestamps, and subscription status. We never see or store card numbers.
- Device identifiers. We keep a random install ID and a RevenueCat user ID to handle rate limits, manage entitlements, and prevent abuse.
- Location for UV index. To show today’s UV index for sun-protection guidance, Glowki uses either your device’s approximate location (only if you grant permission) or a city you choose manually. When approximate location is used, only rounded coordinates are sent to a third-party weather service to look up the UV index. We do not store your location on our servers.
- Analytics and crash reports. To understand how the app is used and to fix problems, Glowki uses PostHog (product analytics) and Sentry (crash reporting). These collect app-usage events, device and app-version details, and crash diagnostics linked to a random identifier. They do not receive your photos, scan results, or account contents.
2. How data is shared
We do not sell, rent, or trade your data. It leaves our hands only in these cases:
- Service providers. Photos and text parameters go to Supabase and Gemini over HTTPS to produce color and styling guidance. Approximate or chosen-city coordinates go to a weather service for the UV index. App-usage and crash data go to PostHog and Sentry. Waitlist email addresses are processed by Resend to deliver confirmation and launch emails. Each provider processes this data for us under confidentiality terms.
- Legal requests. We may disclose data if the law requires it, or where it is needed to protect people from harm.
3. Keeping and deleting data
- Reset local data. You can wipe your scan history, habits, and preferences any time under Settings, then Reset Data.
- Delete your account. Remove your account and its login data from Settings in the app, or from the Delete account page.
- Leave the waitlist. Email ydamit5840@gmail.com from the address you used, and we will remove it from the waitlist.