Welcome to SkinScope's Privacy Policy. This policy describes how SkinScope, Inc. ("we," "us," or "our") collects, uses, and shares your personal information when you use our mobile application and website (collectively, the "Service").
1. Information We Collect
Personal Information You Provide
- Account Information: Name, email address, date of birth, and password
- Profile Data: Skin type, skincare concerns, product preferences, and goals
- Photos and Scans: Facial images you upload for skin analysis
- Communication: Messages you send to our support team
- Payment Information: Billing details for premium features (processed securely by third parties)
Information We Collect Automatically
- Device Information: Device type, operating system, unique device identifiers
- Usage Data: How you interact with our app, features used, time spent
- Location Data: General location (city/region) for localized recommendations
- Technical Data: IP address, browser type, app version, crash reports
Information from Third Parties
- Social Media: If you sign up through social platforms (with your permission)
- Analytics Providers: Aggregated usage statistics to improve our service
- Security Partners: Information to prevent fraud and ensure platform security
2. How We Use Your Information
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Skin Analysis & Recommendations | Photos, skin profile, usage data | Contract performance |
| Account Management | Name, email, password | Contract performance |
| Customer Support | Contact info, communication history | Legitimate interest |
| Service Improvement | Usage data, feedback | Legitimate interest |
| Marketing Communications | Email, preferences | Consent |
| Security & Fraud Prevention | Device info, usage patterns | Legitimate interest |
3. How We Share Your Information
We do not sell your personal information. We may share your information in the following limited circumstances:
Service Providers
- Cloud Storage: Secure storage of your data and photos
- AI Processing: Third-party AI services for skin analysis
- Payment Processing: Secure payment handling for subscriptions
- Analytics: Usage analytics to improve our service
- Customer Support: Help desk and communication tools
Legal Requirements
- To comply with applicable laws and regulations
- To respond to legal requests and court orders
- To protect our rights and prevent fraud
- In connection with business transfers or acquisitions
With Your Consent
- Product recommendations from partner retailers
- Sharing anonymized results for research (opt-in only)
- Integration with other health and beauty apps
4. Data Security and Protection
- Encryption: All photos and sensitive data encrypted in transit and at rest
- Access Controls: Strict employee access limitations on a need-to-know basis
- Secure Infrastructure: Industry-standard cloud security practices
- Regular Audits: Ongoing security assessments and improvements
- Data Minimization: We only collect data necessary for our services
5. Your Privacy Rights and Choices
Data Subject Rights (GDPR/CCPA)
- Access: Request copies of your personal data
- Rectification: Correct inaccurate or incomplete information
- Deletion: Request deletion of your personal data
- Portability: Export your data in a machine-readable format
- Restriction: Limit how we process your data
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Remove consent for marketing or optional features
How to Exercise Your Rights
Contact Methods:
- Email: support@skinscope.ai
Response Time: We will respond to your request within 30 days.
Account Controls
- Photo Management: Delete individual photos anytime
- Marketing Preferences: Opt out of promotional emails
- Account Deletion: Permanently delete your account and data
6. Data Retention
We retain your information for as long as necessary to provide our services and comply with legal obligations:
- Account Data: Until you delete your account
- Photos: Until you delete them or your account
- Usage Data: Up to 2 years for analytics purposes
- Communication Records: Up to 3 years for support purposes
- Legal Records: As required by applicable law
7. International Data Transfers
SkinScope operates globally, and your information may be transferred to and processed in countries other than your own, including the United States. We ensure adequate protection through:
- Adequacy Decisions: Transfers to countries with adequate privacy protection
- Standard Contractual Clauses: EU-approved contract terms for data protection
- Certification Programs: Privacy Shield successors and similar frameworks
- Encryption: All international transfers are encrypted
8. Children's Privacy
Teen Users (13-17): Users under 18 must have parental consent. We encourage parents to monitor their teen's use of our Service.
9. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
Categories of Information We Collect
- Identifiers: Name, email, device IDs
- Biometric Information: Facial scan data for analysis
- Commercial Information: Purchase history, preferences
- Internet Activity: App usage, browsing behavior
- Geolocation Data: General location for recommendations
- Sensory Information: Photos you upload
California Consumer Rights
- Right to Know: What information we collect and how we use it
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt out of the "sale" of personal information (we don't sell)
- Non-Discrimination: We won't discriminate against you for exercising your rights
10. European Privacy Rights (GDPR)
If you're in the European Economic Area, you have rights under the General Data Protection Regulation:
Legal Bases for Processing
- Contract: To provide our skincare analysis services
- Legitimate Interest: To improve our service and prevent fraud
- Consent: For marketing communications and optional features
- Legal Obligation: To comply with applicable laws
Data Protection Authority
You have the right to lodge a complaint with your local data protection authority if you believe we have not handled your data properly.
11. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience:
Types of Cookies
- Essential Cookies: Required for basic app functionality
- Performance Cookies: Help us understand how you use our Service
- Functional Cookies: Remember your preferences and settings
- Marketing Cookies: Deliver relevant advertisements (with consent)
Managing Cookies
You can control cookies through your browser settings or our in-app preferences. Note that disabling certain cookies may limit functionality.
12. Third-Party Services
Our Service integrates with third-party services that have their own privacy policies:
- Cloud Providers: Amazon Web Services, Google Cloud Platform
- Analytics: Google Analytics, Mixpanel
- Payment Processing: Apple Pay, Google Pay
- Social Media: Google, Apple Sign-In
- AI Services: Specialized skin analysis providers
We encourage you to review the privacy policies of these third-party services.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make changes:
- We'll notify you via email or in-app notification
- Material changes will be effective 30 days after notification
- Continued use of our Service constitutes acceptance of changes
- You can always review the current version in our app
14. Contact Information
Privacy Questions or Concerns?
- Privacy Team: privacy@skinscope.ai
- General Support: support@skinscope.ai
Response Time: We aim to respond to all privacy inquiries within 2 business days.
15. Additional Information
Data Processing Activities
For a detailed breakdown of our data processing activities, including specific purposes and retention periods, please contact our Privacy Team.
Privacy by Design
We follow privacy by design principles, considering privacy implications in all new features and updates to our Service.
Regular Privacy Reviews
We conduct regular privacy impact assessments and update our practices to ensure ongoing compliance with privacy laws.