Privacy Policy
This Privacy Policy explains how Chromiva (the “App”), developed by AppSweat (“we”, “us”), handles information when you use AI personal color analysis.
1. Information the App Processes
- Portraits: a photo you take or select is uploaded to our Firebase-hosted analysis function and passed to our AI service provider to produce your requested color analysis.
- Analysis results: generated season, palette, undertone, contrast, and styling guidance. Results and a thumbnail are saved locally for History and, when iCloud is available for Chromiva, synchronized to the user's private CloudKit database.
- Preferences: language, appearance, and self-declared style and color preferences are stored locally. Supported preferences may also synchronize through Apple's iCloud key-value storage.
- Anonymous identifiers: Firebase creates an anonymous user identifier used to secure requests and associate usage with the correct Color Pass balance.
- Purchase data: RevenueCat and Apple process product, transaction, entitlement, and Color Pass information. We do not receive your full payment card details.
- Technical data: Firebase App Check may process device attestation information to prevent unauthorized API use.
2. How We Use Information
- Provide the personal color analysis you request.
- Maintain and spend Color Pass balances.
- Secure the service, prevent abuse, diagnose failures, and provide support.
- Display your saved analysis history on your device.
3. AI Processing
Your selected portrait is sent only when you tap Start Analysis. It is processed by our cloud function and AI provider to generate a result. Do not upload a photo unless you have the right and permission to use it. Chromiva is designed for portraits of the user and is not intended for identifying people or inferring health, ethnicity, or other sensitive traits.
4. Service Providers
We use service providers to operate Chromiva, including Google Firebase for authentication, App Check, cloud functions, and operational data; OpenAI for AI analysis; RevenueCat for purchases and virtual currency; and Apple for App Store distribution, payment processing, and optional private iCloud/CloudKit synchronization. Their processing is governed by their own terms and privacy policies.
5. Local Data, iCloud and Retention
Chromiva keeps a local replica of analysis history so the App remains usable when offline. If the device is signed in to iCloud and iCloud access is available to Chromiva, Apple CloudKit synchronizes existing and future History records, result data, and thumbnails through the user's private database. This private data belongs to the user's iCloud account, counts toward the user's iCloud storage quota, and can be restored on devices using the same account. App preferences may synchronize through iCloud key-value storage. If iCloud is unavailable, Chromiva continues using local storage and resumes synchronization when possible.
Deleting a History item removes it from the local store and the deletion is synchronized to CloudKit when available. Uninstalling Chromiva removes its local data but does not by itself guarantee immediate deletion of a previously synchronized iCloud copy. Cloud operational records may separately include generated results and request status associated with an anonymous identifier. We retain information only as reasonably necessary to operate, secure, and support the service.
6. Your Choices
- You may deny Camera or Photo Library access and choose not to run an analysis.
- You may delete saved analyses from History; synchronized deletions are propagated to CloudKit when available.
- You can manage iCloud availability for apps through your device's Apple Account and iCloud settings.
- You may delete the App to remove its local data. Previously synchronized private iCloud data may remain associated with your iCloud account until removed through the App or Apple's iCloud data-management controls.
- You may contact us to request help with cloud operational data associated with your anonymous account. We may need diagnostic information from your device to locate it.
7. Security
We use authenticated requests, Firebase App Check, encrypted network transport, and server-side purchase verification safeguards. No system is completely secure, and we cannot guarantee absolute security.
8. Children
Chromiva is not directed to children under 13 or the minimum digital-consent age in their region. We do not knowingly collect personal information from children.
9. Changes
We may update this policy as the App changes. The current version will remain available on this page with its updated date.