Legal
Privacy Policy
Last updated: August 10, 2026
This policy explains how Glamorae collects and uses your information. The section on user-uploaded images below is the one that governs your photos.
1. Information we collect
- Account data: email address, display name, username, avatar, bio, and location you choose to add.
- Content data: images you upload plus their titles, categories, hashtags, notes, source links, and public/promoted settings.
- Usage data: saves, board activity, and your More/Less taste signals, which are stored on your device to personalize your feed.
2. User-uploaded images
What we store. When you upload a photo we store the image file itself along with metadata you provide (title, category, hashtags, notes, source link) and system metadata (uploader ID, upload timestamp, file size and type). We do not use uploaded photos for facial recognition or biometric identification.
Where it is stored. Images are stored in our managed cloud storage (Supabase infrastructure hosted on Amazon Web Services) in a private bucket, encrypted in transit (TLS) and at rest. Files are not publicly addressable: the App serves them through short-lived signed URLs, and access rules restrict each file to its owner’s folder.
Who can see it. Only you, unless you mark a look as public — public looks appear to other signed-in members in the community feed, swipe deck, and hashtag search. A promoted look is additionally surfaced higher in those feeds. You can switch a look back to private at any time from your profile.
How long we keep it.
- While your account is active: images are retained until you delete them.
- When you delete an image: it is removed from all feeds immediately and purged from primary storage within 30 days. Encrypted backup copies age out within 90 days.
- When you close your account: your profile and all uploaded images are deleted from primary storage within 30 days, and from backups within 90 days.
- When content is removed by a takedown: the image is disabled immediately and deleted from primary storage. We retain a limited record — the notice, the file hash, the uploader ID, and the removal date — for at least 3 years to administer our repeat infringer policy and to meet legal obligations, as described in our DMCA & Copyright Policy. If you file a counter-notice and the content is restored, the disabled file is reinstated from backup where technically possible.
- Legal holds: where content is subject to an active dispute, investigation, or legal request, we retain it until the matter is resolved, even if you requested deletion.
3. How we use information
To operate the App, display your content, personalize recommendations, connect you with beauty professionals, prevent abuse, and comply with the law. We do not sell your personal data or license your images to third parties.
4. Your rights
You can access, correct, export, or delete your data from your profile, or by emailing privacy@myapp.com. Depending on where you live, you may have additional rights under the GDPR or CCPA, including objecting to processing and lodging a complaint with a supervisory authority.
5. Children and contact
The App is not intended for children under 13. Questions about this policy: privacy@myapp.com. See also our Terms of Service.