Privacy Policy
I. Introduction
Heromind Holdings Limited LLC (“we” or “our”) is committed to protecting your privacy. This Privacy Policy
outlines our data protection policies and describes the types of information we may process when you install
and/or use the AI Headshot Generator software application (“the App”, “our App”) on your mobile device. The
name of the App may vary outside the United States and is subject to change without notice.
When we refer
to personal data (or personal information), we mean any type of information related to an identifiable
natural person, especially by referring to such data. It is information related to a natural person who can
be identified, directly or indirectly, particularly through reference to an identifier such as a social
security number or one or more factors specific to the physical, physiological, psychological, economic,
cultural, or social identity of that person. Our Privacy Policy applies to all users and others who access
the App.
In terms of GDPR, we are data controllers, unless otherwise stated.
California Residents:
Important Notice
Under the California Consumer Privacy Act (CCPA) of 2018, residents of California have
the right to request:
Categories of personal information processed;
Categories of sources from which
personal information is obtained;
The purposes for processing user personal data;
Categories of third
parties with whom your personal information may be shared;
Specific pieces of personal information we may
have obtained about a user, if the data provided in the request is sufficient and allows user
identification.
Personal Information
Details on categories of information, its sources, and purposes
of processing.
Note that under CCPA, personal information does not include de-identified or aggregated
consumer information.
Sharing
How we share your information.
Note that all third parties involved
in processing user data are service providers using such information for business purposes under
agreements.
Submitting Verifiable Requests
Be prepared to provide sufficient information for us to
reasonably verify you are the person from whom we collected personal information or an authorized
representative, which may include your name, address, city, state, ZIP code, and email address. We may use
this information to pose a series of security questions to verify your identity. If the request is made
through an authorized agent acting on your behalf, the agent must provide a written authorization or power
of attorney signed by you.
Response Time
We aim to respond to a verifiable consumer request within
forty-five (45) days of its receipt. If more time is needed, we will inform you in writing of the reason and
extension period. Note that we are only required to respond to two requests per customer each year.
Equal
Rights
Our processing of your requests shall not be construed as discriminatory, meaning if you choose to
exercise your rights, we will not provide you with different pricing or products, or a different level or
quality of services. However, in some cases, if you choose to have your personal information deleted from
our records, we may not be able to provide services.
Data Selling
We do not sell any of your personal
data, except as outlined in Section Four below.
Please read the following privacy policy carefully to
understand how your personal information may be processed. By using the App, you acknowledge that you have
read, understood, and agree to be bound by these terms.
II. Information We Process
Several categories of information can be processed.
Automated Processing of Information
With your
permission, we use third-party automated data processing technologies (advertising or analytics tools) to
analyze certain information sent by your device via our App (advertiser ID for iOS devices/Ad ID or Android
ID for Android devices). Some integrated advertising or analytics tools (please refer to Section Four for a
list) initiate automated processing of your personal data, including analysis, which means any form of
automated processing of personal data to evaluate certain personal aspects related to you, particularly
analysis or prediction of aspects concerning your personal preferences, interests, behavior, location, or
movements (please refer to the data list described below). Once you allow our App to track your activities,
information processing automatically starts through automated data processing technologies. You can withdraw
your permission at any time - please see the opt-out options in Section VIII below.
We may process some
information about your device and user behavior based on our legitimate interest. This information belongs
to the data categories described in the “Automated Processing of Information” section above and is usually
non-personal, meaning it does not allow direct association with any specific individual, and we can only
access it in aggregated form. We use this information to improve our App and provide the best experience for
our users.
Device Details When you access our App using a mobile device (tablet/phone/smartwatch), the
system reports certain details about your device, including a “device identifier”. A device identifier is a
small data file or similar data structure stored on or associated with your mobile device, uniquely
identifying your mobile device (but not you personally). Device identifiers support third parties in generic
reporting or personalized content and advertisements.
Data That Can Be Processed Information about the
device itself: device type, operating system type and version, model and manufacturer, screen size, screen
density, orientation, volume and battery, device memory usage. Information about the internet connection:
mobile carrier, network provider, network type, IP address, timestamps and session duration, speed, browser.
Location-related information: IP address, country/region/state/city code associated with your SIM card or
device, language settings, time zone, proximity to commercial points of interest (e.g., “coffee shop”).
Other device identifiers: such as user identifiers (if set by the app developers). Information about the
application: Our app’s name, API key (application identifier), version, attributes, for automated processing
and analysis. Some services also record a list of applications and/or processes installed or running on your
device.
Cookies and Similar Technologies When you use the App, cookies and similar technologies (pixels,
web beacons, scripts) may be used. Cookies are small text files containing a small amount of information
downloaded to your device when you visit the App. Each time you use the App, the text file is sent back to
the server. This enables us to operate the App more effectively. For example, we will understand how many
users access specific areas or features of our App and which links or ads they click on. We use this
aggregated information to understand and optimize how our App is used, improve our marketing efforts, and
provide content and features that interest you. We may request advertisers or other partners to provide ads
or services to the App, which may use cookies or similar technologies.
Log File Information Log file
information is automatically reported each time you request access to the App. It can also be provided when
the App is installed on your device. When you use our App, analysis tools automatically log certain
information, including the date and time you start and stop using the App, and how you interact with
it.
Advertising-Related Information Data about ads you may view can be reported: the date and time a
particular ad was delivered; records of whether the ad was “clicked” or shown as a “conversion” event; what
the content of the ad offer was; what type of ad it was (e.g., text, image, or video); which ad placement
was involved (where the ad offer appeared within the App); whether you responded to the ad.
In-App Events
When you use our App, analysis tools automatically log information about your activities (tutorial steps,
upgrades, payments, in-app purchases, custom events, progress) events, limiting methods of user data
processing). Information automatically provided to advertising or analysis tools is generally beyond our
control, and therefore we are not responsible for the processing of such information. Note that some
services involving personal data analysis may obtain information related to your personality and/or your
device using technologies not under our responsibility. If your user ID is linked to your Facebook account,
Facebook may combine your device information with categorized data recorded in its database (e.g., your age,
gender, or other demographic indicators). We do not control, oversee, or guarantee how third parties process
your personal data, which may be collected by them in their own ways (not through our App). Any requests for
information disclosure about your personal data should be made directly to such third parties (see Section
Four).
Payment Information Our e-commerce providers (Apple / Google) are responsible for billing,
processing, and charging for in-app purchases, handling your personal information, and ensuring its absolute
security. This information is processed as part of fulfilling the contract between you and us. We do not
have access to or use your credit card or debit card information. You can access applicable
"in-app" purchase rules and policies directly from the app store.
III. Purpose for Processing Your Personal Data
Face Data Policy
• We do not collect Face data
We analyze your photos to find the feature points of the
faces in the photos (eg eyes, nose, mouth points) for face processing. We do not collect facial data. After
the analysis process, all data will be deleted and no data will be saved.
• Purpose and process of
collecting face data
In order to give you the "face swap" effect, we need to find feature
points (e.g. eyes, nose, mouth points).
The complete process is: (1) You submit the selected photo to our
server in an encrypted way; (2) The server analyzes the face data in your photo and applies it to the
template you choose; (3) After the composition is completed, the server returns the final rendering effect
to you through the application;(4) The final composite effect will be temporarily stored in encrypted
storage, and will be permanently deleted after a certain period of time. After the compositing process is
complete, we will delete the face image you submitted to the server immediately.
• Face data sharing and
storage
We will not share your face data with any third party, nor will we store any face information you
submit, and the photos you upload will be deleted after the analysis process is complete.
Our mission is to continually improve our App and provide you with new experiences. As part of this mission,
we use your information for the following purposes:
To provide our services: We use functional
information and automated processing information to deliver all requested services.
To improve, test, and
monitor the effectiveness of our App: We use automated processing information to better understand user
behavior and trends, detect potential disruptions and technical issues, and operate, protect, improve, and
optimize our App.
To offer interest-based (behavioral) advertising or other targeted content: We may use
automated processing information for marketing purposes (to display ads that may include content of interest
to you based on your preferences). We provide personalized content and information, which may include online
ads or other forms of marketing.
To communicate with you: We use the information we have to communicate
with you through newsletters, send you marketing notifications, receive your feedback on our App experience,
and inform you about our policies and terms. When you contact us, we also use your information to respond to
you.
To prevent fraud and spam, enforce the law: We are keen to ensure our App is free from spam and
fraudulent content so that you feel safe and free. We may use your information to prevent, detect, and
investigate fraud, security breaches, potentially prohibited or illegal activities, protect our trademarks,
and enforce our terms of use.
IV. Sharing Your Information
We share your information with third parties only as described in this Privacy Policy. We adhere to the
self-regulatory principles for the mobile environment of the Digital Advertising Alliance in the
USA.
Please note, when integrating external services, we select third-party organizations that can ensure
they adopt all necessary technical and organizational measures to protect user personal data. However, we
cannot guarantee the security of any information transmitted to any such third party. We are not responsible
for any accidental loss or unauthorized access to your personal data due to the fault of third
parties.
We may share your information with third-party organizations providing automatic data processing
technology for our App, such as information from log files, device identifiers, and location data. We do not
control or influence these third parties' tracking technologies or how they are used.
We may also
share certain information with third-party advertising partners, such as cookie data. This information
enables third-party ad networks to deliver targeted ads they believe will be of most interest to you.
We
may engage the following third-party service providers to provide infrastructure needed for delivery and
improvement of services:
Apple Inc. Cloud Storage Provider (for iOS devices) USA Apple Privacy
Policy
Mixpanel User behavior analytics Mixpanel Privacy Policy
Firebase (Google LLC) Analytics
Service Provider USA Firebase Privacy Support
AppsFlyer Mobile advertising and data analytics AppsFlyer
Privacy Policy
Google Analytics Web analytics and traffic statistics Google Privacy Policy
Facebook
(Meta Platforms, Inc.)https://www.facebook.com/privacy/explanation
For more information about these services and their privacy options (including opt-out), please refer to
their respective websites and privacy policies. We are not responsible for any third-party's misuse of
your personal data contrary to our instructions.
Our App may contain links to third-party
websites/services or be accessible from third-party websites. We are not responsible for the privacy
practices of these third-party websites or services linked to our App, including the information or content
contained within them.
In cases of objective necessity, public interest, or other unforeseeable
circumstances, we may disclose your personal information:
As required by law;
When we sincerely
believe disclosure is necessary to protect our rights, your safety or the safety of others, investigate
fraud, or respond to government requests;
In the event of a merger, acquisition, or sale of all or part
of our assets, you will be notified via email and/or a prominent notice in our App about any change in
ownership or uses of your personal information, as well as any choices you may have regarding your personal
information.
V. International Data Transfer
We offer our App to users around the world. Our third-party organizations that provide automatic data
processing technology for the App or our third-party advertising partners may transfer the information
processed automatically across borders, from your country or jurisdiction to other countries or
jurisdictions worldwide.
If you are located in the European Union or other regions where laws governing
data processing may differ from U.S. law, please note that we may transfer information, including personal
information, to a country and jurisdiction that does not have the same data protection laws as your
jurisdiction.
This means your personal information may be transferred to a third country, a territory or
one or more specified sectors within that third country, or an international organization where data
protection and privacy regulations may not offer the same level of protection for personal data as in your
country.
We strive to ensure that any recipient of personal data provides suitable protection for such
data in accordance with current legislation governing the protection of such information. By using the App,
you consent to the transfer of your personal data to any third country, a territory or one or more specified
sectors within that third country, or an international organization.
For data storage purposes, we resort
to the services of hosting organizations. We take your privacy seriously, therefore, where possible, we
encrypt your personal data before sending it to hosting organizations for storage. Please note that we only
collaborate with hosting organizations that have passed our security and reliability checks.
VI. Exercising Your Rights
Applicable data protection law grants you certain rights regarding your personal information. With respect to
your personal information, you have the following choices:
Data Access and Portability: You may request a
copy of your personal information.
Change or Correct Data: If you cannot update the data yourself through
your account, you have the right to request correction, update, or rectification of your data.
Data
Retention and Deletion: User data is generally retained as long as your user profile exists or as needed to
provide relevant services. However, the specific retention period may vary depending on the context of the
processing performed. You have the right to request deletion of all or part of your personal data that we
hold.
Restriction on Processing: In certain circumstances, you may have the right to restrict the ways in
which your personal information is used.
Objection to Processing: In certain circumstances, you may
object to the automatic processing of your personal information. If your personal information is processed
for direct marketing purposes, you may request to stop processing your data for these direct marketing
purposes. To exercise your rights, contact the third-party services listed in Section IV to learn how to
object to the processing of your data. Most of them have clear instructions on their privacy pages,
functionality APIs, or other options.
VII. Security
The security of your personal information is of utmost importance to us. We follow generally accepted
industry standards to protect the personal information submitted to us, both during transmission and once we
receive it.
Considering the risks involved in the processing and the nature of personal information, we
take reasonable and appropriate measures to protect personal information from loss, misuse, and unauthorized
access, disclosure, alteration, and destruction.
We implement appropriate technical and organizational
measures aimed at effectively implementing data protection principles, such as data minimization, and
integrating necessary safeguards into the processing. We seek to use appropriate and robust encryption
algorithms (including hashing where possible) to encrypt your personal data.
Unfortunately, no method of
transmission over the Internet or method of electronic storage is 100% secure. While we strive to protect
your personal data, we cannot guarantee its absolute security. Should your personal information be
compromised due to a breach of security, we will notify you immediately in accordance with applicable
law.
If you have any questions about the security of our App, you can contact us using the email or
contact form displayed below.
VIII. Changes to the Privacy Policy
This Privacy Policy will be updated regularly. Whenever we make changes to this Privacy Policy, we will post those changes to this Privacy Policy and other places we deem appropriate. Depending on the circumstances, we may provide additional forms of notice of modifications or updates.
IX. Sharing of Consumption Data with Apple
As part of our commitment to providing a seamless experience for users, we may share specific consumption data with Apple to assist in refund request evaluations. This data may include details about your usage and interaction with purchased content. The sole purpose of sharing this data is to help Apple make informed decisions regarding refund requests.
We ensure that such data sharing is conducted in compliance with Apple’s policies and applicable privacy laws. Apple will handle this data according to its Privacy Policy and Platform Security Guidelines, and it will not be used for tracking or marketing purposes.
You retain the right to withdraw your consent for this data sharing at any time. If you withdraw your consent, we will cease sharing your data with Apple immediately for refund processing purposes. For further details on managing your privacy preferences, please visit privacy.apple.com.
X. How to Contact Us
If you have any questions about this Privacy Policy, please feel free to contact us at support@allapp.net.