Legal

Privacy Policy

Last updated: July 23, 2026 — placeholder for counsel review.

1. What we collect

Account data (email, display name, hashed credentials), purchase records (pack, price, payment reference — never full card numbers, which stay with the payment provider), and standard service telemetry (logs, device and usage data) needed to operate and secure the Services.

2. Your photographs

reGlow™ processes images to provide retouching. During the beta, projects and photos are stored locally in your browser. Where server-side processing is used, images are transmitted encrypted, processed for the requested operation, and not used to train models or shared with third parties.

3. How we use data

To provide and secure the Services, fulfill purchases, provide support, and meet legal obligations. We do not sell personal data. Processing is based on contract performance, legitimate interest, or consent as applicable.

4. Retention & your rights

We keep data only as long as needed for the purposes above. Depending on your jurisdiction (including GDPR/CCPA), you may request access, correction, deletion, portability, or object to processing — contact privacy@nipik.example. You may lodge a complaint with your supervisory authority.

5. Processors & transfers

We use vetted processors (hosting, authentication, payments, email) bound by data-processing agreements. Cross-border transfers use recognized safeguards (e.g. SCCs). The current processor list is available on request.

6. Security

Encryption in transit, hashed credentials, least-privilege access controls and row-level isolation of user data. No method is 100% secure; we notify affected users of breaches as required by law.