Privacy Policy · Hairfy

Last Updated: 2026/10/11

1. Introduction

Hairfy is an app provided by Tunahan Aktay (“we”, “us”, or “our”), who is committed to protecting your privacy. This Privacy Policy applies to Hairfy and its various versions and is part of our Terms of Use. This policy explains what data the app processes, why, and your choices. Before your first photo is sent for AI processing, the app asks for your permission; if you decline, no photo is sent. Hairfy shows no ads and does not track you across other companies’ apps or websites.

You do not need an account to use the app. We do not ask for your name or email address in the app or link analytics to them. Photos may show identifiable people, and contacting support gives us the information you choose to send.

2. Who We Are

Hairfy is developed and operated by Tunahan Aktay, who is responsible for the processing described in this policy. Contact: tunahanaktay.apps@gmail.com.

3. Data We Collect

We process the following categories of data:

User Content

Photos or Videos: Used for App Functionality

You may upload or capture photos solely for AI-powered hairstyle previews, haircut simulations, and hair color transformations. Photos are sent to our AI providers for processing; their handling and retention are described in section 4. The app saves your original photos and results on your device in History until you delete them there or delete the app. We do not store, extract, or analyze facial features for identification or profiling purposes.

Identifiers

Device ID: Used for App Functionality, and Analytics

A device identifier is collected to keep AI requests secure and to prevent abuse. Firebase also assigns an identifier for analytics. We do not link these identifiers to your name or email address.

Location

Coarse Location: Used for Analytics

Firebase Analytics estimates your approximate country and city from your IP address. We do not request or collect your precise location.

Purchases

Purchase History: Used for App Functionality, and Analytics

If you make in-app purchases, transaction data is processed by Apple and RevenueCat to manage your subscription. This data is used to provide access to premium features and to analyze purchasing trends in aggregate. RevenueCat also receives Apple’s install attribution token, which tells us whether the app was found through an Apple Search Ads campaign; Apple provides it without identifying you.

Usage Data

Product Interaction: Used for Analytics

We collect data about how you interact with the app (e.g., screens viewed, features used) through Firebase Analytics. This helps us understand how the app is used and identify areas for improvement.

Diagnostics

Crash Data: Used for App Functionality

Crash reports are collected through Firebase Crashlytics to help us identify and fix issues that affect app stability.

Other Diagnostic Data: Used for App Functionality, and Analytics

Additional diagnostic information (e.g., error logs) may be collected to monitor app health and improve reliability.

Other Data

Other Data Types: Used for App Functionality, and Analytics

Your IP address is used to keep AI requests secure, to prevent abuse, and by AIProxy to measure usage limits.

4. Face Data Collection, Use, and Retention

This section explains how photos containing faces are processed and how that differs from biometric identification.

What face data does the app collect?

The app sends the photo you select as a whole image for a hairstyle or hair color preview; it does not extract separate facial measurements. The app does not create facial recognition templates or biometric identifiers. A photo may still identify the person shown in it.

How is face data used?

The app sends photos containing faces to provide AI-powered hairstyle previews, haircut simulations, and hair color transformations. The AI model processes the photo to create the requested visual transformation. The app does not perform facial recognition or use photos to identify or profile you.

Are photos containing faces shared with third parties?

Photos you choose to transform, together with the instructions describing your selected effect, are sent through AIProxy to OpenRouter, Inc., which routes the request to Google’s AI model. AIProxy relays the request; OpenRouter connects it to the model provider; Google generates the result.

How long are photos retained?

We do not maintain a photo library on our own servers. The app saves originals and results in History on your device until you delete them there or delete the app. Deleting History removes those local copies; it does not send a deletion request to the AI providers.

Provider handling is separate from History. OpenRouter’s privacy policy allows retention of submitted images where necessary for routing, abuse detection, security, billing or legal compliance. Its logging and data-use settings and the model provider’s terms also affect handling. AIProxy records request metadata and error responses. We do not promise immediate deletion, zero data retention or exclusion from all provider training uses. Provider retention and use depend on the applicable service terms and settings; no single deletion period applies to every request. See OpenRouter’s Privacy Policy, OpenRouter’s provider data policies, and AIProxy’s Privacy Policy. Contact us at tunahanaktay.apps@gmail.com for help with a data request.

Summary

QuestionAnswer
Photos containing faces processed?Yes, when you choose to transform a photo.
Biometric analysis performed by the app?No. No facial recognition or identity analysis.
Who receives photos?AIProxy relays requests to OpenRouter and Google’s AI model.
Where are originals and results saved by the app?In History on your device until you delete them or delete the app.
Are providers guaranteed to delete photos immediately?No. Provider handling and retention are described above.
Does the app use photos to identify or profile you?No.

5. How We Process Your Photos

6. Third-Party Services

We use the following third-party services:

These services process data to provide their functions under their applicable terms and privacy policies. We do not link analytics identifiers to your name or email address.

7. Data Retention

8. Data Security

9. Children’s Privacy

Hairfy is not intended for children under 13, or under the minimum age of digital consent in your country if higher. We do not knowingly collect any data from children. If you believe data was shared with us in error, please contact us at tunahanaktay.apps@gmail.com and we will help delete it.

10. International Transfers

Our providers process data in the United States and other countries. Where EU or UK law requires it, these transfers rely on the providers’ data protection terms, such as the EU Standard Contractual Clauses.

11. Your Rights

Depending on where you live, including Turkey, the EU, the UK and California, you can ask to access, correct or delete your personal data, object to or restrict its processing, withdraw consent at any time, and complain to your local data protection authority. Because analytics identifiers are not linked by us to your name or email address, we may be unable to find records that belong to you; email us and we will help as far as we can. You can delete local History photos from History or by deleting the app. Contact us for help with provider-held data; deleting local History does not delete provider records. To withdraw consent for future AI processing, stop submitting photos. Withdrawal does not undo processing already performed. We do not sell your personal information.

12. Changes to This Policy

We may update this Privacy Policy from time to time. The updated version will be posted here with a revised “Last Updated” date. If a change is significant, we will announce it in the app or on this page before it takes effect.

13. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:

Email: tunahanaktay.apps@gmail.com