Privacy Policy
Effective date: 18 September 2026
This Privacy Policy explains how Aswell ("the app", "we", "us") collects, uses, and protects your information. The app is operated by Alperen Sirli, an individual developer based in Poland ("the developer").
Contact for any privacy question or request: privacy@aswell.app.
We built Aswell to collect as little as possible, to keep your photos on your device wherever we can, and to never sell your data. This policy describes exactly what happens to the information you give us.
1. Summary (the short version)
- Posture photos never leave your phone. They are analysed entirely on your device and are stored only on your device.
- Face photos are sent to our server only to be analysed, and we do not keep them. They are forwarded to our AI provider for a one-time reading, then discarded. The photo itself is stored only on your device.
- A face reading uses biometric data, which the law treats as sensitive. We ask for your explicit consent once before your first face reading, and anyone who tells us they are under 16 is blocked from the face feature entirely.
- Our usage analytics carry no personal details — a random app identifier, no name, no email, no link to your account.
- We also store the things you'd expect so your progress follows you: your setup answers, your habits and activity history, and your past readings (text only). Never photos.
- You can delete everything, on the device and on our servers, from within the app.
2. Who we are (data controller)
The data controller responsible for your information is:
Alperen Sirli Individual developer, Poland privacy@aswell.app
3. What we collect, and why
a) Account information
If you create an account, we collect your email address, the first name you give us at sign-up (used only to greet you in the app), and a password (stored only as a secure hash by our authentication provider). You need an account to run a face reading and to sync your history across devices.
- Purpose: sign-in, syncing your data, and managing your subscription entitlement.
- Legal basis (GDPR): performance of a contract (providing the service you asked for).
b) Face photos and readings (biometric data)
When you choose to run a face reading, your selfie is sent securely to our server, which forwards it to our AI provider (Anthropic, the maker of Claude) to be classified. The AI returns a description of visible, changeable surface features (for example skin dryness, redness, breakouts, puffiness, and a descriptive face shape used only for styling suggestions).
- The photo is not stored on our servers. It is held in memory only for the moment it takes to process the request, forwarded to the AI provider, and then discarded. We keep no copy.
- The reading (the text result) and the photo are stored on your device. If you are signed in, the text result and its findings are synced to our servers so your history is available across devices — but the photo is not synced; it stays on your device.
- Because a face reading analyses features of your face, it involves biometric data, which is a special category of personal data under GDPR.
- Purpose: to give you the skin/appearance reading you requested.
- Legal basis (GDPR): your explicit consent (Article 9(2)(a)), which we request once, before your first face reading. You can withdraw it at any time by not using the feature and by deleting your data (see Section 8).
c) Your setup answers (profile)
During onboarding we ask a short set of questions so the app can tailor what it suggests: your age band, gender, whether you train and how often, how much you typically sleep, and whether your day is mostly at a desk, on your feet, or mixed. If you are signed in, these answers are synced to our servers with your account so your setup follows you to a new device.
- Purpose: to tailor the habits and suggestions the app gives you (and, for age, to apply the face-feature age limit — see (e) below).
- Legal basis (GDPR): performance of a contract. Your sleep and training answers describe your lifestyle rather than a medical condition. Where they count as health-related data, the basis for those two is your explicit consent.
d) Posture photos and readings
Posture readings are processed entirely on your device using an on-device model. Your posture photos are never uploaded to our servers or any third party. The resulting posture findings are stored on your device and, if you are signed in, the findings (not the photos) are synced so your history follows you.
- Purpose: to give you the posture reading and exercises you requested.
- Legal basis (GDPR): performance of a contract. (No photo leaves your device.)
e) Age
We ask your age band during onboarding (see (c) above). We use it to decide whether the face feature is available to you — anyone who tells us they are under 16 is blocked from face readings — and to tailor the experience. We do not use it for advertising.
- Legal basis (GDPR): compliance with a legal obligation and your consent.
f) Usage analytics
We collect product analytics that carry no personal details, to understand how the app is used and to improve it — for example, that the app was opened, that a scan was started or completed, or that a screen was viewed. These events are tied to a random, app-generated identifier, not to your name, email, or account. We enforce this in code: personal fields are stripped before any event is recorded.
- Purpose: to measure and improve the product.
- Identifier: the install identifier is a random value generated on your device. It is not derived from any device or advertising ID and is never linked to your account or email. It lasts as long as the app stays installed; reinstalling the app creates a new one.
- Legal basis (GDPR): our legitimate interest in improving the app, limited to data that carries no personal details.
- Note: because these events are not linked to your account, we cannot single them out to delete them if you delete your account (see Section 7).
- Provider: these events are recorded in our own backend (Supabase). No third-party analytics or crash-reporting tool receives them.
g) Subscription and payments
If you subscribe, the purchase is handled by Apple's App Store, and your subscription is tracked by our subscription manager, RevenueCat. RevenueCat receives your internal account identifier (a random ID, not your email or name) and your App Store purchase history, so it can tell the app what you can access. We never see or store your card or payment details. We store only your subscription status (active or not).
- Legal basis (GDPR): performance of a contract.
h) Notifications
If you allow notifications, we schedule reminders (for example, that a new reading is due). Today these are local notifications only — they are scheduled and fired by your own device, and no push token or device identifier is sent to us or to any notification service. If we add server-sent push notifications later, a device push token would be processed by the notification service (Expo) to deliver them, and we will update this policy first.
i) Your progress and habit data
As you use the app we store what you have done: your habits (including any you add yourself), your daily activity and check-in history, and the frozen record of each past reading (its findings and the routine or suggestions it produced). If you are signed in, this history is synced to our servers so it follows you to a new device. Photos are never part of that sync — only the text records.
- Purpose: to show you your history and progress, and to generate your daily suggestions.
- Legal basis (GDPR): performance of a contract.
j) Written progress summaries (AI)
When you open a before/after comparison, the app may show a short written summary of what changed. The comparison itself is calculated by the app; to phrase it in plain language, our server sends a small set of already-decided facts about the change (for example, which pillar it concerns and which finding moved) to our AI provider (Anthropic), which returns two or three sentences. No photo is ever sent for this, and the AI never receives your name, email, or account details.
The returned sentences are stored on our servers, tied to your account, so that re-opening the same comparison does not generate a new one. They are kept until you delete your account.
- Purpose: to describe your progress in readable language.
- Legal basis (GDPR): performance of a contract.
k) Technical logs
Our server keeps a minimal, no-photo, no-content log of face-reading requests — just an internal user identifier and a timestamp — to enforce rate limits and cost caps that protect the service. These logs are automatically deleted after a short period (currently one day).
4. What we do NOT do
- We do not sell your personal data.
- We do not use your photos to train AI models, and our AI provider does not train its models on what we send it.
- We do not show third-party advertising, and we do not track you across other apps or websites.
- We do not upload your posture photos, ever.
5. Who we share data with (processors and sub-processors)
We share data only with the service providers that make the app work, and only as needed. Each acts as our processor under a data-processing agreement:
| Provider | What they process | Why |
|---|---|---|
| Supabase | Account email and first name, your setup answers, synced readings/findings and habit/progress history (no photos), written progress summaries, subscription status, usage analytics, technical logs | Backend hosting, authentication, database, and server functions. Hosted in the EU (Ireland). |
| Anthropic (Claude) | (1) Your face photo, at the moment of a reading only; (2) a few already-decided facts about a before/after change, to phrase it in words (no photo, no name, no email) | AI classification of the selfie, and the written progress summary. Neither is retained by us — see the retention note below the table. |
| Apple App Store | Purchase and subscription transactions | Payments and app distribution. |
| RevenueCat | Your internal account identifier (random ID) and App Store purchase history | Managing subscriptions. |
| Expo | App update delivery | Delivering app updates. |
Retention at our AI provider: we keep no copy of what we send to Anthropic, but Anthropic applies its own retention window: it deletes API requests and responses within 30 days, unless it must keep them longer to investigate misuse or to meet a legal obligation. Anthropic does not use them to train its models.
Some of these providers may process data outside your country. Where data leaves the EU/EEA, it is protected by appropriate safeguards (such as Standard Contractual Clauses).
We may also disclose information if required by law, or to protect the rights, safety, or property of our users or the developer.
6. Where your data is stored
- On your device: your photos (face and posture), your readings, and your local settings. Removing the app removes this local data.
- On our servers (Supabase): your account email and first name, your setup answers (age band, gender, training, sleep, day type), your synced readings and findings, your habits and daily activity history, the written progress summaries, your subscription status, usage analytics, and short-lived technical logs. Never your photos — no photo of any kind is stored on our servers.
7. How long we keep it
- Photos: face photos are not retained on our servers at all; both face and posture photos remain on your device until you delete them or remove the app.
- Account, setup answers, synced readings, habit/progress history, and written progress summaries: kept until you delete your account (see Section 8), after which they are removed from our servers.
- Technical face-reading logs: automatically deleted after a short period (currently one day).
- Usage analytics: retained in aggregate. Because these events are tied only to a random install identifier and are never linked to your account, we have no way to find "your" events — so they are not removed when you delete your account, and they cannot be used to identify you.
8. Your rights and choices
Wherever you live, you can:
- Delete everything. The app includes a Delete account action that removes your account and all of the data above from our servers, and clears local data (including your photos) on the device. The one exception is the usage analytics described in Section 3(f), which are not linked to your account and therefore cannot be traced back to you or singled out for deletion.
- Withdraw consent for face readings at any time by not using the feature and deleting your data. Withdrawal does not affect processing already carried out.
- Turn off notifications in your device settings.
If you are in the EU/EEA (GDPR), you also have the right to access, correct, export (portability), restrict, or object to our processing of your data, and to withdraw consent. To exercise any of these, email privacy@aswell.app. You also have the right to complain to your local data protection authority (in Poland, the UODO — Urząd Ochrony Danych Osobowych).
If you are in California or another US state with privacy rights, you may request access to or deletion of your personal information, and we will not discriminate against you for exercising those rights. We do not sell your personal information.
9. Children
Face readings are not available to anyone under 16. Anyone who tells us during onboarding that they are under 16 is blocked from the face-reading feature entirely, and we never process biometric data about them.
Users under 16 can still use the rest of Aswell (posture readings, exercises and habits) with the permission of a parent or guardian. For them we process only the data those features need, as described in Section 3. Their posture photos never leave their phone, as for everyone.
If you are a parent or guardian and want your child's data deleted, contact privacy@aswell.app and we will delete it.
10. Security
We use encrypted connections (HTTPS) for all data sent to our servers, store passwords only as secure hashes, and restrict database access with row-level security so users can only reach their own data. No system is perfectly secure, but we take reasonable steps to protect your information.
11. This is not medical advice
Aswell describes visible, surface, changeable features and suggests general habits. It does not provide medical, dermatological, or diagnostic advice. If the app ever notes that something might be "worth checking," that is only a neutral prompt to see a professional — it is not a diagnosis. Always consult a qualified healthcare provider about any health concern.
12. Changes to this policy
We may update this policy as the app evolves. When we make material changes, we will update the effective date above and, where appropriate, notify you in the app.
13. Contact
Questions, requests, or concerns:
Alperen Sirli privacy@aswell.app