FrameMog Privacy Policy

Effective Date: March 22, 2026

This Privacy Policy applies to the FrameMog mobile application (the “Application”). By downloading, installing, or using the Application, you agree to the collection and use of your information as described in this policy.

1. Information We Collect

1.1 Account Information

When you create an account, we collect your email address and any profile information you choose to provide.

1.2 User-Generated Content

If you choose to post gym and fitness photos to the community feed, those photos are stored in our database and made visible to other users of the Application. Posting to the community feed is strictly voluntary and requires your explicit acknowledgment and consent before submission.

1.3 Face Scan Data

The Application offers an AI-powered face scan feature. When you use this feature:

  • You voluntarily submit two photos of yourself — a front-facing photo and a side profile photo — for AI-powered facial analysis.
  • These two photos are transmitted to a third-party AI service, xAI (Grok API), solely to generate your analysis results. See Section 3 for full details on this third-party data sharing.
  • The AI-generated analysis and scores produced from your scan are stored in our database and displayed only to you. This data is never shared publicly or with other users.
  • Your submitted photos are stored in our database solely so that you can access your past scan history within the Application.
  • Face scan data (photos and analysis results) is retained until you delete a specific scan or delete your account entirely, at which point all associated data is permanently removed from our database.

1.4 Device and Usage Information

We automatically collect certain technical information when you use the Application, including your device's IP address, operating system, pages visited within the Application, and time spent on those pages. This information is used to improve the Application and diagnose technical issues.

2. How We Use Your Information

We use the information we collect to:

  • Operate and provide the features and functionality of the Application.
  • Deliver your AI face scan results and maintain your personal scan history.
  • Display community feed content that you have voluntarily posted.
  • Enforce our Terms of Service and Zero Tolerance Policy for objectionable content.
  • Communicate with you about your account, important notices, and updates.
  • Improve and develop the Application through aggregated, anonymized usage data.

3. Third-Party AI Service: Data Collection, Use, and Sharing

Because the AI Face Scan feature involves sharing your personal data with a third-party service, we want to be fully transparent about exactly what happens with your data.

3.1 What Data Is Collected and Sent

When you use the AI Face Scan feature, the following data is sent to the third-party AI service:

  • Two photos: A front-facing photo and a side profile photo of your face that you voluntarily provide.
  • A system prompt: Instructions that tell the AI service how to analyze your photos and what data points to return.

No other personal data — such as your name, email address, account information, or device information — is sent to the third-party AI service.

3.2 Who the Data Is Sent To

Your photos are sent to xAI, the company that operates the Grok API. xAI is the sole third-party recipient of your face scan photos. You can review xAI's privacy policy at x.ai/legal/privacy-policy.

3.3 How the Third Party Uses Your Data

xAI processes your two photos solely to generate your AI face scan analysis. The analysis is returned to the Application as structured data points about your facial features. xAI does not use your photos for any other purpose, including training AI models, advertising, or sharing with additional third parties.

3.4 Third-Party Data Retention

xAI does not store or retain your photos after processing is complete. Your photos are used only for the duration of the analysis request and are discarded by xAI immediately after results are returned.

3.5 Third-Party Data Protection

We require that any third-party service we share user data with maintains protections for your data that are equivalent to or exceed those described in this Privacy Policy. xAI's handling of your data is governed by their privacy policy referenced above.

3.6 Your Consent

Before your photos are sent to xAI for analysis, the Application will clearly disclose what data is being sent and to whom, and will ask for your explicit consent. Your photos will not be transmitted to any third-party AI service without your permission. You may decline consent at any time, in which case the AI Face Scan feature will not be available to you.

4. Face Data: Additional Detail on Collection, Use, and Retention

Because face data is sensitive personal information, we provide the following additional transparency.

What face data is collected: When you use the AI Face Scan feature, you voluntarily upload two photos — a front-facing photo and a side profile photo of your face. The Application does not use the device camera to passively capture face data. You initiate every scan manually.

How face data is used: Your submitted photos and the AI-generated analysis associated with them are stored in our database exclusively to provide you with access to your past scan results. There is no other use of this data.

Sharing: Your photos are transmitted to xAI (Grok API) for the sole purpose of generating your AI analysis, as described in Section 3. No other third party receives your face data.

Storage: Face scan data is stored securely in our database hosted by Supabase.

Retention: Face scan data is retained for as long as you maintain an account and have not deleted the relevant scans. When you delete a scan, the photos and associated analysis data are permanently removed from our database. When you delete your account, all face scan data associated with your account is permanently deleted.

5. Third-Party Services

The Application uses the following third-party services that may receive limited data necessary to provide their functionality:

ServicePurposeData SharedPrivacy Policy
xAI (Grok API)AI facial analysis for the Face Scan featureTwo face photos (front-facing and side profile), transmitted temporarily for analysis onlyx.ai/legal/privacy-policy
RevenueCatSubscription managementPurchase and subscription data as required for billingrevenuecat.com/privacy
SupabaseDatabase hosting and authenticationAccount data, user-generated content, and face scan data as described in this policysupabase.com/privacy

6. User-Generated Content and Community Feed

Photos you post to the community feed are visible to all users of the Application. You may delete any photo you have posted at any time through the My Posts section of the Application. Deleting a post removes it from the feed and from our database.

The community feed uses a strictly positive engagement model. Other users can acknowledge your post with a Plus Aura (equivalent to a like). There is no negative rating or downvote mechanism. Tapping Next on a post has no effect on your profile or score.

Photos posted to the feed must be gym or fitness content.

7. Content Moderation and User Safety

We maintain a zero tolerance policy for objectionable content and abusive behavior. The Application includes the following safety mechanisms:

  • Users can report any photo or user through in-app reporting tools. Reported content is immediately removed from the reporting user's feed and reviewed by our team within 24 hours.
  • Users can block any other user. Blocking immediately removes that user's content from your feed and notifies our moderation team.
  • We reserve the right to remove content and permanently ban users who violate our Terms of Service.

8. Data Retention and Deletion

We retain your account information and associated data for as long as your account is active. You may request deletion of your account at any time through the Application. Deleting your account permanently removes all of your data — including your profile, posted photos, face scan photos, and face scan analysis history — from our database.

To request manual data deletion, contact us at ianmcarscadden@gmail.com.

9. Children's Privacy

The Application is not intended for users under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided personal information, we will immediately delete it. If you believe a child has provided us with their information, please contact us at ianmcarscadden@gmail.com.

10. Security

We take reasonable technical and organizational measures to protect your information from unauthorized access, disclosure, or loss. However, no method of transmission over the internet or electronic storage is completely secure, and we cannot guarantee absolute security.

11. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of this document and notify you through the Application or via the email address associated with your account. Continued use of the Application after any changes constitutes your acceptance of the updated policy.

12. Contact Us

If you have any questions about this Privacy Policy or how your data is handled, please contact us:

Email: ianmcarscadden@gmail.com

In-App: Use the Contact Support feature within the Application