Privacy Policy

At Nail Art AI, your privacy is our top priority. This Privacy Policy explains how we collect, use, protect, and share your personal information when you use our virtual nail art try-on platform and related services.

Effective Date: November 10, 2025 | Last Updated: November 10, 2025

1. Who We Are

Nail Art AI ("we," "our," or "us") is the data controller responsible for personal information collected and processed in connection with our website, mobile applications, and services (collectively, the "Service"). Our Service provides AI-powered virtual nail art try-on technology, design galleries, nail salon directories, and educational resources.

Contact Information:
Email: help@nailartai.app
Website: https://nailartai.app

2. Information We Collect

We collect information to provide, improve, and personalize our Service. The types of information we collect include:

2.1 Information You Provide Directly

  • Account Information: If you create an account, we collect your name, email address, and password.
  • Hand Photos: When you use our virtual try-on feature, you upload photos of your hands. These images are processed temporarily and are not stored permanently unless you explicitly save them to your account.
  • Communications: When you contact us via email or forms, we collect your name, email address, and message content.
  • Preferences: Design favorites, saved designs, search history, and personalization settings.
  • User-Generated Content: Reviews, ratings, comments, or designs you submit to our platform.

2.2 Information Collected Automatically

  • Device Information: IP address, browser type and version, operating system, device type, unique device identifiers.
  • Usage Data: Pages viewed, time spent on pages, links clicked, search queries, referral sources, date and time of visits.
  • Location Information: Approximate geographic location based on IP address (used for salon recommendations).
  • Performance Data: Page load times, errors, crashes, and technical diagnostics to improve Service performance.

2.3 Cookies and Similar Technologies

We use cookies, web beacons, and similar tracking technologies for essential functionality and analytics. See Section 11 "Cookies" for detailed information and choices.

2.4 Third-Party Information

We may receive information from third-party analytics providers (e.g., Google Analytics) and advertising partners to understand how you interact with our Service and measure campaign effectiveness.

3. How We Use Information

We use the information we collect for the following purposes:

  • Provide and Maintain Service: Process your requests, enable virtual try-on functionality, deliver design recommendations, and provide customer support.
  • Personalization: Customize content, recommendations, and search results based on your preferences, browsing history, and design favorites.
  • Improve and Develop: Analyze usage patterns, test new features, improve AI accuracy, optimize performance, and develop new products and services.
  • Security and Fraud Prevention: Detect and prevent fraudulent activity, abuse, spam, and security incidents; enforce our Terms of Service.
  • Communications: Send service updates, technical notices, security alerts, and respond to your inquiries. With your consent, send marketing communications about new features and promotions.
  • Analytics: Understand how users interact with our Service, measure effectiveness of features, and create aggregated statistics.
  • Legal Compliance: Comply with applicable laws, regulations, legal processes, and governmental requests.

Important: We do NOT sell your personal information to third parties, and we never will.

5. How We Share Information

We may share your personal information in the following circumstances:

5.1 Service Providers

We work with third-party service providers who perform services on our behalf, including:

  • Cloud hosting and infrastructure providers (e.g., Vercel, Cloudflare, AWS)
  • Database and storage services (e.g., Supabase, Cloudflare R2)
  • Analytics providers (e.g., Google Analytics, Vercel Analytics)
  • Email service providers
  • Customer support tools

These providers are contractually bound to protect your data and use it only for the services they provide to us.

5.2 Legal Requirements

We may disclose information if required by law, subpoena, court order, or governmental request, or to protect our rights, property, safety, or that of users or the public.

5.3 Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred as part of that transaction.

5.4 Aggregated Data

We may share aggregated, de-identified information that cannot reasonably be used to identify you.

6. Data Retention

We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.

  • Account Data: Retained as long as your account is active, plus a reasonable period thereafter.
  • Hand Photos: Processed temporarily during virtual try-on and deleted immediately after processing unless you save them to your account.
  • Usage Data: Typically retained for 12-24 months for analytics purposes.
  • Support Communications: Retained for 2-3 years to provide ongoing support.
  • Legal Requirements: Some data may be retained longer to comply with legal obligations.

You may request deletion of your personal information at any time by contacting help@nailartai.app.

7. Security Measures

We implement reasonable technical and organizational security measures to protect your personal information from unauthorized access, disclosure, alteration, and destruction. Our security measures include:

  • HTTPS encryption for all data transmission
  • Secure cloud infrastructure with industry-standard protections
  • Regular security audits and updates
  • Access controls and authentication requirements
  • Encrypted data storage where appropriate
  • Employee training on data protection and security

However, no system is completely secure. While we strive to protect your information, we cannot guarantee absolute security. Please use strong passwords and keep your account credentials confidential.

8. International Data Transfers

Your information may be transferred to, stored, and processed in countries other than your own, including the United States, where our servers and service providers are located. These countries may have different data protection laws than your jurisdiction.

When we transfer personal information from the EEA, UK, or Switzerland to other countries, we implement appropriate safeguards, including Standard Contractual Clauses approved by the European Commission, to ensure your data receives an adequate level of protection.

9. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal information:

General Rights

  • Access: Request a copy of the personal information we hold about you.
  • Correction: Request correction of inaccurate or incomplete information.
  • Deletion: Request deletion of your personal information ("right to be forgotten").
  • Portability: Request a copy of your data in a machine-readable format.
  • Object: Object to certain processing activities.
  • Restrict: Request restriction of processing in certain circumstances.
  • Withdraw Consent: Withdraw consent where processing is based on consent.

California Privacy Rights (CCPA/CPRA)

California residents have additional rights including:

  • Right to know what personal information we collect, use, and share
  • Right to delete personal information
  • Right to opt-out of "sales" (we do not sell personal information)
  • Right to non-discrimination for exercising privacy rights

How to Exercise Your Rights

To exercise any of these rights, please contact us at help@nailartai.app with "Privacy Rights Request" in the subject line. We will respond within the timeframe required by applicable law (typically 30 days).

10. Children's Privacy

Our Service is not directed to children under the age of 13 (or the minimum age required in your jurisdiction for data processing without parental consent). We do not knowingly collect personal information from children under 13.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us at help@nailartai.app. We will delete such information from our systems promptly.

11. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to collect and store information. Cookies are small data files stored on your device.

Types of Cookies We Use

  • Essential Cookies: Required for basic site functionality, authentication, and security. Cannot be disabled.
  • Analytics Cookies: Help us understand how visitors use our site (e.g., Google Analytics). You can opt out.
  • Functional Cookies: Remember your preferences and settings.
  • Performance Cookies: Collect information about site performance and errors.

Managing Cookies

You can control cookies through your browser settings. Most browsers allow you to:

  • View and delete cookies
  • Block third-party cookies
  • Block all cookies
  • Clear cookies when you close your browser

Note that blocking or deleting cookies may affect your ability to use certain features of our Service.

12. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:

  • Update the "Last Updated" date at the top of this policy
  • Notify you via email or prominent notice on our Service
  • Obtain your consent where required by law

We encourage you to review this Privacy Policy periodically. Your continued use of the Service after changes become effective constitutes acceptance of the revised policy.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: help@nailartai.app

Website: https://nailartai.app/contact

Response Time: We typically respond to privacy inquiries within 48 hours.

Last Updated: November 10, 2025