Who is responsible
UnBald is operated by ANVOG LLC, a company formed in New Mexico, United States, operating from Brooklyn, New York. This policy covers the UnBald app and unbald.app. For privacy questions or requests, email business@anvog.llc with “UnBald privacy” in the subject.
Information UnBald uses
- Photos and results. The app captures views of your crown and both sides of your hairline. Photos may include your face and surroundings. We process them to produce a Norwood stage estimate, confidence and photo-quality indicators, written observations, and illustrated markings.
- Your answers. Age, when you noticed hair loss, hair type, selected treatments, and approximate treatment duration help contextualize the analysis and outlook. Photos and these answers may reveal health-related information.
- Your local diary. Scan dates, saved results, photo paths, care check-ins, treatment selections, reminder times, and app preferences are stored on your device. Daily check-in logs and reminder schedules are not sent as part of the scan request.
- Service identifiers. Firebase creates an anonymous scan account and authentication tokens without requiring an email or password. This is a persistent identifier, not a guarantee that your information is anonymous. Server records include scan request identifiers, image-derived hashes, results, generated-image links, timestamps, processing status, usage limits, and processing-cost metadata.
- Purchases. Apple and RevenueCat process transaction and subscription information, product identifiers, entitlement status, and app-user/device identifiers. We do not receive your full payment-card details.
- Support and technical information. If you contact us, we receive your email and the information you choose to send. Infrastructure providers may process IP addresses, request logs, device/browser details, and error information to deliver and protect the service.
What happens when you scan
Original captures are saved in the app’s private device storage. When you submit a scan, the app resizes and compresses copies and sends them with your answers over HTTPS to our Google Firebase/Cloud Functions backend. The backend sends photos and relevant answers through OpenRouter to an OpenAI model for analysis. It also sends photos through fal to an image model for the illustrated markings. Generated images are retrieved from provider-hosted URLs.
Our scan database stores the resulting assessment and processing records, rather than a library of original photo uploads. This does not mean photos stay only on your phone or are immediately erased by every provider. The marked images themselves may depict you.
Why we use the information
We use information to provide requested scans, save and compare your history, display an illustrative outlook, maintain your care diary, schedule optional reminders, verify paid access, prevent duplicate work and abuse, troubleshoot failures, answer requests, and meet legal obligations. We do not use your photos for advertising or facial identity recognition, and we do not sell your personal information or share it for cross-context behavioral advertising.
Where applicable, our legal bases include providing the service you request, legitimate interests in security and support, compliance with law, and consent for processing that requires it. Health-related information may require explicit consent under applicable law. You can stop future photo processing by not submitting further scans and request deletion using the controls below. A privacy policy does not replace a consent prompt where one is required.
Service providers and international processing
- Google Firebase / Google Cloud: scan authentication, backend processing, and stored scan records.
- OpenRouter and the routed OpenAI model provider: photo analysis and written results.
- fal and its image-model infrastructure: illustrated photo markings and hosted generated images.
- RevenueCat and Apple: purchase processing, subscription validation, and restoration.
- OpenAI Sites and Cloudflare: hosting and delivery of the public website.
Our scan backend runs in the United States. Providers may process information in other countries, where privacy laws differ. Their retention and security arrangements apply to their processing. We may also disclose information when legally required, to protect rights and safety, or in connection with a business transfer subject to applicable privacy protections.
Provider information: Firebase privacy, OpenRouter privacy, OpenAI privacy, fal privacy, RevenueCat privacy, and Apple privacy.
Storage and retention
Your device keeps your profile, scan history, care logs, and original photos until you remove them or the app’s data is removed. Device backups and any copies you share are separate. Our server keeps scan-account records and assessments to support retries, scan limits, and access to results until deletion; they are not automatically erased when a scan finishes.
The fal integration requests that request input/output payloads not be stored. That setting does not delete generated files on its CDN. Provider logs, generated files, security records, and billing records may have separate retention periods. We do not promise immediate deletion from all third-party systems or a fixed provider retention period. Contact us for assistance with provider-held data. We retain support or legally required records only as needed for their purpose or applicable obligations.
Your controls and requests
- Progress → Delete photos removes locally saved scan photos and their image references from the app. Written results remain. It does not delete the server account or provider-held images.
- Home → Delete my data requests removal of the Firebase scan account and its server records, resets the local profile and scan history, removes saved scan photos, and cancels local reminders. Use an internet connection and check for an error message; contact us if deletion fails.
- Subscriptions are separate. Deleting data or uninstalling does not cancel an Apple subscription or erase Apple/RevenueCat transaction records. Manage subscriptions in your Apple account.
- Permissions. You can revoke camera or notification access in device settings and disable reminders in the app. Reminder text can reveal treatment names on your lock screen; adjust notification previews if needed.
Depending on your location, you may have rights to access, correct, delete, or receive a copy of personal information, restrict or object to processing, withdraw consent, appeal a decision, or complain to your local privacy regulator. Email business@anvog.llc to exercise these rights. We may need to verify a request and identify the relevant scan account; do not send authentication tokens or payment details. We respond within applicable legal deadlines and do not discriminate for exercising privacy rights.
Website storage, security, and age
The public marketing website does not request scan uploads, register accounts, or include an advertising pixel or optional analytics tracker. Hosting providers may process technical logs and use security-related storage. The app stores data locally and uses authentication for server access. Network requests use HTTPS, but no device, transmission, or service is perfectly secure.
UnBald is intended for people aged 16 and older. Users below the age of legal adulthood must have a parent or guardian’s permission. It is not directed to children under 16. Contact us if a child has supplied information so we can address its removal.
Changes and contact
We will update the date on this page when the policy changes and provide additional notice or obtain consent when required. Contact ANVOG LLC at business@anvog.llc or through our company contact page.