Back

Privacy Policy

Last updated: March 8, 2026

Introduction

Decorly AI ("we", "our", or "us") operates the Decorly AI mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our App. By using Decorly AI, you consent to the practices described in this policy.

Information We Collect

We collect the following categories of information:

Account Information

When you create an account, we collect your email address and display name. If you sign in with Apple, we receive your Apple ID identifier and, if you choose to share it, your email address.

Photos

Room photos you upload for AI processing. These photos are sent to our servers and third-party AI providers solely to generate your requested design results.

Usage Data

How you interact with the App, including features used, design styles selected, number of generations created, and app navigation patterns.

Device Information

Device type, operating system version, device identifiers, language settings, and screen resolution.

Purchase Information

Subscription type and credit purchase history. All payment processing is handled by Apple through the App Store. We do not collect or store your payment card details.

How We Use Your Information

  • To provide and operate the AI-powered room redesign service
  • To process your account registration and authentication
  • To manage your subscriptions and credit balance
  • To improve the quality and performance of the App
  • To communicate with you about your account, updates, or support requests
  • To detect, prevent, and address fraud, abuse, or technical issues
  • To comply with legal obligations

Photo Processing

Your room photos are transmitted securely to our servers and forwarded to our AI processing partner (Replicate) solely to generate the design results you requested. Photos are automatically deleted from our servers within 24 hours of processing. We do not use your photos to train AI models, for marketing, or for any purpose other than delivering your requested results.

Third-Party Services

We use the following third-party services to operate the App. Each service receives only the minimum data necessary to perform its function:

  • Supabase: Cloud database and user authentication. Stores your account information, generation history, and app data. Data is encrypted at rest and in transit.
  • Replicate: AI model hosting. Receives your room photos to generate design results. Photos are processed in memory and not retained after generation is complete.
  • RevenueCat: Subscription and purchase management. Receives your anonymous user identifier and purchase receipts to manage your subscription status and credit balance. Does not receive your email or personal details.
  • Apple Sign-In: Authentication provider. We receive your Apple ID identifier and, optionally, your email address when you choose to sign in with Apple.
  • Apple App Store: Handles all payment processing for subscriptions and credit purchases. We do not have access to your payment card information.

Data Sharing

We do not sell, rent, or trade your personal data to third parties for marketing purposes. We may share information in the following circumstances:

  • Service Providers: With the third-party services listed above, strictly to operate and improve the App.
  • Legal Requirements: When required by law, court order, or governmental authority, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.

Data Retention

  • Photos: Automatically deleted from our servers within 24 hours of processing.
  • Account Data: Retained for as long as your account is active. Upon account deletion, your personal data is permanently removed within 30 days.
  • Generated Designs: Stored in your account until you delete them or delete your account.
  • Usage Logs: Retained for up to 12 months, then automatically deleted.
  • Purchase Records: Retained for up to 24 months for accounting and dispute resolution purposes.

Data Security

We implement industry-standard security measures to protect your data:

  • All data is encrypted in transit using TLS 1.2 or higher
  • Data at rest is encrypted using AES-256 encryption
  • Authentication tokens are stored securely on your device using platform-native secure storage
  • Access to production systems is restricted and monitored

While we strive to protect your personal information, no method of electronic transmission or storage is 100% secure. If we become aware of a data breach that affects your personal information, we will notify you within 30 days of discovery.

Your Rights

Regardless of your location, you have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your account and all associated data
  • Export your data in a portable format
  • Withdraw consent for data processing at any time

You can exercise these rights directly in the App (Profile > Data & Privacy) or by contacting us at the email addresses below.

California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • The right to know what personal information we collect, use, and disclose
  • The right to request deletion of your personal information
  • The right to opt out of the sale of personal information. We do not sell your personal information.
  • The right to non-discrimination for exercising your privacy rights

To submit a CCPA request, contact us at privacy@decorlyai.app.

European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):

  • Legal Basis: We process your data based on your consent (account creation, photo uploads), contractual necessity (providing the service), and legitimate interests (improving the App, preventing fraud).
  • The right to data portability
  • The right to restrict processing
  • The right to object to processing based on legitimate interests
  • The right to lodge a complaint with your local data protection authority

For GDPR-related requests, contact us at privacy@decorlyai.app.

Children's Privacy

Decorly AI is not intended for children under 13 (or under 16 in the EEA). We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at privacy@decorlyai.app and we will promptly delete that information.

Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the App or by updating the "Last updated" date at the top of this page. Your continued use of the App after changes constitutes acceptance of the updated policy.

Contact Us

For general questions about this Privacy Policy:

support@decorlyai.app

For privacy-specific requests (data access, deletion, GDPR/CCPA):

privacy@decorlyai.app