Privacy Policy
Last updated: March 8, 2026
Introduction
Decorly AI ("we", "our", or "us") operates the Decorly AI mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our App. By using Decorly AI, you consent to the practices described in this policy.
Information We Collect
We collect the following categories of information:
Account Information
When you create an account, we collect your email address and display name. If you sign in with Apple, we receive your Apple ID identifier and, if you choose to share it, your email address.
Photos
Room photos you upload for AI processing. These photos are sent to our servers and third-party AI providers solely to generate your requested design results.
Usage Data
How you interact with the App, including features used, design styles selected, number of generations created, and app navigation patterns.
Device Information
Device type, operating system version, device identifiers, language settings, and screen resolution.
Purchase Information
Subscription type and credit purchase history. All payment processing is handled by Apple through the App Store. We do not collect or store your payment card details.
How We Use Your Information
- To provide and operate the AI-powered room redesign service
- To process your account registration and authentication
- To manage your subscriptions and credit balance
- To improve the quality and performance of the App
- To communicate with you about your account, updates, or support requests
- To detect, prevent, and address fraud, abuse, or technical issues
- To comply with legal obligations
Photo Processing
Third-Party Services
We use the following third-party services to operate the App. Each service receives only the minimum data necessary to perform its function:
- Supabase: Cloud database and user authentication. Stores your account information, generation history, and app data. Data is encrypted at rest and in transit.
- Replicate: AI model hosting. Receives your room photos to generate design results. Photos are processed in memory and not retained after generation is complete.
- RevenueCat: Subscription and purchase management. Receives your anonymous user identifier and purchase receipts to manage your subscription status and credit balance. Does not receive your email or personal details.
- Apple Sign-In: Authentication provider. We receive your Apple ID identifier and, optionally, your email address when you choose to sign in with Apple.
- Apple App Store: Handles all payment processing for subscriptions and credit purchases. We do not have access to your payment card information.
Data Sharing
We do not sell, rent, or trade your personal data to third parties for marketing purposes. We may share information in the following circumstances:
- Service Providers: With the third-party services listed above, strictly to operate and improve the App.
- Legal Requirements: When required by law, court order, or governmental authority, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.
Data Retention
- Photos: Automatically deleted from our servers within 24 hours of processing.
- Account Data: Retained for as long as your account is active. Upon account deletion, your personal data is permanently removed within 30 days.
- Generated Designs: Stored in your account until you delete them or delete your account.
- Usage Logs: Retained for up to 12 months, then automatically deleted.
- Purchase Records: Retained for up to 24 months for accounting and dispute resolution purposes.
Data Security
We implement industry-standard security measures to protect your data:
- All data is encrypted in transit using TLS 1.2 or higher
- Data at rest is encrypted using AES-256 encryption
- Authentication tokens are stored securely on your device using platform-native secure storage
- Access to production systems is restricted and monitored
While we strive to protect your personal information, no method of electronic transmission or storage is 100% secure. If we become aware of a data breach that affects your personal information, we will notify you within 30 days of discovery.
Your Rights
Regardless of your location, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and all associated data
- Export your data in a portable format
- Withdraw consent for data processing at any time
You can exercise these rights directly in the App (Profile > Data & Privacy) or by contacting us at the email addresses below.
California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- The right to know what personal information we collect, use, and disclose
- The right to request deletion of your personal information
- The right to opt out of the sale of personal information. We do not sell your personal information.
- The right to non-discrimination for exercising your privacy rights
To submit a CCPA request, contact us at privacy@decorlyai.app.
European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):
- Legal Basis: We process your data based on your consent (account creation, photo uploads), contractual necessity (providing the service), and legitimate interests (improving the App, preventing fraud).
- The right to data portability
- The right to restrict processing
- The right to object to processing based on legitimate interests
- The right to lodge a complaint with your local data protection authority
For GDPR-related requests, contact us at privacy@decorlyai.app.
Children's Privacy
Decorly AI is not intended for children under 13 (or under 16 in the EEA). We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at privacy@decorlyai.app and we will promptly delete that information.
Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the App or by updating the "Last updated" date at the top of this page. Your continued use of the App after changes constitutes acceptance of the updated policy.
Contact Us
For general questions about this Privacy Policy:
For privacy-specific requests (data access, deletion, GDPR/CCPA):