Estelly Privacy Policy
Last updated: April 2, 2026
Estelly is an AI-powered beauty companion. This policy explains what data Estelly processes, how it is used, and the choices you have.
What we process
- Photos you choose to upload (e.g., selfies or product photos) to generate looks, guides, and analysis.
- Text you enter (e.g., assistant messages) to provide replies and guidance.
- Onboarding answers (e.g., skin type, undertone, focus) to personalize output.
- Device-generated identifiers used by Estelly to measure credit usage (e.g.,
X-Account-Id). - Purchase and entitlement metadata (e.g., subscription transaction identifiers) for billing validation.
- Advertising identifier (IDFA) (only if you allow tracking) for subscription attribution and analytics via Apphud and AppsFlyer.
How we use the data
- To provide app features (snapshot, skin analysis, assistant, product scan, look generation, and guides).
- To validate subscriptions, grant allowances, and prevent duplicate charges.
- To operate, secure, and debug the service (e.g., request IDs and error logs).
Sharing with third parties (including AI providers)
When you enable AI processing, Estelly uploads the content you choose to provide for AI features to Estelly servers and may share it with third-party AI service providers to generate results. Estelly does not sell your personal data.
Data shared for AI processing: photos you choose to upload (such as selfies or product photos), any text you enter for AI features (such as AI chat), and limited onboarding answers used as personalization context (such as age range, skin type, undertone, and focus).
AI providers: Estelly uses OpenRouter.ai as an AI API service provider / router. Depending on the model selected for a request, OpenRouter may process the data using model providers such as Google (Gemini) and OpenAI (via OpenRouter).
Consent (opt-in): AI processing is disabled by default. Before Estelly uploads your photos or entered text for AI features, the app asks for your permission on an in-app consent screen. You can withdraw consent any time in Profile → AI processing, and Estelly will stop uploading your photos and messages for AI features.
We only share data with vendors/processors under terms that require appropriate confidentiality, security, and use restrictions consistent with this policy.
Estelly also uses Apphud and AppsFlyer to support subscription analytics and attribution. If you allow tracking permissions on iOS (ATT), Estelly may share your advertising identifier (IDFA) and related attribution data with those providers. Purchases work without tracking permission.
Retention
Estelly may temporarily cache request/response data to improve reliability and prevent duplicate processing. Server logs may be kept for up to 30 days for security, debugging, and reliability. Local app storage may keep some generated results (such as history and saved looks) on your device. If you delete your account in the app, Estelly deletes server-side data associated with your account identifier. Estelly may retain a minimal anonymous anti-abuse marker on the device to prevent welcome credits from being reissued on the same device after account deletion.
Your choices
- You can enable or disable AI processing inside the app in Profile → AI processing.
- You can delete your account and associated server data in Profile → Delete Account.
- Deleting your account also clears visible local app data on your device (history, profile, analysis).
- A minimal anonymous anti-abuse marker may remain on the device to prevent welcome credits from being reissued.
- Removing the app clears most local app data, but iOS may retain certain Keychain items.
Contact
For privacy questions or deletion requests, contact support: Support.
This document is provided as an operational policy template and should be reviewed for your jurisdiction and business entity details before App Store submission.