Who controls your data
datingstudio.ai, LLC (a Virginia limited liability company), 42841 Creek View Plaza, Ste 120 #298, Ashburn, VA 20147, is the controller of your personal data. Contact: [email protected].
The short version
You upload selfies. We use them to train a private AI model of your face, compute a facial "fingerprint" (biometric data) so generated photos keep looking like you, and deliver AI-generated photos to you. We don't sell your data. We don't use your face to train a shared model. We delete by default, and we automatically delete your trained model weights at 90 days. Biometric processing requires your separate written consent (see our Biometric Data Policy & Written Release).
Categories of data we collect
- Photos you upload ("Uploads") — the 10–20 selfies you provide.
- Biometric identifiers / biometric information — facial-recognition embeddings (a numerical representation of your face geometry, computed with AuraFace) stored as a reference "centroid," used for similarity checking ("drift test") and same-person clustering to enforce our own-likeness-only rule. These are biometric identifiers under Illinois BIPA and similar laws.
- Generated photos ("Outputs") — the AI images we create for you.
- Account & auth data — email and basic profile info (including via Google OAuth if you choose it).
- Payment data — processed by Stripe; we receive limited transaction metadata, not full card numbers.
- Usage & device data — logs, device/browser data, and similar, to operate and secure the Service.
- Communications — emails and support messages.
Why we use it (purposes)
To train your per-user model; to compute embeddings for likeness-consistency and identity enforcement; to screen uploads and outputs for safety (age, NSFW, non-self identity); to generate and deliver your photos; to process payment; to provide support; to secure and improve the Service; and to comply with law.
The "Director" AI assistant
Our conversational guide ("the Director") is powered by a third-party large language model (Anthropic Claude). Conversations may be processed by that provider to generate responses. Don't share sensitive information in chat that isn't needed for the Service.
Who processes data for us (subprocessors)
We share data only with vendors who process it on our behalf, under contract, for the purposes above:
Google OAuth data receipt
If you sign in with Google, Google shares with us basic profile information (such as your name, email address, and account identifier) so we can create and secure your account. We use this only for authentication and account purposes and handle it under this Policy. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. We request only Google's basic sign-in scopes (openid, email, profile) — no contacts, no files, no offline access.
Retention schedule
We keep data only as long as needed for the purposes above, then delete it. Delete-by-default is our posture.
In no case will we retain biometric identifiers longer than the earlier of (a) when the purpose for collection is satisfied or (b) three years after your last interaction with us, consistent with BIPA §15(a).
Your deletion and privacy rights
You can delete your account and data at any time in your account settings (Settings → Privacy), or by emailing [email protected]. Deletion propagates to our processors, including your trained model at our training provider, with each deletion audit-logged. Depending on where you live, you may also have rights to access, correct, delete, obtain a copy of, and opt out of certain processing of your personal data, and to appeal a denied request. We honor these rights for all users regardless of state ("universal rights" approach). Because we process sensitive/biometric data, we obtain your opt-in consent before processing it and you may withdraw consent (which ends future biometric processing and triggers deletion under our schedule).
Sale/sharing of personal data
We do not sell your personal data, and we do not "share" it for cross-context behavioral advertising. We do not profit from your biometric data. We do not disclose biometric identifiers except to the processors listed above to provide the Service, as you direct, or as required by a valid legal process.
State privacy rights
We honor the following regardless of your state: the right to know/access, correct, delete, and obtain a portable copy of your personal data; to opt out of targeted advertising, sale, and certain profiling (we don't do these with your data); and to appeal. Residents of states with comprehensive privacy laws (including Virginia's VCDPA, California's CCPA/CPRA, Colorado, Connecticut, Texas, and others) may exercise these rights by contacting [email protected]. Biometric data is treated as sensitive data requiring opt-in consent under these laws (e.g., VCDPA, Va. Code §59.1-578(A)(5)) and under dedicated biometric statutes (Illinois BIPA, Texas CUBI, Washington RCW 19.375 and My Health My Data Act, Colorado HB 24-1130). Washington residents: see our Washington Consumer Health Data Privacy Policy (Section III-B), linked from our homepage, which governs the biometric data Washington law treats as consumer health data.
Children's data
The Service is 18+. We do not knowingly collect data from anyone under 18. We screen uploads for apparent age using AWS Rekognition: we hard-block when the estimated age high-bound is under 18, hold for manual review when the estimated low-bound is under 21, and otherwise pass. If we learn we have collected a minor's data, we delete it promptly and, where legally required, report suspected CSAM to NCMEC. COPPA does not generally apply because we do not target or knowingly serve children under 13; if a minor's data slips through despite our 18+ gating and screening, we treat discovery as a deletion-and-report event.
Security
We use reasonable, industry-standard technical and organizational measures to protect your data, and we store, transmit, and protect biometric identifiers using at least the same standard of care we apply to our other confidential information, consistent with BIPA §15(e). No system is perfectly secure. Specifics: all traffic is encrypted in transit (HTTPS only); your photos are accessible only through short-lived signed links; data is encrypted at rest by our storage providers; and deletion events are audit-logged.
International users
The Service is offered from the United States and intended for U.S. users; data is processed in the United States. If you access it from elsewhere, you consent to U.S. processing.
Changes
We'll post updates here with a new date and, for material changes, provide notice.
Contact
datingstudio.ai, LLC, 42841 Creek View Plaza, Ste 120 #298, Ashburn, VA 20147, [email protected].