Welcome to Oyster AI ("we," "our," or "us"). We are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your personal information. This Privacy Policy explains our practices regarding data collection and use when you use our mobile application Oyster AI (the "App") and related services (collectively, the "Services").
By using our Services, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, please do not use our Services.
1. Information We Collect
1.1 Information You Provide Directly
We collect information that you voluntarily provide when using our Services:
- Account Information: When you create an account, we collect your email address, display name, and authentication credentials.
- Screenshots and Images: When you upload screenshots of conversations, dating profiles, or other content for analysis, we process these images to provide our Services.
- Quiz Responses: Your answers to our Communication DNA quiz, which help us understand and personalize your communication style.
- Messages and Text: Messages you compose, refine, or request assistance with through our Services.
- Contact Information: Names and relationship information for contacts you add to the App for conversation tracking.
- User Preferences: Your settings, preferences, and customization choices within the App.
- Feedback and Communications: Information you provide when contacting customer support or providing feedback.
1.2 Information Collected Automatically
When you use our Services, we automatically collect certain information:
- Device Information: Device type, operating system version, unique device identifiers, and mobile network information.
- Usage Data: Information about how you interact with the App, including features used, actions taken, time spent, and navigation patterns.
- Log Data: Server logs that may include your IP address, app version, access times, and error reports.
- Analytics Data: Aggregated usage statistics to help us improve our Services.
1.3 Information from Third-Party Services
If you choose to link third-party accounts or use third-party authentication (such as Sign in with Apple), we may receive basic profile information as permitted by your privacy settings on those services.
2. How We Use Your Information
We use the information we collect for the following purposes:
2.1 To Provide and Improve Our Services
- Process and analyze screenshots to provide conversation insights and dating profile analysis
- Generate personalized message suggestions and communication recommendations
- Create and maintain your Communication DNA profile
- Provide AI-powered assistance for message composition and refinement
- Maintain and improve the functionality of our Services
- Develop new features and services
2.2 To Communicate With You
- Send transactional communications about your account or subscription
- Respond to your inquiries and support requests
- Send important notices about changes to our Services or policies
2.3 For Security and Compliance
- Protect against fraudulent, unauthorized, or illegal activity
- Enforce our Terms of Service and other policies
- Comply with legal obligations and respond to lawful requests
3. Third-Party Services and Data Sharing
Important: We share your data with third-party service providers to deliver our Services. These providers are contractually obligated to protect your information and use it only for the purposes we specify.
3.1 OpenAI (AI Processing)
We use OpenAI's API to power our AI features, including conversation analysis, message generation, and communication insights. When you use these features:
- Your screenshots, messages, and related content are sent to OpenAI for processing
- OpenAI processes this data according to their Privacy Policy and API Data Usage Policies
- When using the API, OpenAI does not use your data to train their models
- Data sent to OpenAI is encrypted in transit using TLS 1.2+
3.2 Google Firebase
We use Google Firebase for backend services, including:
- Firebase Authentication: To manage user accounts and secure sign-in
- Cloud Firestore: To store your data securely in the cloud
- Firebase Cloud Functions: To process data and provide app functionality
- Firebase Analytics: To understand app usage and improve our Services
Firebase's data practices are governed by the Firebase Privacy Policy and Google Privacy Policy.
3.3 Apple
For iOS users, Apple may collect certain information:
- App Store: Purchase and subscription information is processed by Apple
- Sign in with Apple: If you use this feature, Apple shares limited information based on your choices
- StoreKit: Subscription management is handled through Apple's systems
Apple's privacy practices are described in their Privacy Policy.
3.4 Other Disclosures
We may also share your information:
- With your consent or at your direction
- To comply with legal obligations, court orders, or government requests
- To protect our rights, privacy, safety, or property, and that of our users or others
- In connection with a merger, acquisition, bankruptcy, or sale of assets (you will be notified of any such change)
4. Data Retention
We retain your personal information for as long as necessary to provide our Services and fulfill the purposes described in this Privacy Policy. Specifically:
| Data Type | Retention Period |
|---|---|
| Account Information | Until account deletion + 30 days |
| Uploaded Screenshots | Processed and stored until you delete them or your account |
| Conversation Data | Until you delete them or your account |
| Communication DNA Profile | Until account deletion |
| Usage Analytics | Aggregated data retained for up to 26 months |
| Support Communications | Up to 3 years after resolution |
After the retention period, we securely delete or anonymize your data. Some information may be retained longer if required by law or for legitimate business purposes such as resolving disputes.
5. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
- Encryption: Data is encrypted in transit (TLS 1.2+) and at rest (AES-256)
- Access Controls: Strict access controls limit who can access your data
- Secure Infrastructure: We use industry-leading cloud providers with SOC 2 compliance
- Regular Security Reviews: We conduct regular security assessments and updates
- Secure Authentication: We support secure authentication methods including Sign in with Apple
While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
6. Your Rights and Choices
6.1 Access and Portability
You have the right to access your personal information and request a copy of your data in a portable format.
6.2 Correction
You can update or correct your account information at any time through the App settings.
6.3 Deletion
You can request deletion of your account and associated data. To delete your account:
- Go to Settings in the App
- Select "Delete Account"
- Confirm your request
Or contact us at [email protected]
6.4 Opt-Out of Analytics
You can limit data collection by adjusting your device settings or contacting us to opt out of certain analytics.
6.5 Communication Preferences
You can opt out of promotional communications by following the unsubscribe instructions in any email or adjusting your notification settings.
7. California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- Right to Know: You can request information about the categories and specific pieces of personal information we have collected, the sources of collection, the purposes for collection, and the categories of third parties with whom we share information.
- Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
- Right to Correct: You can request correction of inaccurate personal information.
- Right to Opt-Out of Sale/Sharing: We do not sell your personal information or share it for cross-context behavioral advertising.
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise these rights, contact us at [email protected] or submit a request through the App.
8. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have rights under the General Data Protection Regulation (GDPR):
8.1 Legal Bases for Processing
We process your personal data based on:
- Contract Performance: To provide Services you have requested
- Legitimate Interests: To improve our Services and ensure security
- Consent: Where you have given explicit consent
- Legal Obligations: To comply with applicable laws
8.2 Your GDPR Rights
- Right of access to your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent at any time
- Right to lodge a complaint with a supervisory authority
8.3 International Data Transfers
Your data may be transferred to and processed in the United States and other countries. We ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
9. Children's Privacy
Age Restriction: Our Services are not intended for children under the age of 18. We do not knowingly collect personal information from children under 18 years of age.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at [email protected]. If we discover that we have collected personal information from a child under 18, we will promptly delete that information.
Given the nature of our Services (dating and messaging assistance), we require all users to be at least 18 years old. By using our Services, you represent that you are at least 18 years of age.
10. Cookies and Tracking Technologies
Our mobile App may use the following technologies:
- Device Identifiers: We may collect your device's unique identifier for analytics and app functionality
- Firebase Analytics: Uses identifiers to collect usage data (you can opt out via device settings)
- Local Storage: We store certain preferences and data locally on your device
You can manage tracking through your iOS device settings under Privacy & Security > Tracking.
11. Third-Party Links
Our Services may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party services you access.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the updated policy in the App
- Updating the "Last Updated" date at the top of this policy
- Sending you a notification through the App or email for significant changes
Your continued use of the Services after changes become effective constitutes acceptance of the revised Privacy Policy.