Face-data summary
Facely uploads only the square crop you create, not the uncropped camera or library image. It is sent to FaceCheck only after your affirmative consent for a visual-similarity search. Facely does not create or receive a reusable face template. See Face data and Retention & deletion.
01. Overview
Facely is provided by BLAVI LLC, responsible for the personal information it processes for the service. This policy covers the Facely iOS app, its backend services and this website.
Facely lets you submit a photo crop to search for visually similar faces in public web sources. A similarity score is not proof of identity. Use your own photo or an adult's photo only with their informed permission. Photos and facial features used for matching can be sensitive and may constitute biometric or special-category data under applicable law.
02. Information we process
Accounts and sessions
The app uses a Firebase account identifier, including when you continue without signing in. A guest identifier is pseudonymous, not a guarantee of anonymity. Apple or Google sign-in may share your provider identifier, name and email according to your choices. We do not receive your Apple or Google password.
Face data collected and how it is used
When you confirm a search, Facely collects and uploads only the square crop you created in the app. The uncropped camera or photo-library source remains on your device. The crop is re-encoded as a bounded JPEG without EXIF or GPS metadata. FaceCheck temporarily derives facial features from that crop solely to compare visual similarity with publicly accessible web images.
Facely does not create, receive or retain a reusable face template or faceprint. It does not receive an identity conclusion, name, address or phone number from FaceCheck. FaceCheck returns public-source URLs, similarity scores and low-resolution result thumbnails. Search records also contain the job identifier, status, timestamps, credit use, consent scope and policy version.
Purchases and support
We process product and transaction identifiers, verification status, subscription periods and account credit records. Apple handles payment details; Facely does not receive your payment card number. If you contact us, we receive the message, email address and attachments you send.
Technical information
Infrastructure can process IP addresses, request and security logs, app and operating system versions, and error information. If you allow notifications, a device notification token is used to deliver search-status updates.
03. Why we use it
- To maintain your account, process the searches you request and display your history.
- To verify purchases and keep an accurate credit and subscription balance.
- To record permission, prevent abuse, secure requests and resolve technical problems.
- To answer support requests and meet applicable legal obligations.
- To send search-status notifications when you enable them.
Depending on the activity and applicable law, processing may rely on providing the service you request, legal obligations, legitimate interests in securing the service, or consent. Where explicit consent is required for facial or biometric processing, it must be obtained before that processing. You can withdraw consent for future processing; this does not undo processing already lawfully performed.
04. Service providers and source websites
The app uses these service integrations:
- Google Firebase: authentication, account state, consent scope and policy version, search-job metadata, result count, credit/subscription entitlement, server functions, configuration and optional notifications. Search-image bytes are not stored in Firestore.
- Cloudflare R2: private storage for the cropped/normalized search image and a result bundle containing source URLs, scores and low-resolution thumbnails. Objects use user/job-specific keys and short-lived signed URLs.
- FaceCheck: receives the normalized crop and a search identifier after you accept the confirmation checkbox. It compares facial appearance and returns public-source URLs, similarity scores and low-resolution thumbnails. FaceCheck states that searched images are not indexed and that temporary searches are deleted within 24 hours.
- Apple and StoreKit: purchases, subscription management and transaction verification.
- RevenueCat: receives Apple server notifications containing transaction, product, subscription and app-account token information for purchase tracking, and forwards notifications to our verification server. Search photos are not sent to RevenueCat.
The cropped search image is not sent to Apple, Google, RevenueCat, advertising networks or source websites. Opening a result takes you to a third-party website with its own privacy practices. Public availability of a photo does not remove the subject's privacy rights.
05. Retention and deletion
The uncropped camera or photo-library source is never uploaded to Facely's servers. The first private R2 upload object is deleted after a successful search. The normalized crop, result bundle, consent record and search-job metadata are automatically deleted no later than 30 days after the job was created.
According to FaceCheck's published privacy FAQ, submitted search photos are not indexed and its temporary search is deleted within 24 hours. Downloaded result images and thumbnails are held only in a short-lived in-memory app cache and are cleared when the app session becomes inactive or the account changes.
Selecting Delete in search history removes that analysis's Firestore record and private R2 objects early. Account deletion starts removal of all account-linked analyses, images, results, notification tokens and the Facely authentication record. Failed deletion jobs are retried and the affected account or analysis is blocked from normal access while deletion is pending.
Limited Apple purchase, fraud-prevention, security, tax or dispute records may be retained for the period required by law; they do not contain the uploaded face image. Removing data from Facely does not remove the independent public source page. Deleting your account also does not cancel an Apple-managed subscription.
06. Security and international transfers
Data is protected in transit with TLS. R2 objects are private, signed links are time-limited, Firestore access is restricted by account ownership and server authorization, and app-integrity controls are used. No internet service can guarantee absolute security.
Facely's server functions run in Google's europe-west1 region. Account/search metadata is stored in Cloud Firestore, image/result objects in a private Cloudflare R2 bucket, and the submitted crop is processed on FaceCheck-controlled servers. These providers may process information outside your country, including outside Türkiye or the EEA, subject to their service terms and applicable transfer safeguards.
07. Your choices and rights
You can choose whether to sign in with a provider, select which photo to submit, decline a search confirmation and manage camera or notification permissions in iOS Settings. You can request deletion through the app or contact us for help.
Depending on where you live, you may have rights to access, correct, delete or receive a copy of your data, restrict or object to processing, withdraw consent, and complain to a competent data-protection authority. These rights are subject to applicable conditions and lawful retention requirements.
Send a request to support@levelappstudio.com. Include your request and, if available, your in-app account identifier. Do not send unnecessary identity documents or another person’s photo. We may need proportionate information to verify ownership before acting.
08. Age requirements
Facely is intended for adults aged 18 or older. Do not submit children’s photos or use the service to identify children. If you believe a child’s information has been submitted, contact support so we can investigate and take appropriate action.
09. This website
This version of the website is informational. It has no photo-upload tool, account form, advertising tracker or analytics script. Fonts and images are served from the same site, and its JavaScript does not set cookies or browser-storage identifiers. The hosting service may process ordinary connection and security logs.
Contact links open your email application. Any information you send by email is used to respond to your request. If website tracking or additional features are introduced, this notice and any necessary consent choices will be updated.
10. Contact and changes
Service operator: BLAVI LLC
Company and privacy contact: info@blavi.co
App support: support@levelappstudio.com
Material changes will be reflected in the date above and communicated in the app where appropriate. Required new consent will be requested separately.
Also read our Terms of Use.