Photo Foundry AI Privacy Policy
Text-to-image app | Image credits | Apple In-App Purchase
1. Who We Are
Myworkingmemory LLC ("Company," "we," "us," or "our") operates Photo Foundry AI (the "App"), the Photo Foundry gateway, and related text-to-image services (collectively, the "Services"). This Privacy Policy explains what information the Services collect, how we use it, how we share it, and what choices you have.
2. Short Version
Photo Foundry AI is designed as a U.S.-available iOS text-to-image app with trial credits, Apple In-App Purchase subscriptions, one-time credit refills, server-side image generation, and optional saving to Photos after you tap Save image.
The current iOS app does not require a Company account, does not include third-party advertising SDKs, does not sell personal information, does not share personal information for cross-context behavioral advertising, does not use cross-app tracking, does not collect biometric identifiers, and does not provide health, medical, mental-health, legal, financial, or other professional services.
The App sends user-entered prompts, generation choices, and an app token to the Photo Foundry server so images can be generated, credits can be checked, and Apple purchases can be redeemed.
3. Product and Privacy Posture
The Services are designed as follows:
- Apple App Store distribution for iPhone and iPad;
- free App Store download;
- trial credits may be granted automatically for testing or onboarding;
- subscriptions and one-time credit refills are sold through Apple In-App Purchase inside the iOS app;
- no Company account or public user profile in the current iOS app;
- no public gallery, gallery sync, social feed, prompt marketplace, or background generation in the current iOS app;
- no third-party advertising SDKs, no behavioral advertising, and no cross-app tracking in the current iOS app;
- text prompts, negative prompts, style, quality, size, app token, credit information, and generated-image request details are processed to provide image generation;
- Apple transaction verification data is processed to grant credits and prevent duplicate credit grants;
- the server uses OpenAI for image generation and uses service providers such as Vercel and Stripe for hosting, operations, and the server-side credit ledger; and
- the Services are not health, medical, mental-health, biometric, financial, legal, employment, housing, education, or safety-critical services.
Different App features or data practices may require different disclosures, controls, or consents as required by applicable law or platform rules.
4. Information You Provide or Generate
When you use the Services, Company may process:
- prompts and negative prompts you type;
- style, quality, and image-size choices;
- generated-image request details;
- revised prompts returned by the provider;
- generated images returned to the App;
- generation IDs and operational status messages;
- problem reports you choose to send through your mail app, including the generation ID placed in the email draft;
- support messages or emails you send to Company; and
- feedback, reviews, bug reports, or product suggestions you choose to provide.
Do not submit private, confidential, sensitive, illegal, infringing, nonconsensual, or rights-restricted information in a prompt unless you have all rights and permissions needed for that use.
5. App Tokens, Credits, and Purchases
The App creates or uses an app account token and server access token to request trial credits, check credit balances, generate images, and redeem Apple purchases. The token is used for App functionality and is linked to the server-side credit ledger.
When you buy or subscribe through Apple In-App Purchase, Apple handles payment information. The App may send Apple transaction verification data, product ID, app account token, and transaction identifiers to the Photo Foundry server so credits can be granted and duplicate redemption can be prevented.
Current iOS products include Starter Monthly, Creator Monthly, and 40 Image Credits. Apple processes the payment transaction, and Company does not receive your full payment-card number from Apple.
The current backend uses service providers, including Stripe as a server-side customer and credit-ledger service provider, even though Apple handles iOS payment-card processing.
6. Information Sent to the Image Provider
To generate an image, the Photo Foundry server sends a formatted prompt, style, size, quality, and safety-related request information to OpenAI. The App itself does not call OpenAI directly and does not expose the OpenAI API key.
OpenAI or other image providers may process prompts and generation requests according to their own terms, policies, and technical systems. Provider behavior may change, and providers may reject, moderate, transform, or fail a request.
7. Generated Images and Photos
Generated images are returned to the App as image data. The App saves a generated image to your Photos library only after you tap Save image.
Apple and your device settings control Photos access, local storage, backups, iCloud behavior, albums, sharing, deletion, and any sharing you perform from your device.
If you screenshot, save, copy, message, post, publish, sell, export, or share an Output, that action is controlled by you and by the services you choose.
8. Product, Gateway, Network, and Hosting Data
When the App contacts the Photo Foundry gateway, or when you visit a Company website, Company and its hosting, security, analytics, and infrastructure providers may process routine technical information, such as:
- IP address;
- request time;
- endpoint path;
- app, device, browser, or operating-system technical data;
- country inferred by hosting infrastructure;
- referrer or user agent where applicable;
- event name;
- style, quality, credit bucket, success or failure status, and limited operational properties;
- basic logs;
- security signals;
- rate-limit signals; and
- error or performance information.
This information is used to operate, secure, debug, maintain, and improve Company systems; enforce rate limits and safety rules; understand credit usage; prevent fraud and abuse; and make product, pricing, reliability, and App Store submission decisions.
The server is designed not to send full prompt text to analytics events, but prompts are processed for generation and safety as described above.
9. Support Communications
If you contact Company for support, Company may receive:
- your email address;
- your name if you provide it;
- the contents of your message;
- generation IDs or screenshots you choose to send;
- attachments you choose to send;
- device, App, purchase, credit, or gateway details you choose to provide; and
- other information needed to respond.
Do not send sensitive prompts, generated images, personal images, confidential information, or third-party private information unless you want Company to review it for support purposes.
Company uses support communications to respond to you, troubleshoot, maintain business records, enforce Terms, protect Company Parties, and comply with law.
10. Apple and App Store Data
Apple processes App Store purchases, subscriptions, refunds, taxes, chargebacks, Family Sharing, ratings, reviews, crash information, diagnostics, and App Store analytics under Apple's own terms and privacy policies.
Company may receive aggregated sales, performance, crash, subscription, refund, or analytics information from Apple. Company does not receive your full payment-card number from Apple.
Company may receive signed transaction information or transaction identifiers as needed to verify purchases, grant credits, prevent duplicate redemption, investigate fraud, enforce Terms, comply with law, or maintain business records.
11. Information We Do Not Collect Through Ordinary App Use
Unless the App is changed and this policy is updated, Company does not collect through ordinary App use:
- Company account usernames or passwords;
- full payment-card numbers from Apple purchases;
- contacts;
- precise location;
- camera data;
- microphone data;
- biometric identifiers or biometric information;
- health or medical data;
- government identifiers;
- financial account numbers;
- advertising identifiers for cross-app tracking;
- SMS or phone-call data;
- a public social profile or public gallery; or
- data for sale to data brokers.
Generated images are not saved to Photos unless you choose to save them, but prompts and generated-image request data are processed by the server to provide the Services.
12. How We Use Information
Company uses information to:
- provide, operate, maintain, secure, and improve the Services;
- generate images and deliver generated images to the App;
- request, check, debit, refund, adjust, and display credit balances;
- verify Apple purchases and prevent duplicate credit grants;
- apply prompt safety checks, provider moderation, rate limits, fraud prevention, abuse prevention, and duplicate-transaction prevention;
- troubleshoot bugs, crashes, device issues, gateway issues, provider errors, and performance issues;
- respond to support, legal, safety, and privacy requests;
- enforce Terms and protect Company Parties, users, platforms, providers, and payment systems;
- prevent fraud, abuse, scraping, unauthorized access, security incidents, and provider-policy violations;
- comply with law, app-store rules, payment rules, provider rules, and legal process; and
- make business decisions about maintenance, pricing, marketing, reliability, App Store compliance, and product direction.
13. How We Share Information
Company may disclose information to:
- service providers and processors that host, support, secure, analyze, debug, generate, moderate, verify, credit, or maintain the Services and Company systems;
- Apple and platform providers for App Store distribution, purchases, subscriptions, refunds, app review, crash reporting, analytics, fraud prevention, and account administration;
- OpenAI and image providers for image generation, prompt processing, safety, and provider moderation;
- Vercel, Stripe, analytics/logging providers, email providers, and infrastructure vendors for gateway hosting, operations, credit-ledger support, analytics, logging, and support communications;
- professional advisors, insurers, auditors, and business operations providers;
- authorities, courts, regulators, or litigants where legally required or reasonably necessary;
- acquirers, successors, financing parties, or transaction parties in connection with a merger, acquisition, financing, restructuring, or asset sale; and
- other parties with your direction or consent.
Company does not sell personal information and does not share personal information for cross-context behavioral advertising.
14. Advertising and Tracking
The current iOS App does not include third-party advertising SDKs, cross-app tracking, or behavioral advertising.
The current iOS App does not request Apple's App Tracking Transparency permission because it is not designed to track you across apps and websites owned by other companies.
Different advertising, tracking, sale, share, or behavioral-advertising practices may require updated disclosures, controls, or consents as required by applicable law or platform rules.
15. Retention
Credit ledger records, app account tokens, access tokens, Apple transaction identifiers, purchase-redemption records, operational logs, analytics events, support records, legal records, and business records may be retained for as long as reasonably necessary for the purposes described in this policy, including App operation, support, security, tax, accounting, legal compliance, dispute resolution, fraud prevention, App Store compliance, provider compliance, and business operations.
Generated images may remain on your device or in your Photos library according to your device settings and choices. Company may retain deidentified, aggregated, or non-personal information.
16. Security
Company uses reasonable administrative, technical, and organizational measures designed to protect information appropriate for the Services' size and data posture. No system is perfectly secure.
You are responsible for your device, passcode, Apple account, App Store subscription settings, Photos library, backups, cloud settings, saved images, screenshots, shared links, messages, and network security.
17. Children
The Services are not directed to children under 13. Company does not knowingly collect personal information from children under 13.
If you believe a child under 13 provided personal information to Company, contact Company so the request can be reviewed under applicable law.
18. State Privacy Rights
Depending on where you live and which laws apply, you may have rights to access, correct, delete, port, restrict, appeal, or opt out of certain processing.
Some U.S. state privacy laws apply only above certain revenue, volume, or data-sale thresholds. Company may not be covered by every state privacy law at all times. Company handles privacy requests as required by applicable law.
Send privacy requests to dean@myworkingmemory.ai. Company may need to verify your identity before responding. Company handles non-discrimination obligations as required by applicable law.
Because generated images may be saved only on your device or Photos library after you choose to save them, Company may not be able to access, correct, export, or delete those local images for you.
19. California Privacy Notes
The current iOS App does not sell personal information, share personal information for cross-context behavioral advertising, or use third-party ad tracking.
Because the App is not a browser-based service, browser "Do Not Track" signals do not change App behavior. Different web tracking, advertising, sale, or share practices may require updated disclosures, controls, or consents as required by applicable law or platform rules.
20. Consumer Health, Biometric, and Sensitive Data
The Services are not designed to collect consumer health data, biometric identifiers, biometric information, precise location, children's data, financial account data, government identifiers, or other sensitive data through ordinary use.
Do not use the Services as a medical, mental-health, therapeutic, biometric, emergency, legal, financial, employment, housing, education, insurance, criminal-justice, or safety-critical tool.
Different health, wellness, biometric, face, voice, precise-location, AI, SMS, public-gallery, account-sync, or other regulated features may require updated notices, consents, retention schedules, or deletion rights as required by applicable law or platform rules.
21. International Use
The Services are operated from the United States and are currently intended for distribution in the United States.
If you use the Services from outside the United States, you understand that information may be processed in the United States or other locations where service providers operate.
22. Changes
Company may update this Privacy Policy from time to time. The updated version is identified by an updated effective date.
Material data-practice changes are handled as required by applicable law and platform rules.
23. Contact
Myworkingmemory LLC
Nashville, Tennessee, United States
Email: dean@myworkingmemory.ai