Privacy Policy
Last updated: July 28, 2026 · Effective immediately for all users of MOG IRL.
MOG IRL ("we", "our", "us") builds a facial-analysis and self-improvement app. This Privacy Policy explains what we collect, how we use it, and the rights you have. We designed the app to collect the minimum data required to deliver its features.
1. Data we collect
Identity
When you sign in with Apple, we receive a stable identifier (Apple sub), and optionally your name and email if you choose to share them. We store this to associate your scans and subscription with your account.
Face photos
You may capture up to three photos of your face for analysis. Because face data is sensitive, we describe our full handling of it in a dedicated Section 2 below (see "Face Data — detailed disclosure"). In summary: raw photos are deleted from our servers within minutes of analysis, only the derived numeric scores are retained (max 2 most recent scans per user), and deletion is permanent and immediate on request.
Purchase information
We store which subscription and consumable purchases you've made (transaction IDs, product IDs, expiry). Apple handles all payment information — we never see your card details.
Diagnostics
Basic anonymous request logs (timestamps, error codes) for reliability. We do not use third-party analytics or tracking SDKs.
2. Face Data — detailed disclosure
Because Apple's Guideline 2.1 treats face data as sensitive, this section is dedicated to it. Everything below applies specifically to the photographs of your face that you capture inside the app and any measurements or scores derived from them ("Face Data").
2.1 What face data we collect
The app collects the following Face Data, and nothing else that could be considered biometric:
- Up to three still photographs of your face (front, left profile, right profile), captured by you inside the app using the iOS photo picker or camera.
- Derived numeric style indices produced by our AI vision model from those photographs: overall style index, jawline definition, symmetry index, skin clarity, cheekbone structure, plus a face-shape classification (e.g., "Oval") and a personal progress-tier label.
We do not compute or store a face template, faceprint, face embedding, face geometry map, or any other biometric identifier that could be used to identify you across apps, sessions, or images. We do not use Apple's Face ID / TrueDepth data, ARKit face tracking, or any on-device biometric API.
2.2 How we use face data
- To generate the scores and face-shape label you see inside the app.
- To generate a personalized 14-day self-improvement plan based on those scores.
- To display before/after progress when you take a new scan.
Face data is never used for advertising, sold, rented, licensed, or shared with data brokers. It is not used to train, fine-tune, or improve any machine-learning model.
2.3 Sharing with third parties — explicit AI disclosure
Face data is shared with exactly one third party, and only for the momentary purpose of performing the analysis. Before your photos ever leave your device, the app displays a mandatory consent dialog explaining this, and analysis will not proceed unless you explicitly tap "Agree & Analyze".
- Provider: Anthropic PBC — the company behind the Claude family of AI models.
- Model used: Claude Sonnet 4.5 (vision-capable).
- What is sent: your three JPEG photographs (front, left profile, right profile), transmitted over HTTPS to Anthropic's REST API.
- Purpose: a single request/response cycle so the vision model can compute your numeric scores (jawline, symmetry, skin, cheekbones, overall) and identify your face shape. Nothing else.
- NOT used to train AI models: Under Anthropic's Commercial Terms of Service and their API data policy, inputs submitted through the paid API — including your photos — are NOT used to train, fine-tune, or improve any Anthropic model. This is a contractual guarantee, not an opt-in setting.
- Anthropic retention: Anthropic retains API inputs only for a short abuse-monitoring window (typically 30 days) before automatic deletion. See anthropic.com/legal/privacy.
- Location of processing: Anthropic's U.S.-based cloud infrastructure.
No other third party — no analytics SDK, ad network, social network, data broker, marketing partner, or other AI provider — ever receives your face data. If we ever add another AI provider we will update this section, obtain fresh consent inside the app, and give existing users the option to opt out.
2.4 Where face data is stored
- Photographs — the three JPEG images are kept only long enough to complete the analysis. Once the derived scores return from the vision model, the raw images are deleted from our servers within minutes. They are never persisted to long-term storage and never backed up.
- Derived scores and face-shape label — stored in our production database (MongoDB Atlas, encrypted at rest in the U.S. region) associated with your account.
- All transmission is encrypted in transit with TLS 1.2+.
2.5 How long face data is retained
- Raw photographs: deleted from our servers within minutes of the analysis completing. Never retained beyond the request.
- Derived scores: we retain only the two most recent scans per account so you can see progress between rescans. When a third scan is saved, the oldest is automatically deleted.
- On account deletion (in-app Settings → Delete Account, or by emailing info@myascensions.com): all scans, scores, plan data, and account records are permanently deleted from our production database within 24 hours. Any backup snapshots that may still contain your data are purged within 30 days.
- On subscription cancellation: your scans and plan data are permanently purged 14 days after cancellation unless you delete your account sooner.
2.6 Your rights over your face data
- Access — email info@myascensions.com and we will export all face-derived scores associated with your account.
- Deletion — use Settings → Delete Account inside the app, or email info@myascensions.com. Deletion is permanent and immediate.
- Withdraw consent — you can stop scanning at any time; we will not retain further face data.
2.7 In-app consent gate
Before any of your face photos are uploaded for analysis, the MOG IRL app presents a full-screen consent dialog that:
- Names the AI provider (Anthropic, Claude AI).
- States that your photos will be shared for the sole purpose of generating your improvement plan.
- Confirms that photos are deleted after analysis.
- Confirms that your data is never used to train AI models.
- Links back to this Privacy Policy.
The scan will not proceed unless you explicitly tap "Agree & Analyze". Tapping "Cancel" returns you to the photo-capture step and no data leaves your device.
3. Data we do NOT collect
- Contacts, photos outside of what you explicitly capture, location, or device sensors.
- Advertising identifiers or cross-app tracking.
- Payment card numbers (Apple handles all billing).
4. How we use your data
- To analyze your face and generate personalized results and plans.
- To verify your subscription and unlock premium features.
- To sync your data across your Apple devices.
- To respond to your support requests.
We do not sell your data. We do not share your face photos or scores with any third party.
5. Third-party services
To deliver the app we use a small number of vetted providers:
- Apple — Sign in with Apple, In-App Purchases, iCloud device sync.
- Anthropic (Claude AI) — the facial analysis is performed by Anthropic's Claude Sonnet 4.5 vision model. Photos are sent for one-time analysis via Anthropic's commercial API. Per Anthropic's Commercial Terms, API inputs are NOT used to train their models. Anthropic retains inputs only for a short abuse-monitoring window (~30 days) before automatic deletion.
- MongoDB Atlas — encrypted storage of your account, scans, and subscription state.
6. Your rights
- Access — request a copy of your data at any time.
- Deletion — delete your entire account from the app's Settings → Delete Account, or by emailing us. All data is removed within 24 hours.
- Portability — request an export of your scans and plans.
- Objection — cancel your subscription at any time via Settings → Apple ID → Subscriptions.
GDPR and CCPA rights are honored globally.
7. Children
MOG IRL is not directed at children under 13. We do not knowingly collect data from anyone under 13. If you believe a child has provided us with data, contact us and we will delete it.
8. Security
All data is encrypted in transit (HTTPS/TLS 1.2+) and at rest. Sessions use signed JWT tokens with a 90-day expiry. Access to production databases requires multi-factor authentication.
9. Changes to this policy
If we materially change how we handle data, we will notify you in the app and update the "Last updated" date at the top of this page.
10. Contact
Or use the in-app support page at /support.