GlowTan Privacy Policy
Effective date: 2026-06-18
Summary
GlowTan stores your skin profile, saved locations, tanning history, routine overrides, and progress photos locally on your device. GlowTan also sends limited off-device data for core app functionality, purchases, weather/UV guidance, optional onboarding AI analysis, and behavior analytics.
GlowTan does not sell personal data, does not show ads, and does not use data for third-party tracking.
Data Stored Locally On Device
GlowTan stores the following locally using SwiftData, files in the app sandbox, and UserDefaults:
- Skin and sun-safety profile answers, including skin type, goals, concerns, activity type, default SPF, and preferences.
- Saved locations selected by the user.
- Session history events, routine overrides, and weekly progress state.
- Optional progress photos and thumbnails.
- App preferences, including temperature unit, reminder preference, install date, rating-prompt timing, analytics queue, and progress-photo consent state.
Progress photos are stored locally in the app sandbox. Optional onboarding AI skin scan selfies are sent off device only when you choose Scan my glow during onboarding; GlowTan does not save those selfies as progress photos. Progress photos and in-session Glow Analysis selfies otherwise remain local and are not uploaded to Supabase analytics.
Data Sent Off Device
Optional Onboarding AI Skin Scan
If you choose the optional onboarding AI glow scan, GlowTan sends your selfie image plus goal/shade context to a Supabase Edge Function for analysis. The Edge Function may forward the image to OpenAI to produce a structured wellness estimate (skin type suggestion, tone estimate, and goal timeline). GlowTan stores only the derived estimate needed for your plan and paywall preview. GlowTan does not use this flow for advertising or third-party tracking. You can skip the scan and complete onboarding with manual questions instead.
Retention: GlowTan does not persist onboarding scan selfies on device as progress photos. Images are processed for the analysis request and are not stored in a GlowTan user account because GlowTan has no user accounts. Server-side retention follows Supabase and OpenAI provider settings.
Weather and UV
GlowTan uses Apple WeatherKit to fetch weather and UV data. When using current location, the app sends device location coordinates to Apple WeatherKit. When using a saved location, the app sends that saved location’s coordinates to Apple WeatherKit. Weather responses are cached locally for offline fallback.
Purchases and Subscriptions
GlowTan uses Apple In-App Purchase and RevenueCat to load subscription offerings, make purchases, restore purchases, and check whether the pro entitlement is active. RevenueCat receives purchase and entitlement data needed to provide subscription access. GlowTan does not receive your payment card number or Apple ID.
Behavior Analytics
GlowTan sends behavior analytics to Supabase through the analytics-ingest Edge Function. These events are used to understand activation, retention, engagement, monetization, safety, and product quality.
Each analytics event can include:
- Event ID.
- App-generated install ID.
- App-generated session ID.
- Event name.
- Event timestamp.
- App version.
- Build number.
- Platform, currently
ios. - Event properties listed below.
Analytics event properties currently sent by the app include:
timezonegrantedsourcelinked_to_sessionkindtotal_minutesuv_bucketreasonpackage_idplanentitlement_idcompleted_glows_this_weekprogress_photos_countestimated_weeksweekly_sessionsconfidenceremaining_percentskipped
The Supabase Edge Function accepts only the app’s allowlisted analytics event names and sanitizes property keys/values. String property values are truncated server-side. The app does not send names, email addresses, phone numbers, contacts, raw location coordinates, skin questionnaire answers, or progress photo image data in analytics events.
Data Controls
You can edit profile and preference data in the app where controls are provided. Some local data can be removed through in-app flows where deletion controls exist. You can remove all local app data by deleting GlowTan from your device.
GlowTan does not currently provide user accounts. Because there is no account sign-up, login, profile on a GlowTan server, or account identifier controlled by GlowTan, account deletion is not applicable to the current app architecture. Subscription cancellation and refund requests are handled through Apple.
Third-Party Services
GlowTan uses:
- Apple WeatherKit for weather and UV data.
- Apple In-App Purchase for subscription payments.
- RevenueCat for subscription offerings, purchases, restores, and entitlement checks.
- Supabase for behavior analytics ingestion and optional onboarding AI skin scan processing.
- OpenAI (via Supabase Edge Function) for optional onboarding selfie analysis when you choose Scan my glow.
Contact
For privacy questions, contact: glowtan@ghostnoteapps.com