This policy is required by the Washington My Health My Data Act and the Nevada consumer health data law. It is deliberately separate from our Privacy Policy and covers only consumer health data. It applies to everyone, not only to residents of those states.
1. What consumer health data we collect
One category: biometric data, in the form of a scan of face geometry. Specifically, the coordinates of the landmark points placed on your photographs, each photograph's natural pixel dimensions, and which front points you moved. We compute geometric ratios, measurements, and scores from those inputs when your analysis loads; we do not store those computed results.
We also collect the gender and ancestry options you select, because they determine which reference ranges your measurements are compared against. We treat those as consumer health data too, since they are attached to your biometric record.
Your browser encrypts photographs with a key it keeps on your device and never sends to our servers. Our servers receive ciphertext and no key, so stored server data alone cannot open a photograph. Same-origin code RateMyFaceAI delivers to your browser can use the local key through WebCrypto while it is present.
We collect no other health data. We do not collect diagnoses, symptoms, medications, treatments, health conditions, reproductive or sexual health information, gender-affirming care information, biometric identifiers used to identify you, or precise location.
2. Where it comes from
Directly from you, and from nowhere else. You upload photographs in your browser, our software proposes landmark points, and you adjust them. We buy no data, and we obtain none from data brokers, advertising networks, or public records.
3. Why we collect it and how we use it
- To compute your facial harmony measurements and scores.
- To show those results back to you, and to save them so you can return to them.
- To give you access to the parts of the analysis your subscription tier includes.
That is the complete list. We do not use consumer health data for advertising, marketing, profiling, research, model training, or any automated decision that produces a legal or similarly significant effect on you.
4. Who we share it with
We do not sell consumer health data, and we never will. Selling it would require your separate written authorization, and we do not ask for one because we do not sell.
We share it with one category of third party: our processor, Convex (Convex, Inc.), which hosts the database where your analysis inputs and encrypted photographs are stored. Convex acts only on our instructions under a data processing agreement and may not use your data for its own purposes. We have no affiliates.
Vercel, Google, SendGrid, and Stripe support the website, sign-in, email, and payments respectively. None of them receives your consumer health data.
We may disclose data if the law compels it. Because our servers hold no key, any stored photographs we disclose are ciphertext that the stored server data alone cannot open.
5. How long we keep it, and when we destroy it
We destroy your consumer health data when the purpose for collecting it is satisfied, and in every case no later than 12 months after your last visit. If you delete an analysis or close your account, we destroy it within 30 days. Destruction is permanent and includes backups on their normal rotation.
6. Your rights
You have the right to:
- Confirm whether we hold consumer health data about you, and get a copy of it.
- Get a list of every third party we have shared it with, and their contact details.
- Withdraw your consent to our collecting or sharing it.
- Have it deleted, including by every processor holding it on our behalf. We pass deletion requests on to Convex and confirm completion.
- Appeal, if we refuse a request.
Email privacy@ratemyfaceai.app. We respond within 30 days, and may extend once by 30 days where a request is complex, telling you why. Exercising a right is free and will never get you a worse service.
If we refuse: we will tell you why and how to appeal. We answer appeals within 45 days. If we deny the appeal, you may complain to the Washington Attorney General at atg.wa.gov/file-complaint, or to the Nevada Attorney General.
7. How we protect it
We store your analysis inputs using the reasonable standard of care for our industry, and at least as protectively as we store any other confidential information we hold. Access is restricted to the account that created the record. Photographs are encrypted in your browser with a key our servers never receive, so the server stores ciphertext and no key. Same-origin code delivered to your browser can still use the local key through WebCrypto while it is present.
8. Illinois
We do not serve Illinois. See our Terms of Service.
9. Changes
If we change the categories of consumer health data we collect, why we collect them, or who we share them with, we will update this page and obtain fresh consent before the change applies to you.
10. Contact
Tim Schneider, a sole proprietor based in California, USA, is the controller of this data. Reach us at privacy@ratemyfaceai.app.