Your Rights
Privacy & Data Controls
This page explains how you can control your Skindex data. Use it alongside the Privacy Policy, Terms of Service, and Data Compliance notice.
Last updated: August 21, 2026
1. Quick Answers
Do you sell my personal information for money?
No.
Are diagnostics and usage analytics required?
No. Both are off by default in the app.
Who can see my care data?
You, and providers you connect to (while connected / as retained after disconnect under policy).
Is Face Map used for identity recognition?
No. No face templates, embeddings, geometry, or identity vectors are created or stored.
Does general data consent authorize Face Map?
No. Face Map requires its own separate client opt-in when a connected Provider chooses to use it.
Can I download my data?
Yes — use in-app Download my data, or submit a request via this page.
Can I delete my account?
Yes — use in-app Delete my account, or visit the Account Deletion page.
Does disconnecting a provider delete everything?
No. Disconnect ends the live connection. Records may be retained for continuity, professional, or legal reasons. Account deletion is the erasure path (subject to lawful retention).
2. Where to Manage Privacy
In the Skindex App (recommended)
Clients — Profile / Account
- My Data: Download my data · Delete my account
- Support / Privacy: Privacy Controls · Privacy Policy · Regional privacy rights (CA, TX, EEA/UK)
- Consent History: version, accepted date, full Client Data Sharing Consent review, and separate Face Map opt-in status where Face Map is offered
- Data Collection (off by default): Send diagnostic data · Send usage analytics
- Providers: Connect, disconnect, transfer code, previous providers
Professionals — Settings
- Download my data · Delete my account
- Privacy Controls · Privacy Policy · Data Compliance · Regional privacy rights
- BAA / practice agreement review where applicable
- Diagnostics / analytics toggles (off by default)
On the Web
3. What Skindex Processes (Summary)
- Account & identity — email, auth session, name, role, optional phone/profile fields
- Professional verification — license-related details when verification is used
- Client–provider relationship data — intake/consultation responses, visits, progress, allergies/contraindications, messages metadata, provider notes as applicable
- Photos & media — progress photos, treatment photos, Face Map images (with permission); not biometric identity templates
- Decision-support / AI workflow signals — limited account-scoped interaction, safety, and quality metadata for Copilot, Skin Snapshot, and related tools
- Optional diagnostics / analytics — only if turned on in Settings
- Payments — handled by Apple/Google or other processors; Skindex does not store full payment card numbers for IAP
4. Consent and AI / Decision-Support
- Clients accept a versioned Client Data Sharing & Decision-Support Consent before using core care-sharing and decision-support features.
- Material consent updates can require re-acceptance.
- If client data consent is not accepted, Skindex is designed to hard-block profile AI / Copilot paths and related voice transcription that depend on that consent.
- Face Map is separate: Face Map is optional and Provider-initiated. General Client Data Sharing Consent does not authorize Face Map photos or related observational-signal processing. The Client must separately opt in before a Provider can capture, upload, or process Face Map data through Skindex.
- Professionals may have separate BAA / operational data acknowledgements; practice paperwork does not replace Skindex platform consent.
- Skindex does not knowingly use raw client photos, free-text clinical notes, or health-related records to train public foundation models unless expressly disclosed, contractually permitted, and legally authorized.
5. Disconnect vs. Transfer vs. Delete
Disconnect from provider
Ends the live connection; history may remain read-only/retained. Does not erase the Skindex account.
Client transfer code
Authorizes moving a scoped record copy to another provider. Not a full platform wipe.
Download my data
Export only — does not delete.
Delete my account
Permanent account deletion and purge of associated personal/AI artifacts Skindex controls, subject to lawful retention. May not remove copies a practice must keep under professional recordkeeping laws, or backups still rotating out.
6. Your Rights Requests
Depending on where you live (for example California CCPA/CPRA, Texas, EEA/UK GDPR), you may have rights to access, correct, delete, port, restrict, or object, and to limit certain use of sensitive personal information.
How to submit a request:
- Prefer in-app controls when available
- Email theskindexapp@gmail.com with subject "Privacy Request"
- Submit the form below on this page
- Or contact support@skindex.app
Include: full name, account email, role (client or professional), request type, region if relevant, and enough detail to locate the account. We may verify identity before fulfilling. We respond within applicable legal timelines. If you disagree with our response, reply to request an appeal. EEA/UK users may also lodge a complaint with a supervisory authority.
7. Optional Diagnostics and Analytics
- Send diagnostic data and Send usage analytics are off by default.
- Turning them on helps crash/performance diagnosis and product improvement.
- They are not required to use core app features.
- You can turn them off anytime in app Settings / Account privacy controls.
- Crash/diagnostic tooling is configured to respect opt-in and to avoid sending session replay-style continuous recording in the current client configuration.
8. Face Map Choices and Privacy
When Face Map features are used:
- Limited purpose: observational skin-pattern support for licensed professional review only.
- Separate choice: your connected Provider decides whether to offer Face Map, and you separately decide whether Skindex may process Face Map photos and related observational signals.
- Provider responsibility: your Provider must explain Face Map and obtain any professional or legally required consent before capture. Skindex's opt-in does not replace that responsibility.
- Private storage: when enabled, Face Map photos and protected records may be stored in private, relationship-scoped Skindex infrastructure. Your Provider decides what Face Map records to share with you through the Services.
- Not used for identity recognition, identity matching, surveillance, advertising, or public model training. In the current production flow, Face Map photos are not sent to OpenAI, RevenueCat, or Sentry.
- Skindex does not create, upload, or store facial geometry, face embeddings, face templates, identity vectors, or facial recognition profiles.
- Outputs are decision-support signals only — not medical diagnosis.
- Decline or withdraw: you may decline Face Map, or ask your connected Provider or Skindex support/privacy contact to withdraw your Face Map consent. Withdrawal blocks future capture and processing without removing unrelated core portal features. It does not automatically erase existing Provider records that may be retained for professional, legal, security, dispute-resolution, or backup-retention reasons.
9. Security Posture
Skindex applies administrative, technical, and organizational safeguards appropriate to the services — including authenticated access, role/relationship-scoped data access, and optional diagnostics controls. No system can guarantee zero risk. Breach notification is provided as required by applicable law.
Submit a Privacy Request
10. Contact
Privacy requests / appeals: theskindexapp@gmail.com
Support: support@skindex.app
Account deletion: skindex.app/account-deletion/
This page is informational and not legal advice. If this page conflicts with the Privacy Policy or a signed BAA on a specific topic, the more specific controlling document applies.