Your Rights

Privacy & Data Controls

This page explains how you can control your Skindex data. Use it alongside the Privacy Policy, Terms of Service, and Data Compliance notice.

Last updated: August 21, 2026

1. Quick Answers

Do you sell my personal information for money?

No.

Are diagnostics and usage analytics required?

No. Both are off by default in the app.

Who can see my care data?

You, and providers you connect to (while connected / as retained after disconnect under policy).

Is Face Map used for identity recognition?

No. No face templates, embeddings, geometry, or identity vectors are created or stored.

Does general data consent authorize Face Map?

No. Face Map requires its own separate client opt-in when a connected Provider chooses to use it.

Can I download my data?

Yes — use in-app Download my data, or submit a request via this page.

Can I delete my account?

Yes — use in-app Delete my account, or visit the Account Deletion page.

Does disconnecting a provider delete everything?

No. Disconnect ends the live connection. Records may be retained for continuity, professional, or legal reasons. Account deletion is the erasure path (subject to lawful retention).

2. Where to Manage Privacy

In the Skindex App (recommended)

Clients — Profile / Account

  • My Data: Download my data · Delete my account
  • Support / Privacy: Privacy Controls · Privacy Policy · Regional privacy rights (CA, TX, EEA/UK)
  • Consent History: version, accepted date, full Client Data Sharing Consent review, and separate Face Map opt-in status where Face Map is offered
  • Data Collection (off by default): Send diagnostic data · Send usage analytics
  • Providers: Connect, disconnect, transfer code, previous providers

Professionals — Settings

  • Download my data · Delete my account
  • Privacy Controls · Privacy Policy · Data Compliance · Regional privacy rights
  • BAA / practice agreement review where applicable
  • Diagnostics / analytics toggles (off by default)

3. What Skindex Processes (Summary)

  • Account & identity — email, auth session, name, role, optional phone/profile fields
  • Professional verification — license-related details when verification is used
  • Client–provider relationship data — intake/consultation responses, visits, progress, allergies/contraindications, messages metadata, provider notes as applicable
  • Photos & media — progress photos, treatment photos, Face Map images (with permission); not biometric identity templates
  • Decision-support / AI workflow signals — limited account-scoped interaction, safety, and quality metadata for Copilot, Skin Snapshot, and related tools
  • Optional diagnostics / analytics — only if turned on in Settings
  • Payments — handled by Apple/Google or other processors; Skindex does not store full payment card numbers for IAP

5. Disconnect vs. Transfer vs. Delete

Disconnect from provider

Ends the live connection; history may remain read-only/retained. Does not erase the Skindex account.

Client transfer code

Authorizes moving a scoped record copy to another provider. Not a full platform wipe.

Download my data

Export only — does not delete.

Delete my account

Permanent account deletion and purge of associated personal/AI artifacts Skindex controls, subject to lawful retention. May not remove copies a practice must keep under professional recordkeeping laws, or backups still rotating out.

6. Your Rights Requests

Depending on where you live (for example California CCPA/CPRA, Texas, EEA/UK GDPR), you may have rights to access, correct, delete, port, restrict, or object, and to limit certain use of sensitive personal information.

How to submit a request:

  1. Prefer in-app controls when available
  2. Email theskindexapp@gmail.com with subject "Privacy Request"
  3. Submit the form below on this page
  4. Or contact support@skindex.app

Include: full name, account email, role (client or professional), request type, region if relevant, and enough detail to locate the account. We may verify identity before fulfilling. We respond within applicable legal timelines. If you disagree with our response, reply to request an appeal. EEA/UK users may also lodge a complaint with a supervisory authority.

Request Privacy Help →

7. Optional Diagnostics and Analytics

  • Send diagnostic data and Send usage analytics are off by default.
  • Turning them on helps crash/performance diagnosis and product improvement.
  • They are not required to use core app features.
  • You can turn them off anytime in app Settings / Account privacy controls.
  • Crash/diagnostic tooling is configured to respect opt-in and to avoid sending session replay-style continuous recording in the current client configuration.

8. Face Map Choices and Privacy

When Face Map features are used:

  • Limited purpose: observational skin-pattern support for licensed professional review only.
  • Separate choice: your connected Provider decides whether to offer Face Map, and you separately decide whether Skindex may process Face Map photos and related observational signals.
  • Provider responsibility: your Provider must explain Face Map and obtain any professional or legally required consent before capture. Skindex's opt-in does not replace that responsibility.
  • Private storage: when enabled, Face Map photos and protected records may be stored in private, relationship-scoped Skindex infrastructure. Your Provider decides what Face Map records to share with you through the Services.
  • Not used for identity recognition, identity matching, surveillance, advertising, or public model training. In the current production flow, Face Map photos are not sent to OpenAI, RevenueCat, or Sentry.
  • Skindex does not create, upload, or store facial geometry, face embeddings, face templates, identity vectors, or facial recognition profiles.
  • Outputs are decision-support signals only — not medical diagnosis.
  • Decline or withdraw: you may decline Face Map, or ask your connected Provider or Skindex support/privacy contact to withdraw your Face Map consent. Withdrawal blocks future capture and processing without removing unrelated core portal features. It does not automatically erase existing Provider records that may be retained for professional, legal, security, dispute-resolution, or backup-retention reasons.

9. Security Posture

Skindex applies administrative, technical, and organizational safeguards appropriate to the services — including authenticated access, role/relationship-scoped data access, and optional diagnostics controls. No system can guarantee zero risk. Breach notification is provided as required by applicable law.

Submit a Privacy Request

Response timelines: We acknowledge all requests within 3 business days and fulfill within 30–45 days depending on your region. Identity verification is required before we process any request.

We will send an identity verification email before processing any request.

10. Contact

Privacy requests / appeals: theskindexapp@gmail.com

Support: support@skindex.app

Account deletion: skindex.app/account-deletion/

This page is informational and not legal advice. If this page conflicts with the Privacy Policy or a signed BAA on a specific topic, the more specific controlling document applies.