DecalFit ← Back to the app page

Privacy Policy

Effective July 27, 2026

DecalFit is provided by imagin4ryLabs. This policy explains how DecalFit handles information when you create decal previews, save projects, sign in, make a purchase, or contact support. Questions may be sent to imagin4ryLabs@gmail.com.

Information you choose to provide

Depending on the feature you use, DecalFit may process:

  • Car photos, decal artwork, and images you select, capture, or export.
  • Your selected target surface, placement points, style and shape choices.
  • Prompt text or optional edit instructions you choose to submit to an AI feature.
  • Support messages and the diagnostic details you include.

Account information

If you sign in or link Apple or Google, Firebase Authentication and the selected provider may process a provider account identifier, email address, and basic profile information when supplied. DecalFit uses a Firebase UID as the account identifier. You can browse and edit locally without an account, but account-backed AI, credits, purchases, and recovery features require authentication.

AI preview processing

When you request a live AI preview, DecalFit sends the selected image inputs, placement information, target surface, and instructions through an imagin4ryLabs Cloud Run service to Google Cloud Vertex AI. Vertex AI processing may use a global endpoint and is subject to Google Cloud's applicable terms and retention controls.

DecalFit does not promise that a third-party AI provider retains nothing. Our application services are designed not to write raw input photos, prompt text, or plaintext provider output to Firestore or ordinary request logs.

Temporary delivery and metadata

An accepted AI output may be held temporarily as encrypted data in private cloud storage so the app can recover delivery if a response is lost. This data is logically limited to no more than 24 hours and is deleted when delivery is committed, abandoned, or expires. Firestore stores service metadata such as job state, hashes, timestamps, attempts, credits, and entitlement records—not raw user images or prompt text.

Security and anti-abuse information

DecalFit processes limited app-integrity and anti-abuse information, including Firebase App Check or Apple App Attest results, opaque account and device identifiers, timestamps, counters, hashes, rate limits, and job outcomes. Limited route, status, and reliability events may be retained without request bodies, photos, prompts, filenames, or local file paths.

Purchases and subscriptions

Apple processes App Store payments. RevenueCat may process product, transaction, entitlement, renewal, refund, and restore metadata so DecalFit can grant and restore access. DecalFit does not receive your full payment-card information.

Information stored on your device

Drafts and unsaved work may be held temporarily on your device. A project is added to My Decals only when you choose Save. Saved projects remain in DecalFit's app storage and are excluded from iCloud backup. Saving to Photos is a separate action you control.

How information is used

  • Provide, deliver, recover, and improve requested app features.
  • Maintain credits, passes, purchases, restores, and refunds.
  • Authenticate accounts, link sign-in providers, and protect the service.
  • Diagnose failures, respond to support, prevent fraud, and enforce limits.
  • Meet legal obligations and resolve disputes.

Service providers

DecalFit relies on providers that process information for the purposes described above:

  • Firebase Authentication and App Check
  • Google Cloud Run, Firestore, Cloud KMS, Cloud Storage, and Vertex AI
  • Apple Sign in with Apple and the App Store
  • Google Sign-In
  • RevenueCat

Advertising, sale, and tracking

DecalFit does not show third-party advertising, does not sell personal information for targeted advertising, and does not use user photos or prompts as advertising content.

Retention and deletion

Account-backed information is retained while needed to provide the service, maintain credits and purchases, secure the service, resolve disputes, or meet legal obligations. Temporary encrypted AI delivery data follows the shorter period described above. After account deletion, limited one-way security, anti-abuse, purchase or refund, and redacted deletion records may remain where needed to prevent fraud, repeated free-credit claims, or prove deletion completion.

See Delete DecalFit data for in-app steps, local-data details, and subscription guidance.

Your choices

  • Choose whether to sign in, request AI processing, save a project, or export to Photos.
  • Manage camera and photo-library access in iOS Settings.
  • Link Apple and Google before changing sign-in methods so account-backed credits remain together.
  • Delete your account inside DecalFit or contact support if the in-app option is unavailable.
  • Manage Apple subscriptions separately in your App Store subscription settings.

Children

DecalFit is not directed to children who cannot lawfully consent to this processing in their region. Do not submit another person's personal information or photos without permission.

International processing

Service providers may process information in countries outside your own, including where their global cloud infrastructure operates.

Changes to this policy

We may update this policy as DecalFit, its providers, or legal requirements change. The effective date at the top identifies the current published version.

Contact

Email imagin4ryLabs@gmail.com or use the DecalFit support form.

Get support Read the terms