Privacy Policy
Effective July 27, 2026
DecalFit is provided by imagin4ryLabs. This policy explains how DecalFit handles information when you create decal previews, save projects, sign in, make a purchase, or contact support. Questions may be sent to imagin4ryLabs@gmail.com.
Information you choose to provide
Depending on the feature you use, DecalFit may process:
- Car photos, decal artwork, and images you select, capture, or export.
- Your selected target surface, placement points, style and shape choices.
- Prompt text or optional edit instructions you choose to submit to an AI feature.
- Support messages and the diagnostic details you include.
Account information
If you sign in or link Apple or Google, Firebase Authentication and the selected provider may process a provider account identifier, email address, and basic profile information when supplied. DecalFit uses a Firebase UID as the account identifier. You can browse and edit locally without an account, but account-backed AI, credits, purchases, and recovery features require authentication.
AI preview processing
When you request a live AI preview, DecalFit sends the selected image inputs, placement information, target surface, and instructions through an imagin4ryLabs Cloud Run service to Google Cloud Vertex AI. Vertex AI processing may use a global endpoint and is subject to Google Cloud's applicable terms and retention controls.
DecalFit does not promise that a third-party AI provider retains nothing. Our application services are designed not to write raw input photos, prompt text, or plaintext provider output to Firestore or ordinary request logs.
Temporary delivery and metadata
An accepted AI output may be held temporarily as encrypted data in private cloud storage so the app can recover delivery if a response is lost. This data is logically limited to no more than 24 hours and is deleted when delivery is committed, abandoned, or expires. Firestore stores service metadata such as job state, hashes, timestamps, attempts, credits, and entitlement records—not raw user images or prompt text.
Security and anti-abuse information
DecalFit processes limited app-integrity and anti-abuse information, including Firebase App Check or Apple App Attest results, opaque account and device identifiers, timestamps, counters, hashes, rate limits, and job outcomes. Limited route, status, and reliability events may be retained without request bodies, photos, prompts, filenames, or local file paths.
Purchases and subscriptions
Apple processes App Store payments. RevenueCat may process product, transaction, entitlement, renewal, refund, and restore metadata so DecalFit can grant and restore access. DecalFit does not receive your full payment-card information.
Information stored on your device
Drafts and unsaved work may be held temporarily on your device. A project is added to My Decals only when you choose Save. Saved projects remain in DecalFit's app storage and are excluded from iCloud backup. Saving to Photos is a separate action you control.
How information is used
- Provide, deliver, recover, and improve requested app features.
- Maintain credits, passes, purchases, restores, and refunds.
- Authenticate accounts, link sign-in providers, and protect the service.
- Diagnose failures, respond to support, prevent fraud, and enforce limits.
- Meet legal obligations and resolve disputes.
Service providers
DecalFit relies on providers that process information for the purposes described above:
- Firebase Authentication and App Check
- Google Cloud Run, Firestore, Cloud KMS, Cloud Storage, and Vertex AI
- Apple Sign in with Apple and the App Store
- Google Sign-In
- RevenueCat
Advertising, sale, and tracking
DecalFit does not show third-party advertising, does not sell personal information for targeted advertising, and does not use user photos or prompts as advertising content.
Retention and deletion
Account-backed information is retained while needed to provide the service, maintain credits and purchases, secure the service, resolve disputes, or meet legal obligations. Temporary encrypted AI delivery data follows the shorter period described above. After account deletion, limited one-way security, anti-abuse, purchase or refund, and redacted deletion records may remain where needed to prevent fraud, repeated free-credit claims, or prove deletion completion.
See Delete DecalFit data for in-app steps, local-data details, and subscription guidance.
Your choices
- Choose whether to sign in, request AI processing, save a project, or export to Photos.
- Manage camera and photo-library access in iOS Settings.
- Link Apple and Google before changing sign-in methods so account-backed credits remain together.
- Delete your account inside DecalFit or contact support if the in-app option is unavailable.
- Manage Apple subscriptions separately in your App Store subscription settings.
Children
DecalFit is not directed to children who cannot lawfully consent to this processing in their region. Do not submit another person's personal information or photos without permission.
International processing
Service providers may process information in countries outside your own, including where their global cloud infrastructure operates.
Changes to this policy
We may update this policy as DecalFit, its providers, or legal requirements change. The effective date at the top identifies the current published version.
Contact
Email imagin4ryLabs@gmail.com or use the DecalFit support form.