Privacy Policy for Era Portrait: AI Avatar
Last Updated: July 9, 2026
Overview
Era Portrait: AI Avatar (by Tugrul Works) explains its data practices when you use our mobile application. By using the app, you agree to the terms of this policy.
Era Portrait is an AI photo app: you provide a photo, we process it through AI infrastructure, and you get a generated portrait back. This policy describes exactly what we collect, who processes it, and how long we keep it.
No Accounts
Era Portrait has no login and no user accounts. We do not ask for your name, email, or any sign-up credentials to use the app.
Instead, your device is identified by anonymous identifiers:
- A RevenueCat anonymous app user ID, generated by our purchases provider.
- A per-install UUID generated on your device the first time the app runs.
These identifiers are not linked to your real-world identity. If you delete and reinstall the app, new identifiers are generated — the app treats a reinstall as a fresh device. Your past purchases are not tied to the old install; they are recovered separately through the App Store (see Purchases below).
Photo and Face Data Handling
When you generate a portrait, your photo is uploaded to our backend (Supabase storage) and then processed by Google's image-generation model (Gemini family), hosted on the third-party AI infrastructure provider Replicate, to produce the generated result.
Before generation, your uploaded photo is checked by an automated content-safety screening model (also hosted on Replicate) to detect and block unsafe or explicit content.
- Uploaded photos are automatically deleted from our backend within 48 hours. An automated sweeper enforces this — an original upload never remains on our servers beyond that window. Generation jobs finish in minutes, so the 48-hour limit is well beyond the time your photo is actually needed.
- We do not perform facial recognition and do not create faceprints, biometric templates, or other biometric identifiers.
- We do not sell your photos or share them with advertising networks.
- We do not use your photos to train public AI models without consent.
Generated results you choose to keep are saved to your own device. Because we have no account system, we do not maintain a personal photo library for you on our servers beyond the temporary processing window described above.
Purchases
Subscriptions are sold through Apple and managed with RevenueCat. When you subscribe, we receive — via RevenueCat — your purchase receipt, your anonymous app user ID, and your subscription status.
- We never see or store your payment details (card number, billing address, etc.). Those are handled entirely by Apple.
- On first launch, and whenever you tap Restore Purchases, the app checks the App Store to restore an active subscription. This is how a paying user recovers their subscription after reinstalling, since a reinstall generates new device identifiers.
Usage Analytics
We use PostHog to understand how the app is used and to improve it. This includes:
- Usage events (which screens and features you interact with).
- Device information such as operating system, app version, and locale.
- Anonymous identifiers.
We do not send your advertising identifier (IDFA) to PostHog.
Advertising and Attribution
We use the Meta (Facebook) SDK to measure the performance of our advertising and understand where installs come from. This includes:
- Install and app-launch events.
- Upper-funnel product events such as onboarding completed, paywall viewed, and checkout started.
Your device's advertising identifier (IDFA) is only accessed with your consent through Apple's App Tracking Transparency (ATT) prompt, which appears after onboarding. If you decline, the app remains fully functional — you simply are not tracked with the advertising identifier.
We also use Apple's AdServices framework for Apple Search Ads attribution. This does not require the ATT prompt.
Additionally, RevenueCat forwards subscription revenue events server-side to Meta so that our advertising can be measured. This happens on our servers, not on your device.
Third-Party Subprocessors
The following third parties process data on our behalf, each under their own privacy policy:
Data Protection
Data is encrypted in transit and stored securely with access controls. Uploaded photos are held only for the temporary processing window described above (deleted within 48 hours).
Your Rights and Contact
You may request access to, correction of, erasure of, or portability of your personal data under GDPR, CCPA, and similar laws.
Because Era Portrait has no accounts, any data we hold is tied to your anonymous identifiers rather than to a personal profile:
- Uploaded photos are deleted automatically within 48 hours, so no manual deletion request is needed for them.
- For other data (such as analytics or purchase records) tied to your anonymous identifiers, contact us and we will help you exercise your rights. Please note that because these identifiers are anonymous, we may need information from you to locate the relevant records.
Contact: hello@tugrul.works
Children
The app is not intended for children under 13.
Changes to This Policy
Policy updates are posted on this page, with notification through the app for significant changes.