Roomify Privacy Policy

Effective date: May 23, 2026

1. Who we are

Roomify ("we", "our", "us") is an AI-powered interior redesign app for iOS, published as part of the PurifyOS studio. This Privacy Policy explains what we collect, why, and the controls you have over your data. We are the data controller for the personal information described below. Roomify is built to be data-minimal: we don't require an account, we don't ask for your email at signup, and we don't collect more than we need to redesign your room and remember your subscription.

2. Information we collect

  • Anonymous device identifier: a randomly generated install ID used to associate your subscription entitlement and your redesign history with this specific install. Not tied to your name, email, or Apple ID by default.
  • Room photos you upload: when you submit a photo for redesign, the image is sent to our servers and to our AI image-generation provider (OpenAI) so the redesign can be produced. The original photo and the four generated redesigns are stored in our Cloudflare R2 bucket.
  • Redesign history: metadata about the redesigns you've generated — style chosen, timestamp, thumbnails — so you can browse your library and re-open previous renders.
  • Purchase events: RevenueCat passes us your subscription entitlement state and one-time credit purchases. We never see your card details.
  • Optional push token: if you allow notifications, Apple gives us a token so we can notify you when a redesign is ready or when a new style drops.
  • Diagnostics: anonymous crash logs and aggregated usage events (which buttons get tapped, generation latency). You can opt out in Settings.

We do not include third-party advertising SDKs, IDFA tracking, marketing pixels, or social-login providers. There is no account creation, no password to remember, and no email collected at signup.

3. How we use your data

  • Generate AI redesigns of the room photo you upload.
  • Persist your redesign library and saved boards so you can return to them across sessions.
  • Match furniture items in the redesigned image to real shoppable products via affiliate search APIs.
  • Send opt-in push notifications (redesign ready, new style available, weekly inspiration).
  • Enforce subscription and credit entitlements and prevent abuse.
  • Improve model output quality, diagnose bugs, and resolve customer support tickets.

We do not sell your data, share it with advertisers, or use your uploaded photos to train third-party generative models. OpenAI's API policy explicitly excludes API inputs and outputs from training their foundation models.

4. Third parties (sub-processors)

  • OpenAI — generates the redesigned room images. Original photo + style prompt is sent via API. OpenAI's API policy excludes inputs from training data.
  • Cloudflare R2 — encrypted object storage for original photos and generated redesigns.
  • RevenueCat — subscription receipt validation and entitlement state.
  • Apple (APNs) — push notification delivery.
  • Amazon Product Advertising API — looking up real furniture matches for items in your redesign. Only the AI-generated product description is sent, not your photo.

5. Where your data is stored

Photos and redesigns are stored in Cloudflare R2 buckets (region: automatic — typically EU or US edge closest to you). Subscription entitlements pass through RevenueCat (US/EU). The OpenAI API call processes your photo in their US infrastructure. Data may therefore be transferred outside your country of residence; where required by GDPR, we rely on Standard Contractual Clauses.

6. How long we keep it

  • Uploaded room photos: kept for 30 days, then automatically deleted from our storage — unless you explicitly tap "Save to library", in which case the redesign and its source photo are retained until you delete them.
  • Saved redesigns: kept while your device install is active. Cleared when you tap "Delete my data" or uninstall + wait 90 days.
  • Redesign history metadata (thumbnails, prompts): 90 days unless you save them.
  • Diagnostic events: 90 days, then aggregated.
  • Purchase records: retained for as long as required by tax and consumer-protection law (typically 7 years in most jurisdictions).
  • Deletion requests: processed within 30 days, except where law requires us to retain transaction receipts.

7. Your rights (GDPR, UK GDPR, CCPA)

You can exercise the following rights at any time, directly inside the app under Settings → Privacy, or by emailing us:

  • Access & portability: tap "Export my data" to receive a ZIP of your saved redesigns plus a JSON of redesign metadata.
  • Erasure: tap "Delete my data" in-app — your device data, server-side photos, redesign history, and push token are wiped within 30 days.
  • Rectification: there is no profile to correct (no name, email, or birth data), but you can delete and re-upload any photo.
  • Object / restrict: contact us at the email below.
  • Deletion request by email: write to privacy@purifyos.app with subject "Delete my Roomify data" and the in-app install ID (Settings → About) — we'll confirm within 72 hours and complete within 30 days.
  • Lodge a complaint with your local supervisory authority.

Because Roomify has no account, account deletion equals data deletion — there's no shadow profile to leave behind.

8. Children

Roomify is rated 4+ but intended for adults making decisions about their living spaces. We do not knowingly collect data from children under 13. If you believe a child has uploaded a photo to Roomify, contact us and we will delete it promptly.

9. Photo content responsibility

Please only upload photos of rooms and spaces you have the right to photograph. Do not upload photos of other people's homes without their permission. Do not upload photos containing people's faces — Roomify is for spaces, not subjects. Our automated content filters reject photos that appear to contain nudity, weapons, or otherwise inappropriate content.

10. Security

Data in transit is encrypted with TLS 1.3. Storage in Cloudflare R2 is encrypted at rest using AES-256. API keys and secrets are stored in encrypted environment vaults and rotated quarterly. We follow OWASP top-10 mitigations.

11. Changes to this policy

We may update this policy as the app evolves. Material changes will be announced in-app at least 14 days before they take effect.

12. Contact

Privacy questions or rights requests: privacy@purifyos.app
General support: support@purifyos.app

Roomify is published by PurifyOS. Bundle ID: app.roomify.ios.