K Kitana

Privacy Policy

Last updated 7 June 2026 · Effective 7 June 2026

Kitana ("we", "us", "our") provides AI-powered photo generation. This Privacy Policy explains what we collect, how we use it, and the choices you have.

1. Information We Collect

1.1 Photos you upload

When you generate an image, your input photo is uploaded to Firebase Cloud Storage in a folder unique to your device. We strip GPS coordinates and other EXIF metadata before the upload. The photo is sent to OpenAI's gpt-image-1 API so the AI can edit it. We do not share your photos with any other third party.

If an uploaded photo contains a face, the face shown in that photo is included in the image pixels we process. We do not collect face templates, faceprints, face geometry, biometric identifiers, face recognition results, or facial verification data. We do not use face data to identify, authenticate, track, profile, or recognize any person.

1.2 Generations

We store the result of each generation plus a small record of metadata (feature used, timestamp, cost estimate) so we can show your gallery and enforce usage limits.

1.3 Account identifier

On first launch we create an anonymous Firebase user for your device. This identifier lets us enforce daily generation limits and track your Pro subscription without collecting any personally identifiable information.

If you choose to link an Apple or Google account (optional, in Settings), we'll also store your email address and display name.

1.4 Subscription state

If you purchase Kitana Pro, RevenueCat processes the purchase on Apple's behalf and tells us whether your subscription is active. We don't see your payment details.

1.5 Diagnostic & usage data

We use Firebase Analytics to understand how the app is used (which features are popular, how long users stay) and Firebase Crashlytics to fix crashes. These collect device-level information (model, OS version, anonymized usage events) but not personally identifying data.

1.6 Advertising (free users only)

Free users see banner ads via Google AdMob. AdMob may collect device identifiers for advertising purposes; you can limit this in iOS Settings → Privacy → Tracking. Pro users see no ads.

2. How We Use Your Information

We do not sell your data. We do not train AI models on your photos. We do not use face data for advertising or analytics.

3. Data Retention

Face data is retained only as part of the uploaded input photo and generated photo. We do not store a separate face database, face template, faceprint, or biometric identifier.

4. Your Rights & Choices

EU/UK residents have additional rights under GDPR (access, rectification, portability, restriction, objection, automated-decision review). California residents have rights under CCPA. We do not sell personal information. To exercise these rights, email support@kitana.app.

5. Children

Kitana is rated 12+ and not directed at children under 13. We don't knowingly collect data from children under 13. If you believe a child has provided us data, email support@kitana.app and we'll delete it.

6. Security

Photos and account data are encrypted in transit (HTTPS / TLS) and at rest (Firebase Cloud Storage uses AES-256). API keys never reside on your device — all AI calls go through our authenticated backend.

7. Third-Party Services

ServiceWhat it doesTheir privacy policy
Firebase (Google)Storage, auth, database, analytics, crash reportspolicies.google.com
OpenAIAI image generation; input photo, including any visible face in the image pixels, is processed but not retained per OpenAI's API policyopenai.com
RevenueCatSubscription processingrevenuecat.com
AdMob (Google)Banner ads for free userspolicies.google.com
Apple / GoogleApp store distribution + paymentsapple.com · google.com

8. Changes to This Policy

We'll update this policy as features change. The "Last updated" date at the top will reflect any changes. Material changes will be announced inside the app.

9. Contact

Questions or requests:
Email: support@kitana.app