Privacy Policy
Last updated: January 14, 2025
1. Introduction
Primersky LLC ("Primersky," "we," "us," or "our") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our services, including the BRF (Best Robot Forever) habit coaching application and related services.
2. Information We Collect
Account Information
- Email address
- Name (optional)
- Password (encrypted)
Usage Data
- Habit tracking data (habits you create, completion records)
- Conversation history with BRF AI assistant
- App usage statistics
Technical Data
- Device type and operating system
- IP address
- Browser type (for web access)
3. Biometric Data and Face Recognition
BRF offers an optional face recognition feature that allows the app to identify you and detect your emotional state. This section explains how we handle this sensitive data.
Collection and Consent
- Face recognition is entirely optional and requires your explicit consent to enable
- You can use all core BRF features without enabling face recognition
- You may disable this feature and delete your face data at any time
What We Collect
- Face images: Photos you provide for registration, stored securely in encrypted cloud storage
- Face embeddings: Mathematical representations of facial features (not the actual images) used for identification
- Emotional analysis: Temporary mood detection from expressions (e.g., happy, calm, stressed) to personalize coaching
How We Use Face Data
- Identification: To recognize you when you interact with BRF
- Mood detection: To provide emotionally-aware coaching responses
- Presence detection: To know when you're actively engaged with the app
Face data is never used for advertising, profiling, or shared with third parties.
Storage and Security
- Face images are stored in encrypted AWS S3 storage, accessible only to your account
- Face embeddings are stored in AWS Rekognition, an isolated face collection specific to BRF
- Metadata is stored in encrypted DynamoDB databases
- All data is transmitted over HTTPS and encrypted at rest
Retention and Deletion
- Manual deletion: You can delete your face data at any time from the app settings
- Account deletion: All face data is automatically and permanently deleted when you delete your account
- Automatic expiration: Face data unused for 365 days is automatically marked for deletion and removed within 30 days
- No backups: Once deleted, face data cannot be recovered
4. How We Use Your Information
- To provide our services: Process your habits, provide AI coaching, and deliver personalized recommendations
- To improve our services: Analyze usage patterns to enhance features and user experience
- To communicate with you: Send service updates, respond to inquiries, and provide support
- To process payments: Handle subscription billing through our payment processor (Stripe)
5. Data Storage and Security
Your data is stored securely using Amazon Web Services (AWS) infrastructure, including:
- Encrypted databases (DynamoDB)
- Secure authentication via AWS Cognito
- HTTPS encryption for all data transmission
- Regular security audits and updates
6. Data Retention
We retain your data based on your subscription tier:
- Free tier: Conversation history retained for 7 days
- Basic tier: Data retained for 30 days
- Pro tier: Data retained until you delete it or close your account
You may request deletion of your data at any time by contacting us.
7. Third-Party Services
We use the following third-party services:
- Amazon Web Services (AWS): Cloud infrastructure and AI services (Bedrock, Polly, Comprehend)
- Stripe: Payment processing
- Apple/Google: App distribution and in-app purchases
These services have their own privacy policies governing how they handle your data.
8. Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data
- Portability: Request your data in a portable format
- Opt-out: Unsubscribe from marketing communications
9. Children's Privacy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
10. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
11. Contact Us
If you have questions about this privacy policy or our data practices, please contact us: