Veyuna Privacy Policy
1. Scope and operator
This Privacy Policy explains how Aira Game ("Veyuna", "we", "us", or "our") handles information when you use the Veyuna Android or iOS application, identifier cn.ilnet.veyuna, and its related services. Veyuna does not currently require you to create a named account. It creates a pseudonymous guest profile for the installation.
For privacy questions or requests, contact aira@ilnet.cn.
2. Information we process
| Category | Examples | Why we use it |
|---|---|---|
| User content | Photos selected from your device, optional style-reference images, selected tool and settings, generated images, optional form or follow-up answers, and structured visual assessments. A photo may incidentally reveal appearance, location context, or other sensitive characteristics. | Upload, process, generate, analyze visible information, display, save, and troubleshoot the result you request. We do not use these images to identify you or include them in analytics or attribution events. |
| Face data within user-selected photos | A photo that you voluntarily select or capture may contain information relating to a human face. Veyuna processes the complete photo and does not separately collect or create face meshes, facial maps, facial coordinates, facial landmarks, face embeddings, biometric identifiers, or face-recognition profiles. | Provide the specific AI image transformation or visual service that you request. Face data is not used for authentication, identification, advertising, marketing, analytics, user profiling, or training Veyuna models. |
| App and guest identifiers | A randomly generated installation identifier, guest identifier, session tokens, app version, operating system, device type, language, country inferred from network information, and IP address in service logs. | Operate guest sessions, protect the service, prevent abuse, maintain credits, recover eligible in-progress jobs, and diagnose errors. |
| Usage and diagnostics | Tools and styles used, screens and buttons used, generation status, paywall interactions, feedback or report reason, timestamps, and technical error information. | Provide and improve Veyuna, measure reliability, understand feature use, and respond to feedback. Product analytics are enabled by default and can be disabled in Veyuna Settings. |
| Advertising attribution | On Android, Advertising ID where available; on iOS, the Apple advertising identifier (IDFA) only after App Tracking Transparency authorization, identifier for vendor (IDFV), and ATT authorization status. Tenjin may also process its installation ID, IP address, device/app details, privacy signals, install source, campaign information, and pseudonymous guest ID. | Measure whether an advertising campaign led to an installation or subscription. Attribution can be disabled in Veyuna Settings. On iOS, Veyuna requests system permission before accessing IDFA; if permission is denied, IDFA is unavailable and only limited attribution may be possible. |
| Purchases and subscriptions | Google Play or App Store product and transaction identifiers, subscription state, start/expiry information, price and currency. Google Play or Apple handles your payment credentials; Veyuna does not receive your full card or bank details. | Verify purchases, grant Plus or Pro credits and entitlements, restore purchases, reconcile renewals, refunds or cancellations, prevent fraud, and meet accounting or legal duties. |
| Support and communications | Information you voluntarily include when contacting us, plus the pseudonymous Support ID and app version attached by the app. | Respond to requests, reconcile credit activity, provide support, and exercise privacy rights. |
3. How we use information and legal bases
We process information to provide requested features and subscriptions; authenticate guest sessions; operate credits; secure, maintain and debug the service; prevent fraud and misuse; comply with law; and improve Veyuna. Where applicable, our legal bases are performance of our contract with you, our legitimate interests in operating and securing the service, compliance with legal obligations, and consent where local law requires it. PostHog analytics and Tenjin attribution are enabled by default on supported Android and iOS builds. On iOS, access to IDFA remains subject to your App Tracking Transparency choice. You may disable analytics and attribution in Veyuna Settings without losing core generation features.
4. Service providers and disclosures
We do not sell your personal information. We disclose only the information needed to providers acting for the purposes below:
- Cloudflare — API hosting, network security, queues, database storage and private image-object storage, including temporary storage of user-selected photos and generated results. See Cloudflare Privacy Policy.
- Google Play — app distribution, billing, subscription verification and real-time purchase notifications. See Google Privacy Policy.
- Apple — App Store distribution, billing, subscription verification and server notifications for iOS. See Apple Privacy Policy.
- PostHog — product analytics using pseudonymous identifiers and app-interaction events. Session replay is disabled, and Veyuna does not send photos or generated images to PostHog. You can disable analytics in Veyuna Settings. See PostHog Privacy Policy.
- Tenjin — mobile-advertising attribution and campaign measurement, including verified subscription product, price and currency events used to measure campaign outcomes. Depending on local law, disclosing advertising identifiers and activity data for attribution may be considered "sharing". You can disable attribution in Veyuna Settings. See Tenjin Privacy Policy.
- Google Cloud Vertex AI (Gemini) — the images, form context and instructions necessary to produce the transformation or structured visual assessment you request. Google Cloud's service terms state that customer data is not used to train or fine-tune AI/ML models without the customer's prior permission or instruction. See Google Cloud Service Specific Terms and Vertex AI data governance information.
We may also disclose information when reasonably necessary to comply with law, protect users or the service, investigate fraud or security incidents, enforce agreements, or complete a corporate transaction with appropriate safeguards and notice.
5. Face data
What we collect
When you voluntarily select or capture a photo, the complete photo may contain information relating to a human face ("face data"). Veyuna does not use TrueDepth or Face ID data and does not extract or create face meshes, facial maps, facial coordinates, facial landmarks, face embeddings, biometric identifiers, or face-recognition profiles.
Use
Veyuna uses face data only to perform the AI image transformation or visual service that you specifically request, such as an AI try-on, hairstyle transformation, headshot, or photo generation. We do not use face data for authentication, identification, surveillance, advertising, marketing, analytics, user profiling, or training Veyuna models.
Sharing, processing and storage
Face data is transmitted over HTTPS to Cloudflare, which provides Veyuna's API infrastructure and private R2 object storage, and to Google Cloud Vertex AI (Gemini) only to produce the result you request. Cloudflare stores source photos and generated results as private objects for the periods described in Section 6. Google Cloud processes the image and instructions on its Vertex AI infrastructure. Google documents that its published Gemini models may use isolated, in-memory caching with a time-to-live of up to 24 hours and may retain limited data where applicable for security and abuse monitoring under its terms. Veyuna does not send face data or photos to PostHog, Tenjin, advertising platforms, data brokers or information resellers. We do not sell face data.
Retention and deletion
Veyuna-controlled copies of face data follow the image-retention periods in Section 6: source photos expire shortly after processing and are normally deleted no later than approximately six hours after expiration; generated cloud results are retained for approximately seven days and then removed. You can delete an eligible item sooner from Creations, which removes the local app history, cloud result and source uploads no longer used by another item. Separately saved gallery copies remain under your control. Service providers may retain limited records under their contracts, security practices and legal obligations; contact us at aira@ilnet.cn if you want us to coordinate an applicable deletion request.
6. Image handling and retention
- On your device: selected and downloaded images remain in app-private storage or a location you choose until you delete the associated item from Creations or uninstall Veyuna. Copies saved separately to your device gallery remain under your control. Veyuna does not currently provide cross-installation cloud-gallery restoration.
- Source and style-reference uploads: upload authorization expires after about ten minutes. Associated private Cloudflare R2 objects are removed by a scheduled cleanup, normally no later than approximately six hours after expiration.
- Generated cloud results: private result objects are retained for approximately seven days so the current installation can retrieve them, then removed by a cleanup that runs every six hours. A copy already downloaded to your device is not affected.
- Structured visual assessments: result text, confidence, optional form context and feedback remain associated with the pseudonymous guest installation until you delete the saved item from Creations or they are no longer operationally needed. Source photos follow the shorter source-upload retention above.
- Operational records: ordinary job metadata and credit transactions are retained for up to 180 days; each wallet keeps at most 100 ordinary credit entries and the app returns at most 50. First-party analytics events are retained for up to 90 days. Minimal idempotency receipts, purchase/subscription records, security records, and legally required records may be kept longer for service integrity, fraud prevention, dispute handling, accounting, and legal compliance.
- Provider records: our service providers retain information under their contracts, settings and legal obligations. Contact us if you want us to coordinate an applicable deletion request.
7. Your choices, deletion and rights
Veyuna Settings lets you disable or re-enable analytics and attribution. On iOS, you can also review the system tracking permission in Settings. Creations lets you permanently delete an individual generated image or saved visual assessment from Veyuna. Item deletion removes its local app history, eligible cloud result or assessment, associated feedback, and source uploads that are no longer used by another item. It does not reverse consumed credits, remove copies saved separately to your device gallery, or cancel a Google Play or App Store subscription. Purchase, credit-ledger, security and anti-fraud records may be retained where required or reasonably necessary.
Because Veyuna has no named account, we may need the current installation identifier or other information to verify an external request. Depending on your location, you may have rights to request access, correction, deletion, restriction, portability, or objection; withdraw consent; opt out of sale or sharing; and appeal or complain to a data-protection authority. We do not discriminate against users for exercising privacy rights. Submit a request to aira@ilnet.cn.
8. Security
Veyuna uses HTTPS for data in transit, access-controlled guest sessions, private object storage, limited-duration upload authorization, encrypted local credential storage, purchase-token protection, and restricted service access. No storage or transmission method is completely secure, and we cannot guarantee absolute security.
9. International transfers
Veyuna and its providers may process information in countries other than yours, including the United States. Where required, we rely on recognized safeguards such as contractual protections or adequacy mechanisms. Privacy laws and protections may differ between countries.
10. Children
Veyuna is not directed to children under 13, or a higher minimum age where local law requires it, and we do not knowingly collect their personal information. Do not upload a child's image unless you are authorized and all applicable consent requirements are satisfied. Contact us if you believe a child provided information improperly so we can take appropriate action.
11. Your responsibilities for uploaded images
Only upload images you own or are authorized to use. If an image depicts another person, you are responsible for obtaining any permission required to process and transform that image. Do not upload unlawful content or content for which you lack the necessary rights.
12. Changes to this policy
We may update this policy as Veyuna, our providers, or applicable requirements change. We will update the date above and provide additional notice in the app when a change is material and such notice is required.
13. Contact
Veyuna / Aira Game
Privacy contact: aira@ilnet.cn