PRIVACY POLICY

Beard Grow
Last Updated: October 17, 2025

1. INTRODUCTION

This Privacy Policy describes how Beard Grow ("we," "our," or "us") collects, uses, processes, and protects your personal information when you use our mobile application ("App"). Beard Grow is an AI-powered mobile application that provides personalized beard analysis and tailored care plans through advanced machine learning algorithms and computer vision technology.

Age Restriction: The App is intended for users who are 18 years of age or older. By using our App, you confirm that you meet this age requirement.

We are committed to protecting your privacy and ensuring transparency in our data practices. This Privacy Policy complies with applicable privacy laws, including:

Your Consent: By using our App, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with this Privacy Policy, please do not use our App.

2. INFORMATION WE COLLECT

2.1 Personal Information

We collect the following types of personal information to provide our services:

2.2 Visual Content and Biometric Data

We collect and process visual content for AI analysis purposes:

Biometric Data Notice: The facial analysis and beard measurements we derive from your photos may constitute biometric data under applicable laws. We process this data solely for providing our AI analysis services and delete it according to our retention policy.

2.3 Usage and Analytics Data

2.4 Location Data

We may collect approximate location data through IP address geolocation for:

2.5 Communication Data

2.6 Payment and Subscription Data

Payment Security: We do NOT collect, process, or store your credit card or payment method details. All payment processing is handled securely by Apple (App Store), Google (Play Store), and Superwall's payment infrastructure.

3. HOW WE USE YOUR INFORMATION

3.1 Primary App Functions

3.2 Account Management and Security

3.3 App Improvement and Development

3.4 Communication and Engagement

3.5 Legal Compliance and Security

For users in the European Economic Area (EEA), United Kingdom, and Switzerland, we process your personal data based on the following legal grounds under the GDPR:

Withdrawal of Consent: Where we rely on your consent, you have the right to withdraw it at any time. This will not affect the lawfulness of processing based on consent before its withdrawal.

5. INFORMATION SHARING AND DISCLOSURE

5.1 Third-Party Service Providers

We share information with carefully selected third-party service providers who assist us in operating our App. Each provider is bound by strict data protection agreements:

5.2 Legal Requirements and Law Enforcement

We may disclose your information if required by law or in good faith belief that such action is necessary:

5.3 Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections outlined in this policy. We will notify you via email and/or prominent notice in the App of any such change in ownership.

5.4 No Sale of Personal Data

Important: We do not sell, rent, lease, or otherwise commercialize your personal information to third parties for monetary consideration. We do not engage in data brokerage activities.

6. DATA SECURITY

We implement comprehensive, industry-standard security measures to protect your information:

6.1 Technical Safeguards

6.2 Operational Safeguards

6.3 Physical Safeguards

Security Breach Notification: In the unlikely event of a data breach that may compromise your personal information, we will notify you within 72 hours via email and through the App, as required by applicable laws.

7. DATA RETENTION

We retain your information for the minimum time necessary to provide our services and comply with legal obligations:

Data Deletion: You can request deletion of your data at any time through the app settings or by contacting us at support@beardgrow.org. We will process deletion requests within 30 days, except where retention is required by law.

8. YOUR RIGHTS AND CHOICES

8.1 Access and Control

8.2 Communication Preferences

8.3 GDPR Rights (EEA, UK, Switzerland Users)

8.4 California Privacy Rights (CCPA/CPRA)

California residents have additional rights under the California Consumer Privacy Act:

Exercising Your Rights

To exercise any of these rights, please contact us at:

Subject Line: "Privacy Rights Request"

We will respond to your request within 30 days (or as required by applicable law) and may require identity verification to protect your privacy.

9. CHILDREN'S PRIVACY

Age Restriction: Our App is intended for users who are 18 years of age or older. We do not knowingly collect personal information from individuals under 18 years of age.

If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us immediately at support@beardgrow.org. If we become aware that we have collected personal information from individuals under 18 without proper consent, we will take immediate steps to remove that information from our servers and terminate the associated account.

10. INTERNATIONAL DATA TRANSFERS

Your information may be transferred to and processed in countries other than your country of residence, including the United States and other countries where our service providers operate.

10.1 Safeguards for International Transfers

When we transfer personal data from the EEA, UK, or Switzerland to other countries, we ensure appropriate safeguards are in place:

For users outside the EEA, we apply the same high standards of data protection to ensure your information is handled securely and in accordance with this Privacy Policy.

11. LOCAL STORAGE AND TRACKING

Our mobile App uses local storage and similar technologies to enhance your experience:

11.1 Types of Data Stored Locally

11.2 Managing Local Storage

You can control local storage through your device settings. However, disabling certain storage may affect app functionality, including:

Our App may contain links to third-party websites, services, or applications. We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policies of any third-party services you visit or use.

12.1 Third-Party Services We Link To

13. UPDATES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.

13.1 Notification of Changes

We will notify you of any material changes by:

Your continued use of the App after any changes constitutes acceptance of the new Privacy Policy. If you do not agree to the updated policy, you should discontinue use of the App.

14. CONTACT INFORMATION

Data Controller

Name: Eugene George
Address: Munjanattu(H) Alakode, Kannur, Kerala, India - 670571

Data Protection Officer

For questions about this Privacy Policy, data protection matters, or to exercise your rights, please contact our Data Protection Officer:

Subject Line: "Data Protection Inquiry"

EU Representative

As a small developer without a physical EU presence, we are committed to protecting your data rights under GDPR. While we do not have a formal EU representative, we have implemented robust data protection measures and are available to address any concerns from EU users.

EU Inquiries: privacy@beardgrow.org
Subject Line: "EU Privacy Inquiry"

15. DISPUTE RESOLUTION

Any disputes arising from this Privacy Policy will be resolved through the following process:

  1. Good Faith Negotiation: Initial attempt to resolve disputes through direct communication
  2. Mediation: If negotiation fails, disputes will be submitted to mediation through a mutually agreed mediator
  3. Arbitration: If mediation is unsuccessful, disputes will be resolved through binding arbitration under the Arbitration and Conciliation Act, 2015 of India
  4. Jurisdiction: For non-arbitrable matters, the exclusive jurisdiction shall be the courts of Kannur, Kerala, India

15.1 EU Users - Data Protection Authority

EU users have the right to lodge a complaint with their local data protection authority if they believe their data protection rights have been violated.

16. MISCELLANEOUS

16.1 Entire Agreement

This Privacy Policy, together with our Terms of Service, constitutes the entire agreement between you and us regarding the privacy of your information.

16.2 Severability

If any provision of this Privacy Policy is found to be unenforceable or invalid, the remaining provisions will remain in full force and effect.

16.3 Governing Law

This Privacy Policy is governed by the laws of India and the state of Kerala, without regard to conflict of law principles.

16.4 Language

This Privacy Policy is written in English. In case of any translation, the English version shall prevail.