MistlyMINDNULL STUDIO

Privacy Policy

Last updated: September 8, 2026

The short version. Mistly applies a look to a photo you already have. Your photos live on your device. Nothing leaves your phone unless you choose to run an AI Look, export a photo, publish to the community feed, or set a profile photo. We show no ads. We do not sell or "share" your personal information. We use no third-party analytics, no advertising SDKs and no cross-app tracking, and the app never asks for tracking permission because it never tracks you.

1. Who we are

Mistly ("the App") is developed and operated by Berkay ATİK, an independent developer trading as Mindnull Studio ("we", "us", "our"). We are the data controller for the processing described here.

This policy covers the Mistly iOS app and the pages on this site. It works together with our Terms of Service and our Community Guidelines.

2. What never leaves your device

Most of Mistly is local. The following is stored only in the App's own private storage on your iPhone and is never uploaded to us:

Deleting the App from your iPhone deletes all of it. We keep no copy.

3. What we process, and when

3.1 Camera and the photos you take

The App uses the camera only for its capture screen, which is reached from the photo picker, so you can take a photo to use with a look. What you capture is saved into the App's own private storage. It is written to your system Photo Library only when you export it. The App does not record video and never uses the microphone.

3.2 Choosing a photo from your library

When you pick a photo as the source for a look or a collage, the system photo picker hands the App that single image. We do not browse, scan, index or upload your photo library — only the image you deliberately choose is used, and only for the action you asked for.

3.3 Collage — entirely on your device

The Collage maker runs fully offline. The photos you place in a collage are read, composed and exported locally. No account is involved, no AI service takes part, and nothing is uploaded.

3.4 Account and sign-in

On first use the App creates an anonymous account through Firebase Authentication (a Google service): a random identifier with no personal details, used to authenticate requests and to enforce fair usage. You may optionally link that account with Sign in with Apple or Google; we then receive the basic identity that service returns — typically an email address (with Apple this may be a private relay address) and, where provided, your name. We never offer, receive or store passwords.

Wherever our servers record something about an account, they store a SHA-256 hash of the account identifier rather than the identifier itself.

3.5 AI Looks

Before the first AI upload, the App shows a separate consent dialog naming Google Firebase, fal.ai and OpenAI, explaining what is sent, and letting you allow or decline. Declining does not affect the camera, the gallery or Collage. You can withdraw the permission at any time in Settings → AI photo processing; after that no further photo is uploaded unless you allow it again.

When you run a look, the single photo you selected is compressed and sent over an encrypted (HTTPS/TLS) connection, with your account token, to our processing service — a Google Cloud Function we operate — and on to a third-party AI image provider, fal.ai or OpenAI, solely to generate your edited photo, which is returned to you. Some looks ask you for a word or a choice first; that text is sent as part of the instruction.

We do not keep a permanent copy of your source photo or your result. Our service holds the image in memory only as long as the request needs. However, so that a result is not lost if iOS suspends or closes the App mid-generation, the finished result is held briefly on our service so it can be delivered when you come back — either as the provider's private retrieval link or, when the result is small, as the image itself. It is deleted as soon as the App confirms it has saved the result to your gallery, and it is used for nothing else.

To run allowances, prevent double charging and resist abuse, we keep a per-account generation ledger: the applicable free or subscription period, creations used, purchased-credit balance, hashed account and request identifiers, whether the request was an image or a video, its status and timestamps. The AI providers process the image under their own terms — see fal.ai's Privacy Policy and OpenAI's Privacy Policy.

3.6 Feedback on a look

If you rate a finished look, we receive your like/dislike, the look's identifier, any reason tags you tick, your app language, and the optional free-text note you write (up to 500 characters). It is stored against the hashed account identifier. Please do not put personal information in the note.

3.7 Your profile photo

Setting a profile photo is optional. The photo is squared and re-encoded on your device and kept there.

A copy is uploaded to our servers only if you are signed in with Apple or Google — an anonymous guest's profile photo never leaves the device. When it is uploaded it is first screened automatically (see §3.8) and then stored at a path derived from your hashed account identifier. Its purpose is to appear beside your posts in the community feed, where it is publicly visible to anyone using the App. Each account has exactly one profile photo on our servers; replacing it overwrites the previous one. You may change it up to 10 times a day. Removing it in the App deletes it from our servers, and deleting your account deletes it too.

3.8 Explore — the community feed

Publishing is entirely optional. Nothing you create is published unless you publish it, publishing requires a signed-in account, and you may publish at most one post per day.

When you publish, the following is uploaded and becomes publicly visible to anyone using the App: the result image; the original "before" image if you choose to include one; an optional caption you write (up to 200 characters); the name and identifier of the look used; the image dimensions; your profile photo if you have one; and your handle. Your handle is a pseudonym of the form lens0423, derived from a hash of your account identifier — it is stable, so your posts are recognisable as yours, and it carries no personal data. We never publish your email address, your name or your sign-in identity.

Before a post appears, its image is screened automatically by Google Cloud Vision (SafeSearch plus label detection). Content that fails screening is refused and never published. The same screening is applied to profile photos.

Posts, and the images stored for them, are deleted automatically and permanently 24 hours after publication. You can delete your own post at any time before that.

3.9 Explore — comments

You can write comments under posts. A comment is public, is limited to 300 characters, and is stored with your handle and your hashed account identifier. You may leave up to 100 comments a day. Comments are deleted together with the post they belong to, so they too disappear within 24 hours. You can delete your own comment, and the owner of a post can delete any comment on their own post.

3.10 Explore — reports and blocks

If you report a post or a comment, we record the reason you chose, the reported item and your hashed account identifier, so the same person cannot report the same item repeatedly. If you block someone, the block is stored against your hashed account identifier so their content stops reaching you. If an account has content removed twice, we record that it may no longer publish. See the Community Guidelines for what we do with reports.

3.11 Purchases and subscriptions

Mistly has a free tier, optional auto-renewing Premium subscriptions (weekly, monthly, quarterly) and optional one-time credit packs. Payment is processed by Apple through the App Store — we never see or store your card or billing details. No Mistly account or linked sign-in is required to purchase or restore on the device you bought on.

To verify subscriptions, trials, renewals and credit purchases, RevenueCat processes your App Store purchase and receipt information together with a pseudonymous app user id. Our backend receives only the verified product, period and transaction information needed to refresh your allowance and to add each credit pack exactly once. If you later link your account with Apple or Google, the purchase identity may be associated with that account so Premium can follow you across your devices. See RevenueCat's Privacy Policy.

3.12 App and device integrity

To reduce automated abuse and protect paid AI capacity, the App uses Firebase App Check with Apple's App Attest or DeviceCheck. Apple and Google process short-lived app/device integrity attestations for this purpose only. These signals are never used for advertising or cross-app tracking.

3.13 Notifications

If you allow notifications, the App can tell you that a look you started has finished. These are local notifications scheduled on your device. There is no push server, and no device token is sent to us or to anyone else.

3.14 What we do not receive

The App requests no location, no contacts, no calendar, no health data, no microphone access and no advertising identifier. It contains no analytics or crash-reporting SDK.

4. What we never do

5. Who your data is shared with

Only with the providers below, only for the purposes stated, and only as far as the feature you used requires.

ProviderWhat it processesWhy
Google (Firebase Authentication, Cloud Functions, Firestore, Cloud Storage, App Check) Anonymous or linked account identifier, request metadata, the image while a request runs, published feed content, profile photos, integrity attestations Runs the account, the processing service, the feed and its storage
Google Cloud VisionThe image you publish, or your profile photo Automatic safety screening before anything becomes public
fal.aiThe single photo you chose and the look instruction Generates your edited photo
OpenAIThe single photo you chose and the look instruction Generates your edited photo (alternative provider)
RevenueCatApp Store purchase/receipt data, pseudonymous app user id Verifies subscriptions, trials and credit packs
ApplePayment and billing, Sign in with Apple identity, App Attest/DeviceCheck Processes purchases, optional sign-in, device integrity

We may also disclose information where we are legally required to, or to establish, exercise or defend legal claims. If the App is ever transferred to another owner, we will say so here before any personal information moves.

6. Legal bases (EEA / UK)

7. Türkiye — KVKK (Law No. 6698)

The data controller is Berkay ATİK (Mindnull Studio). Personal data is processed for the purposes described above, on the grounds in Article 5 — your explicit consent for AI processing, the necessity of processing for the performance of a contract, and our legitimate interests where these do not override your fundamental rights and freedoms. Under Article 11 you may ask whether your data is processed, request information and correction, request erasure, object to results produced solely by automated analysis, and claim compensation for damage caused by unlawful processing. Requests go to support@mindnullstudio.com and are answered within 30 days. Because our infrastructure runs on Google Cloud, personal data may be transferred abroad under Article 9.

8. U.S. state privacy rights

If you live in California, Colorado, Connecticut, Virginia or another state with a comparable law, you may request access to, correction of, or deletion of your personal information, and you may appeal a refusal. We do not sell personal information and we do not share it for cross-context behavioural advertising, so there is nothing to opt out of. We do not use your data for profiling that produces legal or similarly significant effects. We will not discriminate against you for exercising a right. Write to support@mindnullstudio.com.

9. How long we keep things

WhatHow long
Your photos and results in the in-app gallery On your device only, until you delete them or the App; the 60 most recent are kept
A published post, its images and its comments Deleted automatically 24 hours after publication, or immediately when you delete the post
A generated result held for delivery Until the App confirms it saved it to your gallery, then deleted
Your profile photo on our servers Until you replace it, remove it, or delete your account
Generation ledger (hashed ids, status, timestamps, balances) While your account exists, for allowances and abuse prevention; deleted with the account
Look feedback Kept against a hashed identifier to improve the looks
Reports, blocks and publishing restrictions Kept while needed to keep the feed safe and to enforce a restriction
Account record Until you delete your account

10. Your rights and choices

Unused credits from one-time packs are deleted with the account and cannot be restored. Deleting your Mistly account does not cancel an App Store subscription — cancel that in the App Store.

11. Security

All traffic between the App and our service is encrypted in transit (HTTPS/TLS). Data at rest on Google Cloud is encrypted by the platform. Our AI provider keys live only on the server; the App ships none. Every request is authenticated and additionally verified with Firebase App Check. Databases and storage deny all direct access from the App — only our server can read or write them. Account identifiers are hashed wherever we record them. No system is perfectly secure, but we design to hold as little as possible.

12. International transfers

We are based in Türkiye and our infrastructure runs on Google Cloud in the United States. Our AI providers and RevenueCat also process data in the United States and other countries. Where data leaves the EEA or the UK, transfers rely on the European Commission's Standard Contractual Clauses or another lawful mechanism offered by the provider. For Türkiye, transfers are made under Article 9 of Law No. 6698.

13. Children

Mistly is not directed at children. You must be at least 13 — or the higher minimum age required in your country — to use it, and the community feed requires an account. We do not knowingly collect personal information from children below that age. If you believe a child has provided us with personal information, write to support@mindnullstudio.com and we will delete it.

14. Changes to this policy

If we change this policy we will update the date at the top and, for a material change, tell you in the App before it takes effect. Continuing to use Mistly after a change means you accept the updated policy.

Contact

Mindnull Studio · Developer: Berkay ATİK
Email: support@mindnullstudio.com
Website: www.mindnullstudio.com
Support: mindnullstudio.com/support

Gizlilik Politikası

Son güncelleme: 8 Eylül 2026

Kısa özet. Mistly, halihazırda sahip olduğunuz bir fotoğrafa bir "look" uygular. Fotoğraflarınız cihazınızda kalır. Siz bir AI Look çalıştırmayı, bir fotoğrafı dışa aktarmayı, toplulukta paylaşmayı veya profil fotoğrafı belirlemeyi seçmediğiniz sürece telefonunuzdan hiçbir şey çıkmaz. Reklam göstermiyoruz. Kişisel bilgilerinizi satmıyor ve paylaşmıyoruz. Üçüncü taraf analitik aracı, reklam SDK'sı ve uygulamalar arası izleme kullanmıyoruz; uygulama izleme izni de istemiyor, çünkü sizi hiçbir şekilde izlemiyor.

1. Biz kimiz

Mistly ("Uygulama"), Mindnull Studio adıyla faaliyet gösteren bağımsız geliştirici Berkay ATİK tarafından geliştirilmekte ve işletilmektedir ("biz"). Burada anlatılan işleme faaliyetleri bakımından veri sorumlusu biziz.

Bu politika Mistly iOS uygulamasını ve bu sitedeki sayfaları kapsar. Kullanım Koşulları ve Topluluk Kuralları ile birlikte geçerlidir.

2. Cihazınızdan hiç çıkmayanlar

Mistly'nin büyük bölümü yereldir. Aşağıdakiler yalnızca iPhone'unuzdaki uygulamaya ait özel alanda saklanır ve bize hiçbir zaman yüklenmez:

Uygulamayı silmeniz bunların tamamını siler. Bizde kopyası kalmaz.

3. Neyi, ne zaman işliyoruz

3.1 Kamera ve çektiğiniz fotoğraflar

Uygulama kamerayı yalnızca fotoğraf seçicisinden ulaşılan çekim ekranı için kullanır; amaç bir look ile kullanacağınız fotoğrafı çekmenizdir. Çektiğiniz görsel uygulamanın kendi özel alanına kaydedilir. Sistem Fotoğraflar kitaplığınıza yalnızca siz dışa aktardığınızda yazılır. Uygulama video kaydetmez ve mikrofonu hiçbir şekilde kullanmaz.

3.2 Kitaplığınızdan fotoğraf seçmek

Bir look veya kolaj için kaynak fotoğraf seçtiğinizde sistem fotoğraf seçicisi uygulamaya yalnızca o tek görseli verir. Fotoğraf kitaplığınızı taramaz, dizinlemez ve yüklemeyiz; yalnızca bilerek seçtiğiniz görsel, yalnızca istediğiniz işlem için kullanılır.

3.3 Kolaj — tamamen cihazınızda

Kolaj aracı tamamen çevrimdışı çalışır. Kolaja yerleştirdiğiniz fotoğraflar yerel olarak okunur, birleştirilir ve dışa aktarılır. Hesap gerekmez, yapay zekâ hizmeti devreye girmez, hiçbir şey yüklenmez.

3.4 Hesap ve giriş

İlk kullanımda uygulama, Firebase Authentication (bir Google hizmeti) üzerinden anonim bir hesap oluşturur: kişisel hiçbir bilgi içermeyen rastgele bir tanımlayıcı; istekleri doğrulamak ve adil kullanım sınırlarını uygulamak için kullanılır. Dilerseniz bu hesabı Apple ile Giriş veya Google ile bağlayabilirsiniz; bu durumda ilgili servisin döndürdüğü temel kimlik bilgisini alırız — genellikle bir e-posta adresi (Apple'da bu bir gizli aktarma adresi olabilir) ve varsa adınız. Parola önermiyor, almıyor ve saklamıyoruz.

Sunucularımız bir hesaba ilişkin bir şey kaydettiğinde, tanımlayıcının kendisini değil SHA-256 özetini saklar.

3.5 AI Looks

İlk yapay zekâ yüklemesinden önce uygulama; Google Firebase, fal.ai ve OpenAI adlarını açıkça belirten, neyin gönderildiğini anlatan ve izin verme ya da reddetme seçeneği sunan ayrı bir onay ekranı gösterir. Reddetmeniz kamerayı, galeriyi veya Kolaj'ı etkilemez. İzni istediğiniz zaman Ayarlar → Yapay zekâ ile fotoğraf işleme bölümünden geri alabilirsiniz; ardından siz yeniden izin vermedikçe başka hiçbir fotoğraf yüklenmez.

Bir look çalıştırdığınızda, seçtiğiniz tek fotoğraf sıkıştırılır ve hesap belirtecinizle birlikte şifreli (HTTPS/TLS) bir bağlantı üzerinden işlettiğimiz bir Google Cloud Function'a, oradan da üçüncü taraf görsel yapay zekâ sağlayıcısına — fal.ai veya OpenAI — yalnızca düzenlenmiş fotoğrafınızı üretmek amacıyla gönderilir ve sonuç size döner. Bazı looklar önce sizden bir kelime veya bir seçim ister; bu metin talimatın parçası olarak gönderilir.

Kaynak fotoğrafınızın veya sonucunuzun kalıcı bir kopyasını tutmuyoruz. Hizmetimiz görseli yalnızca istek gerektirdiği sürece bellekte tutar. Ancak üretim sürerken iOS uygulamayı askıya alır veya kapatırsa sonucunuz kaybolmasın diye, tamamlanan sonuç geri döndüğünüzde teslim edilebilmek için kısa süreliğine hizmetimizde tutulur — ya sağlayıcının özel erişim bağlantısı olarak ya da sonuç küçükse görselin kendisi olarak. Bu kayıt, uygulama sonucu galerinize kaydettiğini doğrular doğrulamaz silinir ve başka hiçbir amaçla kullanılmaz.

Kullanım haklarını işletmek, çift ücretlendirmeyi önlemek ve kötüye kullanıma karşı korunmak için hesap başına bir üretim defteri tutarız: geçerli ücretsiz veya abonelik dönemi, kullanılan üretim sayısı, satın alınmış kredi bakiyesi, özetlenmiş hesap ve istek kimlikleri, isteğin görsel mi video mu olduğu, durumu ve zaman damgaları. Yapay zekâ sağlayıcıları görseli kendi koşulları uyarınca işler — bkz. fal.ai Gizlilik Politikası ve OpenAI Gizlilik Politikası.

3.6 Look geri bildirimi

Biten bir looku değerlendirirseniz; beğeni/beğenmeme bilginizi, look kimliğini, işaretlediğiniz sebep etiketlerini, uygulama dilinizi ve yazdığınız isteğe bağlı serbest metni (en fazla 500 karakter) alırız. Bu kayıt özetlenmiş hesap kimliğiyle saklanır. Lütfen bu nota kişisel bilgi yazmayın.

3.7 Profil fotoğrafınız

Profil fotoğrafı belirlemek isteğe bağlıdır. Fotoğraf cihazınızda kare hâle getirilip yeniden kodlanır ve orada saklanır.

Bir kopyası sunucularımıza yalnızca Apple veya Google ile giriş yapmışsanız yüklenir — anonim bir misafirin profil fotoğrafı cihazdan hiç çıkmaz. Yüklendiğinde önce otomatik denetimden geçirilir (bkz. §3.8), ardından özetlenmiş hesap kimliğinizden türetilen bir yola kaydedilir. Amacı, topluluk akışında gönderilerinizin yanında görünmektir; orada uygulamayı kullanan herkese açıktır. Sunucularımızda her hesabın tek bir profil fotoğrafı bulunur; değiştirmeniz öncekini üzerine yazar. Günde en fazla 10 kez değiştirebilirsiniz. Uygulamadan kaldırmanız sunucularımızdan da siler; hesabınızı silmeniz de siler.

3.8 Explore — topluluk akışı

Paylaşmak tamamen isteğe bağlıdır. Siz paylaşmadıkça ürettiğiniz hiçbir şey yayımlanmaz, paylaşım için giriş yapmış bir hesap gerekir ve günde en fazla bir gönderi paylaşabilirsiniz.

Paylaştığınızda şunlar yüklenir ve uygulamayı kullanan herkese açık hâle gelir: sonuç görseli; eklemeyi seçerseniz "öncesi" görseli; yazdığınız isteğe bağlı açıklama (en fazla 200 karakter); kullanılan lookun adı ve kimliği; görselin boyutları; varsa profil fotoğrafınız; ve kullanıcı adınız. Kullanıcı adınız lens0423 biçiminde bir takma addır ve hesap kimliğinizin özetinden türetilir — sabittir, böylece gönderileriniz size ait olarak tanınır, ve hiçbir kişisel veri taşımaz. E-posta adresinizi, adınızı veya giriş kimliğinizi asla yayımlamayız.

Bir gönderi görünmeden önce görseli Google Cloud Vision ile otomatik olarak denetlenir (SafeSearch ve etiket tespiti). Denetimden geçemeyen içerik reddedilir ve hiç yayımlanmaz. Aynı denetim profil fotoğraflarına da uygulanır.

Gönderiler ve onlar için saklanan görseller, yayımlanmalarından 24 saat sonra otomatik ve kalıcı olarak silinir. Kendi gönderinizi bu süreden önce istediğiniz an silebilirsiniz.

3.9 Explore — yorumlar

Gönderilerin altına yorum yazabilirsiniz. Yorum herkese açıktır, en fazla 300 karakterdir ve kullanıcı adınız ile özetlenmiş hesap kimliğinizle saklanır. Günde en fazla 100 yorum yazabilirsiniz. Yorumlar, ait oldukları gönderiyle birlikte silinir; yani onlar da 24 saat içinde kaybolur. Kendi yorumunuzu silebilirsiniz; bir gönderinin sahibi de kendi gönderisindeki her yorumu silebilir.

3.10 Explore — bildirimler ve engelleme

Bir gönderiyi veya yorumu bildirdiğinizde; seçtiğiniz sebebi, bildirilen içeriği ve özetlenmiş hesap kimliğinizi kaydederiz; böylece aynı kişi aynı içeriği tekrar tekrar bildiremez. Birini engellerseniz bu engel özetlenmiş hesap kimliğinizle saklanır ve o kişinin içeriği size ulaşmaz. Bir hesabın içeriği iki kez kaldırılmışsa, artık paylaşım yapamayacağını kaydederiz. Bildirimlerle ne yaptığımız için Topluluk Kuralları'na bakın.

3.11 Satın almalar ve abonelikler

Mistly'de ücretsiz bir kademe, isteğe bağlı otomatik yenilenen Premium abonelikler (haftalık, aylık, üç aylık) ve isteğe bağlı tek seferlik kredi paketleri bulunur. Ödeme, App Store üzerinden Apple tarafından işlenir — kart veya fatura bilgilerinizi ne görürüz ne saklarız. Satın alma yaptığınız cihazda satın almak veya geri yüklemek için Mistly hesabı ya da bağlı bir giriş gerekmez.

Abonelikleri, deneme sürelerini, yenilemeleri ve kredi satın almalarını doğrulamak için RevenueCat, App Store satın alma ve makbuz bilgilerinizi takma bir uygulama kullanıcı kimliğiyle birlikte işler. Sunucumuz yalnızca hakkınızı yenilemek ve her kredi paketini tam olarak bir kez eklemek için gereken doğrulanmış ürün, dönem ve işlem bilgisini alır. Hesabınızı daha sonra Apple veya Google ile bağlarsanız, Premium'un cihazlarınız arasında geçerli olması için satın alma kimliği o hesapla ilişkilendirilebilir. Bkz. RevenueCat Gizlilik Politikası.

3.12 Uygulama ve cihaz bütünlüğü

Otomatik kötüye kullanımı azaltmak ve ücretli yapay zekâ kapasitesini korumak için uygulama, Apple'ın App Attest veya DeviceCheck teknolojisiyle Firebase App Check kullanır. Apple ve Google bu amaçla kısa ömürlü uygulama/cihaz bütünlüğü doğrulamalarını işler. Bu sinyaller reklam veya uygulamalar arası izleme için asla kullanılmaz.

3.13 Bildirimler

Bildirimlere izin verirseniz uygulama, başlattığınız bir lookun tamamlandığını size bildirebilir. Bunlar cihazınızda planlanan yerel bildirimlerdir. Bir push sunucusu yoktur; bize veya başka birine hiçbir cihaz belirteci gönderilmez.

3.14 Almadıklarımız

Uygulama konum, rehber, takvim, sağlık verisi, mikrofon erişimi ve reklam tanımlayıcısı istemez. İçinde analitik veya çökme raporlama SDK'sı bulunmaz.

4. Asla yapmadıklarımız

5. Verileriniz kimlerle paylaşılır

Yalnızca aşağıdaki sağlayıcılarla, yalnızca belirtilen amaçlarla ve yalnızca kullandığınız özelliğin gerektirdiği ölçüde.

Sağlayıcıİşlediği bilgiAmaç
Google (Firebase Authentication, Cloud Functions, Firestore, Cloud Storage, App Check) Anonim veya bağlı hesap kimliği, istek üstverisi, istek sürerken görselin kendisi, yayımlanan akış içeriği, profil fotoğrafları, bütünlük doğrulamaları Hesabı, işleme hizmetini, akışı ve depolamasını çalıştırır
Google Cloud VisionPaylaştığınız görsel veya profil fotoğrafınız Herkese açık hâle gelmeden önce otomatik güvenlik denetimi
fal.aiSeçtiğiniz tek fotoğraf ve look talimatı Düzenlenmiş fotoğrafınızı üretir
OpenAISeçtiğiniz tek fotoğraf ve look talimatı Düzenlenmiş fotoğrafınızı üretir (alternatif sağlayıcı)
RevenueCatApp Store satın alma/makbuz verisi, takma uygulama kullanıcı kimliği Abonelik, deneme ve kredi paketlerini doğrular
AppleÖdeme ve faturalandırma, Apple ile Giriş kimliği, App Attest/DeviceCheck Satın almaları, isteğe bağlı girişi ve cihaz bütünlüğünü işler

Hukuken zorunlu olduğumuz hâllerde veya hukuki taleplerin tesisi, kullanılması ya da korunması için de bilgi açıklayabiliriz. Uygulama bir gün başka bir sahibe devredilirse, kişisel bilgiler aktarılmadan önce bunu burada duyururuz.

6. Hukuki dayanaklar (AEA / Birleşik Krallık)

7. Türkiye — KVKK Aydınlatma Metni (6698 sayılı Kanun)

Veri sorumlusu Berkay ATİK (Mindnull Studio)'dur. Kişisel verileriniz yukarıda açıklanan amaçlarla; yapay zekâ işleme bakımından açık rızanıza, sözleşmenin ifası için gerekli olmasına ve temel hak ve özgürlüklerinize zarar vermemek kaydıyla meşru menfaatimize dayanılarak, Kanun'un 5. maddesindeki şartlar çerçevesinde işlenir. Kanun'un 11. maddesi uyarınca; kişisel verinizin işlenip işlenmediğini öğrenme, bilgi ve düzeltme talep etme, silinmesini isteme, münhasıran otomatik sistemlerle analiz edilmesi suretiyle aleyhinize bir sonucun ortaya çıkmasına itiraz etme ve hukuka aykırı işleme sebebiyle uğradığınız zararın giderilmesini talep etme haklarına sahipsiniz. Talepleriniz için support@mindnullstudio.com adresine yazabilirsiniz; en geç 30 gün içinde yanıtlanır. Altyapımız Google Cloud üzerinde çalıştığından, kişisel verileriniz Kanun'un 9. maddesi kapsamında yurt dışına aktarılabilir.

8. ABD eyalet gizlilik hakları

California, Colorado, Connecticut, Virginia veya benzer bir yasaya sahip başka bir eyalette yaşıyorsanız; kişisel bilgilerinize erişim, düzeltme veya silinme talebinde bulunabilir ve bir reddi itiraza götürebilirsiniz. Kişisel bilgi satmıyor ve bağlamlar arası davranışsal reklamcılık için paylaşmıyoruz; dolayısıyla vazgeçilecek bir şey yok. Verilerinizi hukuki veya benzer ölçüde önemli sonuç doğuran profilleme için kullanmıyoruz. Bir hakkınızı kullandığınız için size farklı davranmayız. support@mindnullstudio.com adresine yazın.

9. Ne kadar süre saklıyoruz

NeNe kadar
Uygulama içi galerideki fotoğraf ve sonuçlarınız Yalnızca cihazınızda; siz veya uygulama silinene dek. En yeni 60 öğe tutulur
Yayımlanmış bir gönderi, görselleri ve yorumları Yayımlanmasından 24 saat sonra otomatik silinir; gönderiyi silerseniz hemen
Teslim için tutulan üretim sonucu Uygulama galeriye kaydettiğini doğrulayana kadar, sonra silinir
Sunucularımızdaki profil fotoğrafınız Siz değiştirene, kaldırana veya hesabınızı silene kadar
Üretim defteri (özetlenmiş kimlikler, durum, zaman damgaları, bakiyeler) Hesabınız var oldukça; hesapla birlikte silinir
Look geri bildirimi Lookları geliştirmek için özetlenmiş kimlikle saklanır
Bildirimler, engellemeler ve paylaşım kısıtlamaları Akışı güvende tutmak ve kısıtlamayı uygulamak için gerektiği sürece
Hesap kaydıHesabınızı silene kadar

10. Haklarınız ve seçimleriniz

Tek seferlik paketlerden kalan kullanılmamış krediler hesapla birlikte silinir ve geri yüklenemez. Mistly hesabınızı silmek App Store aboneliğinizi iptal etmez — onu App Store'dan iptal edin.

11. Güvenlik

Uygulama ile hizmetimiz arasındaki tüm trafik aktarım sırasında şifrelenir (HTTPS/TLS). Google Cloud üzerindeki veriler platform tarafından şifreli olarak saklanır. Yapay zekâ sağlayıcı anahtarlarımız yalnızca sunucuda bulunur; uygulama hiçbirini içermez. Her istek kimlik doğrulamadan geçer ve ayrıca Firebase App Check ile doğrulanır. Veritabanı ve depolama, uygulamadan gelen tüm doğrudan erişimi reddeder — yalnızca sunucumuz okuyup yazabilir. Hesap kimlikleri kaydettiğimiz her yerde özetlenir. Hiçbir sistem kusursuz güvenli değildir; biz olabildiğince az veri tutacak şekilde tasarlıyoruz.

12. Uluslararası aktarımlar

Türkiye'de bulunuyoruz; altyapımız Google Cloud üzerinde Amerika Birleşik Devletleri'nde çalışıyor. Yapay zekâ sağlayıcılarımız ve RevenueCat de verileri ABD'de ve diğer ülkelerde işler. Veriler AEA veya Birleşik Krallık dışına çıktığında, aktarımlar Avrupa Komisyonu'nun Standart Sözleşme Hükümleri'ne veya sağlayıcının sunduğu başka bir hukuki mekanizmaya dayanır. Türkiye bakımından aktarımlar 6698 sayılı Kanun'un 9. maddesi kapsamında yapılır.

13. Çocuklar

Mistly çocuklara yönelik değildir. Kullanmak için en az 13 yaşında — ya da ülkenizde gereken daha yüksek asgari yaşta — olmalısınız; topluluk akışı ayrıca hesap gerektirir. Bu yaşın altındaki çocuklardan bilerek kişisel bilgi toplamayız. Bir çocuğun bize kişisel bilgi verdiğini düşünüyorsanız support@mindnullstudio.com adresine yazın, sileriz.

14. Bu politikadaki değişiklikler

Bu politikayı değiştirirsek üstteki tarihi güncelleriz ve esaslı bir değişiklikte, yürürlüğe girmeden önce uygulama içinde bildiririz. Değişiklikten sonra Mistly'yi kullanmaya devam etmeniz, güncellenmiş politikayı kabul ettiğiniz anlamına gelir.

İletişim

Mindnull Studio · Geliştirici: Berkay ATİK
E-posta: support@mindnullstudio.com
İnternet sitesi: www.mindnullstudio.com
Destek: mindnullstudio.com/support