Privacy Policy for VibeCheck
Our Core Privacy Commitment
Welcome to VibeCheck ("we," "our," or "us"). Your privacy is extremely important to us. We designed VibeCheck from the ground up to respect your privacy and ensure your personal data—especially your facial imagery and biometric measurements—stays strictly on your device.
This policy covers VibeCheck mobile applications across Android, iOS, and Web.
Summary of Core Privacy Principles
All face scanning, ML Kit landmark detection, and vibe/rizz score generation happen strictly locally on your phone in temporary device memory (RAM).
We never upload, transmit, store, or sell your face photos, facial landmarks, or biometric data to external servers or cloud services.
Google Sign-In is entirely optional. You can use VibeCheck completely anonymously via "Guest Mode" without providing any name, email, or credentials.
When you sign in with Google, your basic profile information (email, display name, profile avatar URL) is stored exclusively on your device using hardware-backed encrypted storage (flutter_secure_storage / iOS Keychain / Android EncryptedSharedPreferences). It is never sent to any VibeCheck server (we operate no user database or tracking backend).
You can permanently delete all locally stored scan history and account session data at any time directly within the app using the "Delete all my data" button in Settings.
Information We Access and How We Use It
A. Camera Access & Facial Data (Strictly Local)
- What We Access: When you grant camera permission, VibeCheck uses your device camera to capture video frames and photos solely to analyze facial proportions, symmetry, eye openness, and head pose.
- How It Works: We utilize Google ML Kit's on-device Face Detection framework. Image frames are processed in temporary device RAM in real time.
- Data Retention: Raw camera frames and face detection coordinates are immediately discarded from RAM as soon as the vibe score is generated. They are never stored on persistent storage or transmitted to any server unless you explicitly choose to export or share your result card image.
B. Account Information (Optional Google Sign-In)
- What We Collect: If you choose to sign in with Google (rather than Guest Mode), the app receives your Google ID, display name, email address, and profile photo URL via Google OAuth (
scopes: ['email', 'profile']). - Purpose: This information is used strictly on your device to personalize your user interface (e.g., greeting your name and showing your avatar in Settings).
- Storage & Transmission: This data is stored locally in encrypted storage on your device. It is never transmitted to any VibeCheck server or third-party database.
- Guest Mode: If you do not wish to share account information, you can tap "Continue as Guest" to use the entire application anonymously.
C. Photos & Media Access (Optional Sharing)
- What We Access: If you choose to share your vibe result card with friends or save it to your camera roll, VibeCheck requests permission to write a temporary screenshot image to your device's photo gallery or share sheet.
- How It Works: This is initiated strictly when you tap "Share with Squad". We do not read, scan, or index your existing photo library.
Information We Do NOT Collect
We want to be 100% transparent about our data practices:
Third-Party Services & Libraries
VibeCheck incorporates the following libraries that execute locally on your device:
- Google ML Kit Face Detection: Used strictly for local, on-device facial landmark calculation. Google ML Kit operates offline for face detection and does not transmit facial imagery to Google servers.
- Google Sign-In SDK: Used to facilitate native, secure OAuth authentication directly between your device and Google authentication services.
- Flutter Framework & Open Source Plugins: (
flutter_riverpod,flutter_secure_storage,shared_preferences,fl_chart,share_plus,google_fonts). These libraries execute locally within your device environment.
When you tap "Share with Squad," your exported result card image is handed over to your device's native OS share sheet (e.g., Messages, Instagram, WhatsApp, Snapchat) under your direct control.
Managing & Deleting Your Data
Users have full control over their data. You can delete all locally stored scan history and account session data anytime inside the app via Settings > Delete all my data. To request manual assistance or account deletion inquiries, users can email vibecheck@hotpotnews.com with the subject "Data Deletion Request".
Open the Progress screen or Settings screen to clear all stored scan results.
Navigate to Settings > Delete all my data. This single action will:
- Purge all historical scan records from local storage.
- Permanently delete encrypted user account credentials and profile caches from secure storage.
- Sign out of your Google session.
Need assistance or want web-based account deletion guidance? Visit our Data Deletion Instructions page.
Children's Privacy
VibeCheck is safe for users of all ages. Because facial analysis is executed exclusively on-device without cloud retention and account creation is optional, VibeCheck complies with the Children’s Online Privacy Protection Act (COPPA) and General Data Protection Regulation (GDPR) standards regarding minors.
Security of Your Information
All data remains exclusively on your device. Session tokens and user profiles are protected with OS-level hardware encryption (iOS Keychain / Android EncryptedSharedPreferences). We recommend keeping your device OS updated and using biometric/passcode screen locks.
Changes to This Privacy Policy
We may update our Privacy Policy periodically to reflect app updates or regulatory requirements. Any updates will be published within the app and on our official portal with a revised "Last Updated" date.
Contact Us
If you have any questions, feedback, or concerns regarding this Privacy Policy or VibeCheck's privacy practices, contact us at: